This project is mirrored from https://:*****@gitlab.com/gitlab-org/gitlab.git.
Pull mirroring failed .
Repository mirroring has been paused due to too many failed attempts. It can be resumed by a project maintainer or owner.
Last successful update .
Repository mirroring has been paused due to too many failed attempts. It can be resumed by a project maintainer or owner.
Last successful update .
- Oct 09, 2024
-
-
GitLab Release Tools Bot authored
[merge-train skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
- Oct 08, 2024
-
-
GitLab Release Tools Bot authored
Do not create a pipeline on MR refresh if source branch was deleted See merge request https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4522 Merged-by:
GitLab Release Tools Bot <delivery-team+release-tools@gitlab.com> Approved-by:
Igor Drozdov <idrozdov@gitlab.com> Co-authored-by:
Patrick Bajao <ebajao@gitlab.com>
-
Merge branch 'security-mr-delete-source-branch-no-pipeline-17-4' into '17-4-stable-ee' See merge request gitlab-org/security/gitlab!4522 Changelog: security
-
GitLab Release Tools Bot authored
Escape OAuth application name on authorize page See merge request https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4517 Merged-by:
GitLab Release Tools Bot <delivery-team+release-tools@gitlab.com> Approved-by:
Andrew Evans <aevans@gitlab.com> Co-authored-by:
Drew Blessing <drew@gitlab.com>
-
Merge branch 'security-dblessing_oauth_authorization_html_escape-17-4' into '17-4-stable-ee' See merge request gitlab-org/security/gitlab!4517 Changelog: security
-
GitLab Release Tools Bot authored
Prevent guest access to project templates See merge request https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4477 Merged-by:
GitLab Release Tools Bot <delivery-team+release-tools@gitlab.com> Approved-by:
Ash McKenzie <amckenzie@gitlab.com> Co-authored-by:
Emma Park <epark@gitlab.com>
-
Merge branch 'security-462108/disclose-project-templates-17-4' into '17-4-stable-ee' See merge request gitlab-org/security/gitlab!4477 Changelog: security
-
GitLab Release Tools Bot authored
Remove access to local requests via cube query service See merge request https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4492 Merged-by:
GitLab Release Tools Bot <delivery-team+release-tools@gitlab.com> Approved-by:
Halil Coban <hcoban@gitlab.com> Co-authored-by:
Max Woolf <max@woolf.io>
-
Merge branch 'security-product-analytics-ssrf-cube-localhost-17-4' into '17-4-stable-ee' See merge request gitlab-org/security/gitlab!4492 Changelog: security
-
GitLab Release Tools Bot authored
External webhook token should be set See merge request https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4510 Merged-by:
GitLab Release Tools Bot <delivery-team+release-tools@gitlab.com> Approved-by:
Dylan Griffith <dyl.griffith@gmail.com> Co-authored-by:
Ash McKenzie <amckenzie@gitlab.com>
-
Merge branch 'security-revert-19072-alt-17-4' into '17-4-stable-ee' See merge request gitlab-org/security/gitlab!4510 Changelog: security
-
GitLab Release Tools Bot authored
Skip content when listing conflict files with types See merge request https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4513 Merged-by:
GitLab Release Tools Bot <delivery-team+release-tools@gitlab.com> Approved-by:
Jarka Košanová <jarka@gitlab.com> Co-authored-by:
Patrick Bajao <ebajao@gitlab.com>
-
Merge branch 'security-mr-conflicts-slow-17-4' into '17-4-stable-ee' See merge request gitlab-org/security/gitlab!4513 Changelog: security
-
GitLab Release Tools Bot authored
Hide version info from unauthorized users See merge request https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4500 Merged-by:
GitLab Release Tools Bot <delivery-team+release-tools@gitlab.com> Approved-by:
Gary Holtz <gholtz@gitlab.com> Co-authored-by:
Paul Gascou-Vaillancourt <paul.gascvail@gmail.com>
-
Merge branch 'security-instance-version-publicly-disclosed-17-4' into '17-4-stable-ee' See merge request gitlab-org/security/gitlab!4500 Changelog: security
-
GitLab Release Tools Bot authored
Prevent deploy keys from pushing code to an archived project See merge request https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4486 Merged-by:
GitLab Release Tools Bot <delivery-team+release-tools@gitlab.com> Approved-by:
Ethan Urie <eurie@gitlab.com> Co-authored-by:
Tiger <twatson@gitlab.com>
-
Merge branch 'security-prevent-deploy-key-pushing-to-archived-project-17-4' into '17-4-stable-ee' See merge request gitlab-org/security/gitlab!4486 Changelog: security
-
- Oct 07, 2024
-
-
Vasilli Iakliushin authored
[Backport] Go-get: fix 401 error for unauthenticated requests See merge request https://gitlab.com/gitlab-org/gitlab/-/merge_requests/167937 Merged-by:
Vasilii Iakliushin <viakliushin@gitlab.com> Approved-by:
Gavin Hinfey <ghinfey@gitlab.com> Reviewed-by:
Duo Code Reviewer <duo-code-review-bot@gitlab.com>
-
Marius Bobin authored
Drop project_id not null constraint ci_deleted_objects See merge request https://gitlab.com/gitlab-org/gitlab/-/merge_requests/168156 Merged-by:
Marius Bobin <mbobin@gitlab.com> Approved-by:
