-
- Downloads
Merge branch 'security-xss-grafana-url-12-1' into '12-1-stable'
Handle Stored XSS for Grafana URL in settings See merge request gitlab/gitlabhq!3483
No related branches found
No related tags found
Showing
- app/models/application_setting.rb 20 additions, 1 deletionapp/models/application_setting.rb
- app/validators/addressable_url_validator.rb 2 additions, 1 deletionapp/validators/addressable_url_validator.rb
- changelogs/unreleased/security-xss-grafana-url-12-4.yml 5 additions, 0 deletionschangelogs/unreleased/security-xss-grafana-url-12-4.yml
- lib/gitlab/url_blocker.rb 32 additions, 12 deletionslib/gitlab/url_blocker.rb
- spec/lib/gitlab/url_blocker_spec.rb 60 additions, 0 deletionsspec/lib/gitlab/url_blocker_spec.rb
- spec/models/application_setting_spec.rb 6 additions, 0 deletionsspec/models/application_setting_spec.rb
- spec/requests/api/commit_statuses_spec.rb 1 addition, 1 deletionspec/requests/api/commit_statuses_spec.rb
- spec/validators/addressable_url_validator_spec.rb 63 additions, 0 deletionsspec/validators/addressable_url_validator_spec.rb
Please register or sign in to comment