This project is mirrored from https://:*****@gitlab.com/gitlab-org/gitlab.git.
Pull mirroring failed .
Repository mirroring has been paused due to too many failed attempts. It can be resumed by a project maintainer or owner.
Last successful update .
Repository mirroring has been paused due to too many failed attempts. It can be resumed by a project maintainer or owner.
Last successful update .
- Sep 23, 2024
-
-
GitLab Release Tools Bot authored
[merge-train skip]
-
- Sep 18, 2024
-
-
Stan Hu authored
Improve OpenSSL callout message See merge request https://gitlab.com/gitlab-org/gitlab/-/merge_requests/166184 Merged-by:
Stan Hu <stanhu@gmail.com> Approved-by:
Drew Blessing <drew@gitlab.com> Co-authored-by:
Drew Blessing <drew@gitlab.com>
-
Stan Hu authored
The previous message made it sound like everything needed to use OpenSSL 3. Revise this message to make it clear that TLS 1.2+ is needed for TLS connections, and ensure that we mention ciphers and bits of encryption.
-
- Sep 16, 2024
-
-
GitLab Release Tools Bot authored
[merge-train skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
Drew Blessing authored
-
- Sep 14, 2024
-
-
Stan Hu authored
Update ruby-saml and omniauth-saml See merge request https://gitlab.com/gitlab-org/gitlab/-/merge_requests/166058 Merged-by:
Stan Hu <stanhu@gmail.com> Approved-by:
Andrew Evans <aevans@gitlab.com> Approved-by:
Greg Alfaro <galfaro@gitlab.com> Approved-by:
Greg Myers <gmyers@gitlab.com> Approved-by:
Stan Hu <stanhu@gmail.com> Co-authored-by:
Drew Blessing <drew@gitlab.com>
-
- Sep 13, 2024
-
-
Drew Blessing authored
-
- Sep 11, 2024
-
-
GitLab Release Tools Bot authored
-
GitLab Release Tools Bot authored
[merge-train skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
- Sep 10, 2024
-
-
Mayra Cabrera authored
Revert 'security-psk-fix-external-wiki-integration-dos-17-1' into '17-1" See merge request https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4455 Merged-by:
Mayra Cabrera <mcabrera@gitlab.com> Approved-by:
Mayra Cabrera <mcabrera@gitlab.com> Co-authored-by:
John T Skarbek <jtslear@gmail.com>
-
Merge branch 'revert-3863794e' into '17-1-stable-ee' See merge request gitlab-org/security/gitlab!4455 Changelog: security
-
Stan Hu authored
The GitLab 17.0.0 section was removed in later versions, so drop the fragment.
-
Stan Hu authored
Some changes in doc/update/versions/gitlab_17_changes.md referred to fragments that did not exist in `doc/security/token_overview.md` for some reason.
-
Stan Hu authored
Improve OpenSSL 3 upgrading warning notes See merge request https://gitlab.com/gitlab-org/gitlab/-/merge_requests/165589 Merged-by:
Stan Hu <stanhu@gmail.com> Approved-by:
Achilleas Pipinellis <axil@gitlab.com>
-
GitLab Release Tools Bot authored
Fix the vulnerability in the glm_source parameter See merge request https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4434 Merged-by:
GitLab Release Tools Bot <delivery-team+release-tools@gitlab.com> Approved-by:
Gabriel Mazetto <gabriel@gitlab.com> Co-authored-by:
Doug Stull <dstull@gitlab.com>
-
Merge branch 'cherry-pick-98bf5baa' into '17-1-stable-ee' See merge request gitlab-org/security/gitlab!4434 Changelog: security
-
GitLab Release Tools Bot authored
Improve GraphQL log security See merge request https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4350 Merged-by:
GitLab Release Tools Bot <delivery-team+release-tools@gitlab.com> Approved-by:
Greg Myers <gmyers@gitlab.com> Approved-by:
Dzmitry (Dima) Meshcharakou <12459192-dmeshcharakou@users.noreply.gitlab.com> Co-authored-by:
Radamanthus Batnag <rbatnag@gitlab.com>
-
Merge branch 'security-460289-confidential-issue-17-1' into '17-1-stable-ee' See merge request gitlab-org/security/gitlab!4350 Changelog: security
-
GitLab Release Tools Bot authored
Add permissions check to project creations from a project template See merge request https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4445 Merged-by:
GitLab Release Tools Bot <delivery-team+release-tools@gitlab.com> Approved-by:
Gavin Hinfey <ghinfey@gitlab.com> Co-authored-by:
Fred Reinink <freinink@gitlab.com>
-
