summaryrefslogtreecommitdiff
path: root/changelogs
Commit message (Expand)AuthorAgeFilesLines
* Add support for using a Camo proxy serverBrett Walker2019-08-151-0/+5
* Update CHANGELOG.md for 12.0.4GitLab Release Tools Bot2019-07-259-45/+0
* Merge branch 'security-fix-badges-leaked-to-unauthorized-users-12-0' into '12...GitLab Release Tools Bot2019-07-241-0/+5
|\
| * Don't display badges when builds are restrictedFabio Pitino2019-06-271-0/+5
* | Merge branch 'security-github-ssrf-redirect-12-0' into '12-0-stable'GitLab Release Tools Bot2019-07-241-0/+5
|\ \
| * | Do not allow localhost url redirection in GitHub Integrationmanojmj2019-07-091-0/+5
* | | Merge branch 'security-dns-ssrf-bypass-12-0' into '12-0-stable'GitLab Release Tools Bot2019-07-241-0/+5
|\ \ \
| * | | Fix Server Side Request Forgery mitigation bypassFrancisco Javier López2019-07-041-0/+5
| |/ /
* | | Merge branch 'security-mr-pipeline-permissions-12-0' into '12-0-stable'GitLab Release Tools Bot2019-07-241-0/+5
|\ \ \
| * | | Use MergeRequest#source_project as permissions reference for MergeRequest#all...drew cimino2019-07-051-0/+5
| |/ /
* | | Merge branch 'security-60143-patch-additional-xss-issue-12.0' into '12-0-stable'GitLab Release Tools Bot2019-07-241-0/+5
|\ \ \
| * | | Extract SanitizeNodeLink and apply to WikiLinkFilterKerri Miller2019-07-081-0/+5
| |/ /
* | | Merge branch 'security-remove-take-trigger-ownership-feature-12-0' into '12-0...GitLab Release Tools Bot2019-07-241-0/+5
|\ \ \
| * | | Drop feature to take ownership of a trigger tokenFabio Pitino2019-07-171-0/+5
| |/ /
* | | Merge branch 'security-2873-restrict-slash-commands-to-users-who-can-log-in-1...GitLab Release Tools Bot2019-07-241-0/+5
|\ \ \
| * | | Restrict slash commands to users who can log inHordur Freyr Yngvason2019-07-121-0/+5
| |/ /
* | | Merge branch 'security-bvl-filter-mr-params-12-0' into '12-0-stable'GitLab Release Tools Bot2019-07-241-0/+5
|\ \ \
| * | | Filter params in MR build serviceBob Van Landuyt2019-07-171-0/+5
| |/ /
* | | Do not show moved issue ids for user not authorizedFelipe Artur2019-07-151-0/+5
|/ /
* | Update CHANGELOG.md for 12.0.3GitLab Release Tools Bot2019-06-2710-50/+0
|/
* Merge branch 'security-notes-in-private-snippets-12-0' into '12-0-stable'GitLab Release Tools Bot2019-06-261-0/+5
|\
| * Correctly check permissions when creating snippet notesMarkus Koller2019-06-061-0/+5
* | Merge branch 'security-fp-prevent-billion-laughs-attack-12-0' into '12-0-stable'GitLab Release Tools Bot2019-06-261-0/+5
|\ \
| * | Prevent Billion Laughs attackFabio Pitino2019-06-071-0/+5
| |/
* | Merge branch 'security-12-0-mr-head-pipeline-leak' into '12-0-stable'GitLab Release Tools Bot2019-06-261-0/+5
|\ \
| * | Add CHANGELOG entryMatija Čupić2019-06-121-0/+5
| |/
* | Merge branch 'security-prevent-detection-of-merge-request-template-name-12-0'...GitLab Release Tools Bot2019-06-261-0/+5
|\ \
| * | Authorize access before serving project templateLuke Duncalfe2019-06-171-0/+5
| |/
* | Merge branch 'security-persist-tmp-snippet-uploads-12-0' into '12-0-stable'GitLab Release Tools Bot2019-06-261-0/+5
|\ \
| * | Persist tmp snippet uploadsOswaldo Ferreira2019-06-171-0/+5
| |/
* | Merge branch 'security-59581-related-merge-requests-count-12-0' into '12-0-st...GitLab Release Tools Bot2019-06-261-0/+5
|\ \
| * | Expose merge requests count based on user accessAlexandru Croitor2019-06-181-0/+5
* | | Merge branch 'security-DOS_issue_comments_banzai-12-0' into '12-0-stable'GitLab Release Tools Bot2019-06-261-0/+5
|\ \ \
| * | | Fix DOS when rendering issue/MR commentsMario de la Ossa2019-06-181-0/+5
| |/ /
* | | Merge branch 'security-bvl-enforce-graphql-type-authorization-12-0' into '12-...GitLab Release Tools Bot2019-06-261-0/+5
|\ \ \
| * | | Fix failing auhtorizations in GraphQLBob Van Landuyt2019-06-201-0/+5
* | | | Merge branch 'security-2858-fix-color-validation-12-0' into '12-0-stable'GitLab Release Tools Bot2019-06-261-0/+5
|\ \ \ \
| * | | | Fix color validation regexHeinrich Lee Yu2019-06-251-0/+5
* | | | | Disable Rails SQL query cache when applying service templatesStan Hu2019-06-251-0/+5
* | | | | Update CHANGELOG.md for 12.0.2GitLab Release Tools Bot2019-06-258-40/+0
* | | | | Merge branch 'sh-quiet-backup-secrets-log' into 'master'12-0-stable-patch-2Rémy Coutable2019-06-251-0/+5
* | | | | Merge branch 'sh-recover-ee-schema-backport-migration-failure' into 'master'Rémy Coutable2019-06-251-0/+5
* | | | | Merge branch '63513-ensure-gitlab-jsoncache-includes-the-gitlab-version-in-th...Stan Hu2019-06-251-0/+5
* | | | | Merge branch 'sh-omit-issues-links-on-poll' into 'master'Mayra Cabrera2019-06-251-0/+5
* | | | | Merge branch 'fix-notes-emails-with-group-settings' into 'master'Douwe Maan2019-06-251-0/+5
* | | | | Merge branch 'fix-labels-in-hooks' into 'master'Ash McKenzie2019-06-251-0/+5
* | | | | Merge branch 'bug/63162-duplicate_path_in_links' into 'master'Sean McGivern2019-06-251-0/+5
* | | | | Merge branch 'fix-microsoft-teams-notification-flags' into 'master'Stan Hu2019-06-251-0/+5
|/ / / /
* | | | Update CHANGELOG.md for 12.0.0GitLab Release Tools Bot2019-06-22286-1433/+0
|/ / /
* | | Merge branch '63417-add-missing-class' into 'master'Kamil Trzciński2019-06-191-0/+5