- Jan 07, 2021
-
-
GitLab Release Tools Bot authored
[merge-train skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
- Jan 06, 2021
-
-
Mayra Cabrera authored
Fix prometheus DoS through Workhorse See merge request gitlab-org/security/gitlab!1144
-
too long method name results in too long prometheus label name, which can crash prometheus
-
Mayra Cabrera authored
Deny implicit flow for confidential apps See merge request gitlab-org/security/gitlab!1139
-
GitLab Release Tools Bot authored
Set all trusted OAuth apps as confidential See merge request gitlab-org/security/gitlab!1150
-
GitLab Release Tools Bot authored
Fix regex backtracking issue in package_name_regex See merge request gitlab-org/security/gitlab!1131
-
GitLab Release Tools Bot authored
Fix stealing API token and Prometheus DoS through GitLab Pages See merge request gitlab-org/security/gitlab!1136
-
It includes 2 security fixes
-
GitLab Release Tools Bot authored
Update non-negative integer regex to protect against regex DoS See merge request gitlab-org/security/gitlab!1129
-
-
GitLab Release Tools Bot authored
Forbid public cache for private repos See merge request gitlab-org/security/gitlab!1147
-
- Jan 04, 2021
-
-
Fix details_page/details_header_spec time dependent spec See merge request gitlab-org/gitlab!50739
-
Add project pipeline statistics test case for variable length months See merge request gitlab-org/gitlab!50704
-
- Dec 29, 2020
-
-
Dominic Couture authored
Migrate all trusted apps to confidential to avoid potential access token leak abusing implicit flow
-
- Dec 28, 2020
-
-
Igor Drozdov authored
When project is public but the repository is private, we don't want to cache it as public. In this case, anybody will be able to see the cached version of the private content during 60s after an eligible user has viewed it.
-
- Dec 23, 2020
-
-
Dominic Couture authored
-
Dominic Couture authored
The regex now uses "Atomic Groups" to make sure there is no backtracking and no performance issues on malicious package names
-
GitLab Release Tools Bot authored
[merge-train skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
Alessio Caiazza authored
Prepare 13.7.1-ee release See merge request gitlab-org/gitlab!50468
-
Alessio Caiazza authored
Run test at a fixed time See merge request gitlab-org/gitlab!50487
-
Due to how HLLRedisCounter#weekly_redis_keys converts dates to calendar week, it would result in an empty array when the calendar week of end_date occurs before the calendar week of start_date. For example, given start_date 2020-12-01 and end_date 2021-01-01, the calendar week would be reversed, resulting in empty array from #weekly_redis_keys
-
- Dec 22, 2020
-
-
Fix Redis HLL weekly keys See merge request gitlab-org/gitlab!50358 (cherry picked from commit f6dab47b) faf9de1a Fix redis weekly keys d1317518 Fixed unique_events test for shared_examples 975c9ee8 Add tests for correct weekly redis keys 5e4cd617 Add usage ping tests for critical weeks 48dd729c Add 2 more tests for weekly keys
-
Improve AWS EKS troubleshooting documentation See merge request gitlab-org/gitlab!50336 (cherry picked from commit 8b6e8944) 04755790 Improve AWS EKS troubleshooting documentation e2cbae1d Add blurb about supporting instance profiles 98962c29 Add screenshot of AWS console for troubleshooting 8376d8b5 Annotate loop section in Mermaid diagram 5a64702c Formatting tweak with instance profile introduction 6358c56d Apply 1 suggestion(s) to 1 file(s) 253117b3 Clarify Service Role and Kubernetes service account 8fd1fb4b Revisions for tone and style 048203c1 Update image to better aspect ratio 03c19c8e Apply 1 suggestion(s) to 1 file(s)
-
Update automation instructions for DB setup See merge request gitlab-org/gitlab!50333 (cherry picked from commit 93c76ac4) fdec8ca6 Update automation instructions for DB setup a8ffe3d8 Update doc/development/rake_tasks.md cf4c6abd Update doc/development/rake_tasks.md d057f8b3 Apply 1 suggestion(s) to 1 file(s)
-
Add roadmap filters to docs (FF enabled) See merge request gitlab-org/gitlab!50202 (cherry picked from commit 68a12323) ce2c6b44 Add roadmap filters to docs 12b3cdb9 Add roadmap filter image 8d03ec5a Remove extra blank line 3897c6e8 Roadmaps doc edits ba2da04b Rename roadmaps image 854c45b5 Add feature flag info d06dc53c Create a new section for filtering and sorting ca131fe1 Add "roadmap" to spelling exceptions 1b0a885e Style and typo fixes cd31daf6 Apply 1 suggestion(s) to 1 file(s) 795264cd Apply 1 suggestion(s) to 1 file(s)
-
Fix project transfer corrupting shared runners state See merge request gitlab-org/gitlab!47316 (cherry picked from commit 2a9cfa06) 3cec4826 Fix project transfer corrupting shared runners state f87a1221 Apply 1 suggestion(s) to 1 file(s) 1761fd0a squash! 4577aefd squash! 64eb1ae7 squash! 4b73a59e squash! d7714ddb squash!
- Dec 21, 2020
-
-
GitLab Release Tools Bot authored
[merge-train skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
GitLab Release Tools Bot authored
[ci skip]
-