- Apr 23, 2019
-
-
GitLab Release Tools Bot authored
[ci skip]
-
Marin Jankovski authored
[11.6] Backport Rugged implementations for Git access See merge request gitlab-org/gitlab-ce!27536
- Apr 21, 2019
-
-
Douwe Maan authored
Bring back Rugged implementation of ListCommitsByOid See merge request gitlab-org/gitlab-ce!27441
-
Sean McGivern authored
Avoid excessive recursive calls with Rugged TreeEntries Closes #59759 See merge request gitlab-org/gitlab-ce!26813
-
Douwe Maan authored
Bring back Rugged implementation of commit_tree_entry See merge request gitlab-org/gitlab-ce!25896
-
Sean McGivern authored
Bring back Rugged implementation of GetTreeEntries See merge request gitlab-org/gitlab-ce!25674
-
Sean McGivern authored
Bring back Rugged implementation of TreeEntry See merge request gitlab-org/gitlab-ce!25706
-
Douwe Maan authored
Bring back Rugged implementation of CommitIsAncestor See merge request gitlab-org/gitlab-ce!25702
-
Sean McGivern authored
Bring back Rugged implementation of find_commit See merge request gitlab-org/gitlab-ce!25477
-
- Mar 26, 2019
-
-
GitLab Release Tools Bot authored
Fix XSS in resolve conflicts form See merge request gitlab/gitlabhq!2989
-
- Mar 05, 2019
-
-
Paul Slaughter authored
The issue arose when the branch name contained Vue template JavaScript. The fix is to use `v-pre` which disables Vue compilation in a template.
-
- Mar 04, 2019
-
-
Yorick Peterse authored
Sharing a public project with a private group makes the group page publicly accessible See merge request gitlab/gitlabhq!2984
-
- Feb 28, 2019
-
-
Małgorzata Ksionek authored
-
Małgorzata Ksionek authored
-
GitLab Release Tools Bot authored
[ci skip]
-
- Feb 27, 2019
-
-
Robert Speicher authored
Display only information visible to current user on Milestone detail See merge request gitlab/gitlabhq!2919
-
Jarka Kadlecova authored
Display only labels and assignees of issues visible by the currently logged user Display only issues visible to user in the burndown chart
-
Yorick Peterse authored
Display the correct number of MRs a user has access to See merge request gitlab/gitlabhq!2927
-
Igor Drozdov authored
-
Yorick Peterse authored
Filter impersonated sessions from active sessions and remove ability to revoke session See merge request gitlab/gitlabhq!2983
-
Yorick Peterse authored
Forbid creating discussions for users with restricted access See merge request gitlab/gitlabhq!2889
-
Yorick Peterse authored
Check issue milestone availability See merge request gitlab/gitlabhq!2906
-
Yorick Peterse authored
Disable issue board policies when issues are disabled See merge request gitlab/gitlabhq!2912
-
Yorick Peterse authored
Show only MRs visible to user on milestone detail See merge request gitlab/gitlabhq!2925
-
Yorick Peterse authored
Don't allow non-members to see private related MRs See merge request gitlab/gitlabhq!2932
-
Yorick Peterse authored
Validate session key when authorizing with GCP to create a cluster See merge request gitlab/gitlabhq!2936
-
Yorick Peterse authored
Fix git clone revealing private repo's presence See merge request gitlab/gitlabhq!2940
-
Yorick Peterse authored
Check snippet attached file to be moved is within designated directory See merge request gitlab/gitlabhq!2943
-
Yorick Peterse authored
Fix blind SSRF in Prometheus Integration See merge request gitlab/gitlabhq!2946
-
Reuben Pereira authored
Check validity before querying so that if the dns entry for the api_url has been changed to something invalid after the model was saved and checked for validity, it will not query. This is to solve a toctou (time of check to time of use) issue.
-
Yorick Peterse authored
Fix leaking private repository information in API See merge request gitlab/gitlabhq!2950
-
Yorick Peterse authored
Arbitrary file read via MergeRequestDiff See merge request gitlab/gitlabhq!2953
-
Francisco Javier López authored
-
Yorick Peterse authored
Remove link after issue move when no permissions See merge request gitlab/gitlabhq!2957
-
Yorick Peterse authored
Merge branch 'security-add-public-internal-groups-as-members-to-your-project-idor-11-6' into '11-6-stable' Add public/internal groups as members to your Project(IDOR) See merge request gitlab/gitlabhq!2958
-
Yorick Peterse authored
Block local URLs for Kubernetes integration See merge request gitlab/gitlabhq!2961
-
Yorick Peterse authored
Catch possible Addressable::URI::InvalidURIError See merge request gitlab/gitlabhq!2966
-
Yorick Peterse authored
Stop linking to unrecognized package sources See merge request gitlab/gitlabhq!2971
-