Marius Bobin <mbobin@gitlab.com> Co-authored-by:
Maxime Orefice <morefice@gitlab.com>
-
- Oct 05, 2024
-
-
Rodrigo Muino Tomonari authored
Restrict duo pro assignment email to duo pro for sm See merge request https://gitlab.com/gitlab-org/gitlab/-/merge_requests/168238 Merged-by:
Rodrigo Tomonari <rtomonari@gitlab.com> Approved-by:
Rodrigo Tomonari <rtomonari@gitlab.com> Co-authored-by:
Doug Stull <dstull@gitlab.com>
-
- Oct 04, 2024
-
-
Doug Stull authored
Restrict duo pro assignment email to duo pro for sm See merge request https://gitlab.com/gitlab-org/gitlab/-/merge_requests/166738 Merged-by:
Rodrigo Tomonari <rtomonari@gitlab.com> Approved-by:
Jay Montal <jmontal@gitlab.com> Approved-by:
Rodrigo Tomonari <rtomonari@gitlab.com> Reviewed-by:
Jay Montal <jmontal@gitlab.com> Co-authored-by:
rliu-gl <rliu@gitlab.com> (cherry picked from commit 2aac219d) 39f4cfbb Restrict duo pro assignment email to duo pro for sm Co-authored-by:
Rodrigo Tomonari <rtomonari@gitlab.com>
-
Siddharth Dungarwal authored
Backport 17.4 Fix label filter by name for search See merge request https://gitlab.com/gitlab-org/gitlab/-/merge_requests/168099 Merged-by:
Siddharth Dungarwal <sdungarwal@gitlab.com> Approved-by:
Siddharth Dungarwal <sdungarwal@gitlab.com> Co-authored-by:
Terri Chu <tchu@gitlab.com>
-
Maxime Orefice authored
This commit drops check_98f90d6c53 constraint to unblock the accumulation of ci_job_artifacts that needs to be clean up from the system. Changelog: fixed
-
- Oct 03, 2024
-
-
Terri Chu authored
Fix label filter by name for search See merge request https://gitlab.com/gitlab-org/gitlab/-/merge_requests/167845 Merged-by:
Dmitry Gruzd <dgruzd@gitlab.com> Approved-by:
Siddharth Dungarwal <sdungarwal@gitlab.com> Approved-by:
Dmitry Gruzd <dgruzd@gitlab.com> Co-authored-by:
Terri Chu <tchu@gitlab.com> (cherry picked from commit add0da31) bca1a362 Fix label filter by name for search Co-authored-by:
Dmitry Gruzd <dgruzd@gitlab.com>
-
- Oct 02, 2024
-
-
Vasilli Iakliushin authored
Contributes to https://gitlab.com/gitlab-org/gitlab/-/issues/493732 **Problem** Self-managed instances that restricted password authentication for Git over HTTP(S) started to receive 401 error code for `go-get=1` requests from go toolchain. The reason is a missing return for the case when request doesn't have basic credentials. It was introduced in https://gitlab.com/gitlab-org/gitlab/-/merge_requests/161162. **Solution** Restore check for missing basic credentials and add a test case.
-
- Sep 30, 2024
-
-
Mayra Cabrera authored
Skip multi-version upgrade job for stable branch MRs See merge request https://gitlab.com/gitlab-org/gitlab/-/merge_requests/166877 Merged-by:
Mayra Cabrera <mcabrera@gitlab.com> Approved-by:
David Dieulivol <ddieulivol@gitlab.com> Approved-by:
Mayra Cabrera <mcabrera@gitlab.com> Co-authored-by:
Nailia Iskhakova <niskhakova@gitlab.com>
-
Nailia Iskhakova authored
To resolve CI pipelines in backports
-
- Sep 25, 2024
-
-
GitLab Release Tools Bot authored
-
- Sep 24, 2024
-
-
GitLab Release Tools Bot authored
[merge-train skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
Mayra Cabrera authored
Update expected vulnerability in enable_advanced_sast_spec.rb See merge request https://gitlab.com/gitlab-org/gitlab/-/merge_requests/167033 Merged-by:
Mayra Cabrera <mcabrera@gitlab.com> Approved-by:
Mayra Cabrera <mcabrera@gitlab.com> Co-authored-by:
Will Meek <wmeek@gitlab.com>
-
Mayra Cabrera authored
Implement input sanitization for SummarizeComments See merge request https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4474 Merged-by:
Mayra Cabrera <mcabrera@gitlab.com> Approved-by:
Ethan Urie <eurie@gitlab.com> Approved-by:
Mayra Cabrera <mcabrera@gitlab.com> Reviewed-by:
Dillon Wheeler <dwheeler@gitlab.com> Co-authored-by:
dillonwheeler <dwheeler@gitlab.com>
-
Merge branch 'security-duo-chat-issue-summary-prompt-injection-1-17-4-17-4' into '17-4-stable-ee' See merge request gitlab-org/security/gitlab!4474 Changelog: security
-
GitLab Release Tools Bot authored
Hide system notes with invalid references See merge request https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4482 Merged-by:
GitLab Release Tools Bot <delivery-team+release-tools@gitlab.com> Approved-by:
Bob Van Landuyt <bob@gitlab.com> Co-authored-by:
Heinrich Lee Yu <heinrich@gitlab.com>
-
Merge branch 'security-hide-system-notes-with-invalid-references-17-4' into '17-4-stable-ee' See merge request gitlab-org/security/gitlab!4482 Changelog: security
-
GitLab Release Tools Bot authored
Reset dependency proxy maven credentials when registry url is changed See merge request https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4472 Merged-by:
GitLab Release Tools Bot <delivery-team+release-tools@gitlab.com> Approved-by:
Dzmitry (Dima) Meshcharakou <12459192-dmeshcharakou@users.noreply.gitlab.com> Co-authored-by:
Radamanthus Batnag <rbatnag@gitlab.com>
-
Merge branch 'security-1180-fix-dependency-proxy-leak-17-4' into '17-4-stable-ee' See merge request gitlab-org/security/gitlab!4472 Changelog: security
-