From a5cde2d96d8606cc84bb07497b3c1ad9b9848e05 Mon Sep 17 00:00:00 2001 From: GitLab Release Tools Bot Date: Fri, 9 Aug 2019 16:43:32 +0000 Subject: Update CHANGELOG.md for 12.1.5 [ci skip] --- CHANGELOG.md | 8 ++++++++ 1 file changed, 8 insertions(+) (limited to 'CHANGELOG.md') diff --git a/CHANGELOG.md b/CHANGELOG.md index 0752708d5e8..59edc49b890 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -2,6 +2,14 @@ documentation](doc/development/changelog.md) for instructions on adding your own entry. +## 12.1.5 + +### Security (2 changes) + +- Upgrade Gitaly to 1.53.2 to prevent revision flag injection exploits. +- Upgrade pages to 1.7.1 to prevent gitlab api token recovery from cookie. + + ## 12.1.4 ### Fixed (3 changes, 1 of them is from the community) -- cgit v1.2.1