summaryrefslogtreecommitdiff
path: root/changelogs
Commit message (Expand)AuthorAgeFilesLines
* Update CHANGELOG.md for 12.2.6GitLab Release Tools Bot2019-09-2610-53/+0
* Merge branch 'security-gitaly-1-59-3' into '12-2-stable'GitLab Release Tools Bot2019-09-261-0/+5
|\
| * Fix Gitaly SearchBlobs flag RPC injectionPaul Okstad2019-09-241-0/+5
* | Merge branch 'security-sarcila-verify-saml-request-origin-12-2' into '12-2-st...GitLab Release Tools Bot2019-09-261-0/+5
|\ \
| * | Validate that SAML requests are originated from gitlabSebastian Arcila Valenzuela2019-09-161-0/+5
| |/
* | Merge branch 'security-12717-fix-confidential-issue-assignee-visible-to-guest...GitLab Release Tools Bot2019-09-261-0/+5
|\ \
| * | Display only participants that user has permission to seeAlexandru Croitor2019-09-201-0/+5
| |/
* | Merge branch 'security-bypass-email-verification-using-salesforce-12-2' into ...GitLab Release Tools Bot2019-09-261-0/+5
|\ \
| * | Add checking for email_verified keyMałgorzata Ksionek2019-09-111-0/+5
| |/
* | Merge branch 'security-mermaid-block-12-2' into '12-2-stable'GitLab Release Tools Bot2019-09-261-0/+5
|\ \
| * | Only render fixed number of mermaid blocksRajat Jain2019-09-191-0/+5
| |/
* | Merge branch 'security-12718-project-milestones-disclosed-via-groups-12-2-ce'...GitLab Release Tools Bot2019-09-261-0/+6
|\ \
| * | Hide disabled project milestones in project settings on group levelAlexandru Croitor2019-09-261-0/+6
| |/
* | Merge branch 'security-64938-dont-disclose-path-12-2-ce' into '12-2-stable'GitLab Release Tools Bot2019-09-261-0/+6
|\ \
| * | Redirect user to root path after unsubscribing from private resourceAlexandru Croitor2019-09-201-0/+6
| |/
* | Merge branch 'security-12630-private-system-note-disclosed-in-graphql-12-2-ce...GitLab Release Tools Bot2019-09-261-0/+6
|\ \
| * | Add policy check if cross reference system notes are accessibleAlexandru Croitor2019-09-251-0/+6
| |/
* | Merge branch 'security-fp-stop-jobs-when-blocking-user-12-2' into '12-2-stable'GitLab Release Tools Bot2019-09-261-0/+5
|\ \
| * | Cancel all running CI jobs when user is blockedFabio Pitino2019-09-241-0/+5
| |/
* | Filter not accessible label eventsJan Provaznik2019-09-241-0/+5
|/
* Update CHANGELOG.md for 12.2.4GitLab Release Tools Bot2019-09-028-40/+0
* Merge branch '66803-fix-uploads-relative-link-filter' into 'master'12-2-stable-patch-4Grzegorz Bizon2019-09-021-0/+5
* Merge branch 'sh-mermaid-8.2.6' into 'master'Filipa Lacerda2019-09-021-0/+5
* Merge branch 'sh-fix-snippet-visibility-api' into 'master'Rémy Coutable2019-08-301-0/+5
* Merge branch 'sh-fix-piwik-template' into 'master'Ash McKenzie2019-08-301-0/+5
* Merge branch 'sh-upgrade-mermaid-8.2.4' into 'master'Filipa Lacerda2019-08-301-0/+5
* Merge branch 'sh-fix-nplusone-issues' into 'master'Mayra Cabrera2019-08-301-0/+5
* Merge branch 'fe-fix-issuable-sidebar-icon-of-notification-disabled' into 'ma...Mike Greiling2019-08-301-0/+5
* Merge branch '66066-dark-theme-style-for-expansion-on-mr-diffs' into 'master'Mike Greiling2019-08-301-0/+5
* Update CHANGELOG.md for 12.2.3GitLab Release Tools Bot2019-08-2822-110/+0
* Revert "Update CHANGELOG.md for 12.2.2"John Jarvis2019-08-2822-0/+110
* Update CHANGELOG.md for 12.2.2GitLab Release Tools Bot2019-08-2722-110/+0
* Avoid exposing unaccessible repo data upon GFM processingOswaldo Ferreira2019-08-261-0/+5
* Prevent unauthorised comments on merge requestsAlex Kalderimis2019-08-261-0/+3
* Merge branch 'security-hide_merge_request_ids_on_emails-12-2' into '12-2-stable'GitLab Release Tools Bot2019-08-261-0/+5
|\
| * Prevent disclosure of merge request id via emailFelipe Artur2019-08-211-0/+5
* | Merge branch 'security-64711-fix-commit-todos-12-2' into '12-2-stable'GitLab Release Tools Bot2019-08-261-0/+5
|\ \
| * | Send TODOs for comments on commits correctlyNick Thomas2019-08-231-0/+5
* | | Merge branch 'security-12-2-stable-gitaly-1.59.2' into '12-2-stable'GitLab Release Tools Bot2019-08-261-0/+5
|\ \ \
| * | | Use Gitaly 1.59.2Jacob Vosmaer2019-08-261-0/+5
* | | | Fix project import restricted visibility bypassGeorge Koltsov2019-08-261-0/+5
|/ / /
* | | Merge branch 'security-ssrf-kubernetes-dns' into '12-2-stable'GitLab Release Tools Bot2019-08-261-0/+5
|\ \ \
| * | | Override hostname when connecting via KubeclientThong Kuah2019-08-211-0/+5
| | |/ | |/|
* | | Merge branch 'security-epic-notes-api-reveals-historical-info-ce-12-2' into '...GitLab Release Tools Bot2019-08-261-0/+5
|\ \ \
| * | | Filter out old system notes for epicsPatrick Derichs2019-08-191-0/+5
| |/ /
* | | Merge branch 'security-fix-html-injection-for-label-description-ce-12-2' into...GitLab Release Tools Bot2019-08-261-0/+5
|\ \ \
| * | | Fix html injection for label descriptionPatrick Derichs2019-08-191-0/+5
| |/ /
* | | Merge branch 'security-mr-head-pipeline-leak-12-2' into '12-2-stable'GitLab Release Tools Bot2019-08-261-0/+5
|\ \ \
| * | | Permission fix for MergeRequestsController#pipeline_statusdrew cimino2019-08-201-0/+5
| |/ /
* | | Merge branch 'security-61974-limit-issue-comment-size-12-2' into '12-2-stable'GitLab Release Tools Bot2019-08-262-0/+10
|\ \ \