Merge branch 'security-custom-templates-source-code-disclosure-17-1' into '17-1-stable-ee' See merge request gitlab-org/security/gitlab!4445 Changelog: security
-
GitLab Release Tools Bot authored
Fix credentials disclosure in mirroring failure See merge request https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4448 Merged-by:
GitLab Release Tools Bot <delivery-team+release-tools@gitlab.com> Approved-by:
Vasilii Iakliushin <viakliushin@gitlab.com> Co-authored-by:
Olaoluwa Oluro <olaoluro@gitlab.com>
-
Merge branch 'security-scp-url-sanitizer-17-1' into '17-1-stable-ee' See merge request gitlab-org/security/gitlab!4448 Changelog: security
-
GitLab Release Tools Bot authored
Redirect url in the link validated for being external See merge request https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4442 Merged-by:
GitLab Release Tools Bot <delivery-team+release-tools@gitlab.com> Approved-by:
Drew Blessing <drew@gitlab.com> Co-authored-by:
smriti <sgarg@gitlab.com>
-
Merge branch 'security-sg-redirect-check-for-releases-17-1' into '17-1-stable-ee' See merge request gitlab-org/security/gitlab!4442 Changelog: security
-
GitLab Release Tools Bot authored
[17.1] Update edit permissions for DAST profiles See merge request https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4357 Merged-by:
GitLab Release Tools Bot <delivery-team+release-tools@gitlab.com> Approved-by:
Alejandro Rodríguez <alejandro@gitlab.com> Co-authored-by:
Arpit Gogia <12347103-arpitgogia@users.noreply.gitlab.com>
-
Merge branch 'security-451014-dast-profile-permissions-17-1' into '17-1-stable-ee' See merge request gitlab-org/security/gitlab!4357 Changelog: security
-
GitLab Release Tools Bot authored
Commit information visible through release atom endpoint for guest users See merge request https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4439 Merged-by:
GitLab Release Tools Bot <delivery-team+release-tools@gitlab.com> Approved-by:
Tomas Bulva <tbulva@gitlab.com> Co-authored-by:
Anna Vovchenko <avovchenko@gitlab.com>
-
Merge branch 'security-469367-commit-info-visible-though-atom-17-1' into '17-1-stable-ee' See merge request gitlab-org/security/gitlab!4439 Changelog: security
-
GitLab Release Tools Bot authored
Execute environment stop actions as the owner of the action See merge request https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4406 Merged-by:
GitLab Release Tools Bot <delivery-team+release-tools@gitlab.com> Approved-by:
Fabio Pitino <fpitino@gitlab.com> Co-authored-by:
Tiger <twatson@gitlab.com>
-
Merge branch 'security-run-stop-actions-as-job-owner-17-1' into '17-1-stable-ee' See merge request gitlab-org/security/gitlab!4406 Changelog: security
-
GitLab Release Tools Bot authored
Prevent code injection in Product Analytics funnels YAML See merge request https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4429 Merged-by:
GitLab Release Tools Bot <delivery-team+release-tools@gitlab.com> Approved-by:
Halil Coban <hcoban@gitlab.com> Co-authored-by:
Robert Hunt <rhunt@gitlab.com>
-
Merge branch 'security-prevent-code-injection-in-pa-funnels-17-1-17-1' into '17-1-stable-ee' See merge request gitlab-org/security/gitlab!4429 Changelog: security
-
GitLab Release Tools Bot authored
Prevent users with admin_group_member custom ab. to manage custom roles See merge request https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4427 Merged-by:
GitLab Release Tools Bot <delivery-team+release-tools@gitlab.com> Approved-by:
charlie ablett <cablett@gitlab.com> Co-authored-by:
Jarka Košanová <jarka@gitlab.com>
-
Merge branch 'security-fix-cr-edit-17-1' into '17-1-stable-ee' See merge request gitlab-org/security/gitlab!4427 Changelog: security
-
GitLab Release Tools Bot authored
Fixed frontend regex to parse URI See merge request https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4421 Merged-by:
GitLab Release Tools Bot <delivery-team+release-tools@gitlab.com> Approved-by:
Drew Blessing <drew@gitlab.com> Co-authored-by:
smriti <sgarg@gitlab.com>
-
Merge branch 'security-sg-fix-frontend-uri-parse-regex-17-1' into '17-1-stable-ee' See merge request gitlab-org/security/gitlab!4421 Changelog: security
-