- Nov 18, 2018
-
-
GitLab Release Tools Bot authored
[ci skip]
-
Steve Xuereb authored
[11.4] Prevent templated services from being imported See merge request gitlab/gitlabhq!2636
-
Steve Xuereb authored
[11.4] Escape user fullname while rendering autocomplete template to prevent XSS See merge request gitlab/gitlabhq!2607
- Nov 04, 2018
-
-
GitLab Release Tools Bot authored
[ci skip]
-
Thiago Presa authored
-
Thiago Presa authored
- Nov 02, 2018
-
-
-
The default value of the selected stage was a translated string. This commit removes the string and uses a flag property instead. The stage dropdown is now only rendered after the stages endpoint is received.
-
-
- Nov 01, 2018
-
-
Documentation: Add mention that recovery codes are downloadable. See merge request gitlab-org/gitlab-ce!22483
-
Document highlighted mentions See merge request gitlab-org/gitlab-ce!22488
-
Fix usage ping link Closes #53070 See merge request gitlab-org/gitlab-ce!22545
-
Fixed merge request fill tree not respecting fluid width Closes #52916 See merge request gitlab-org/gitlab-ce!22487
-
- Oct 30, 2018
-
-
GitLab Release Tools Bot authored
[ci skip]
-
Jan Provaznik authored
[11.4] Security kubeclient ssrf See merge request gitlab/gitlabhq!2573
- Oct 26, 2018
-
-
GitLab Release Tools Bot authored
[ci skip]
-
[11.4] Fix Token lookup for Git over HTTP and registry authentication See merge request gitlab/gitlabhq!2577
- Oct 25, 2018
-
-
GitLab Release Tools Bot authored
[ci skip]
-
Thiago Presa authored
Block additional localhost addresses in UrlBlocker See merge request gitlab/gitlabhq!2487
-
[11.4] Escape issue title while template rendering to prevent XSS See merge request gitlab/gitlabhq!2571
-
[11.4] Redact unsubscribe links in issuable texts See merge request gitlab/gitlabhq!2565
-
: [11.4] Resolve "Sensitive information is stored in browser history" See merge request gitlab/gitlabhq!2562
-
Thiago Presa authored
[11.4] Validate Wiki attachments are valid temporary files See merge request gitlab/gitlabhq!2569
-
[11.4] JUnit test reports endpoint exposes full stack trace in production mode See merge request gitlab/gitlabhq!2517
-
[11.4] Persist only SHA digest of PersonalAccessToken#token See merge request gitlab/gitlabhq!2551
- Oct 23, 2018
-
-
GitLab Release Tools Bot authored
[ci skip]
-
Thiago Presa authored
[11.4] Fix XSS in MR source branch name See merge request gitlab/gitlabhq!2550
-
Thiago Presa authored
[11.4] Prevent SSRF attacks in HipChat integration See merge request gitlab/gitlabhq!2547
- Oct 19, 2018
-
-
GitLab Release Tools Bot authored
[ci skip]
- Oct 18, 2018
-
-
Thiago Presa authored
Prepare 11.4 RC8 release See merge request gitlab-org/gitlab-ce!22452
-
Add Git protocol v2 docs See merge request gitlab-org/gitlab-ce!22227
-
QA: Add support for pushing and viewing files See merge request gitlab-org/gitlab-ce!21911