-
- Downloads
Merge branch 'open-redirect-host-fix' into 'security'
Fix for three open redirect vulns using redirect_to url_for(params.merge))) See merge request !2082
Showing
- app/controllers/dashboard/todos_controller.rb 1 addition, 1 deletionapp/controllers/dashboard/todos_controller.rb
- app/controllers/projects/issues_controller.rb 1 addition, 1 deletionapp/controllers/projects/issues_controller.rb
- app/controllers/projects/merge_requests_controller.rb 1 addition, 1 deletionapp/controllers/projects/merge_requests_controller.rb
- changelogs/unreleased/open-redirect-host-field.yml 4 additions, 0 deletionschangelogs/unreleased/open-redirect-host-field.yml
- spec/controllers/dashboard/todos_controller_spec.rb 7 additions, 0 deletionsspec/controllers/dashboard/todos_controller_spec.rb
- spec/controllers/projects/issues_controller_spec.rb 11 additions, 0 deletionsspec/controllers/projects/issues_controller_spec.rb
- spec/controllers/projects/merge_requests_controller_spec.rb 12 additions, 0 deletionsspec/controllers/projects/merge_requests_controller_spec.rb
Please register or sign in to comment