- Apr 29, 2022
-
-
GitLab Release Tools Bot authored
[merge-train skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
GitLab Release Tools Bot authored
Update Import/Export merge/push access levels & exclude ci config path See merge request gitlab-org/security/gitlab!2372
-
Merge branch 'security-update-import-export-pr-branches-14-8' into '14-8-stable-ee' See merge request gitlab-org/security/gitlab!2372 Changelog: security
-
GitLab Release Tools Bot authored
Prevent maintainers from editing PipelineSchedule See merge request gitlab-org/security/gitlab!2423
-
Merge branch 'security-force-ci-schedule-ownership-14-8' into '14-8-stable-ee' See merge request gitlab-org/security/gitlab!2423 Changelog: security
-
GitLab Release Tools Bot authored
Add validation to pypi file sha256 values See merge request gitlab-org/security/gitlab!2417
-
Merge branch 'security-262724-pypi-sha256-validation-14-8' into '14-8-stable-ee' See merge request gitlab-org/security/gitlab!2417 Changelog: security
-
GitLab Release Tools Bot authored
Conan Token uses PAT rather than ID in payload See merge request gitlab-org/security/gitlab!2346
-
Merge branch 'security-296866-conan-token-update-14-8' into '14-8-stable-ee' See merge request gitlab-org/security/gitlab!2346 Changelog: security
-
GitLab Release Tools Bot authored
[security] Fix markdown API disclosing issue titles of limited projects See merge request gitlab-org/security/gitlab!2405
-
Merge branch 'security-markdown-api-issue-title-14-8' into '14-8-stable-ee' See merge request gitlab-org/security/gitlab!2405 Changelog: security
-
GitLab Release Tools Bot authored
Verify that mentioned user can read TODO's note See merge request gitlab-org/security/gitlab!2398
-
Merge branch 'security-check-read-note-permissions-before-creating-todo-14-8' into '14-8-stable-ee' See merge request gitlab-org/security/gitlab!2398 Changelog: security
-
GitLab Release Tools Bot authored
Invalidate markdown cache to clear up stored XSS See merge request gitlab-org/security/gitlab!2420
-
Merge branch 'security-654-14-8' into '14-8-stable-ee' See merge request gitlab-org/security/gitlab!2420 Changelog: security
-
GitLab Release Tools Bot authored
Allow rate limiting of deploy tokens See merge request gitlab-org/security/gitlab!2385
-
Merge branch 'security-342481-deploy-token-support-rack-attack-14-8' into '14-8-stable-ee' See merge request gitlab-org/security/gitlab!2385 Changelog: security
-
GitLab Release Tools Bot authored
Merge branch 'security-pedropombeiro/330047/use-protected-suffix-for-cache-name-14-8' into '14-8-stable-ee' Add suffix to cache name to add isolation See merge request gitlab-org/security/gitlab!2373
-
Merge branch 'security-pedropombeiro/330047/use-protected-suffix-for-cache-name-14-8' into '14-8-stable-ee' See merge request gitlab-org/security/gitlab!2373 Changelog: security
-
GitLab Release Tools Bot authored
Disable wiki access with CI_JOB_TOKEN when improper access level See merge request gitlab-org/security/gitlab!2391
-
Merge branch 'security-wiki-access-from-jobs-14-8' into '14-8-stable-ee' See merge request gitlab-org/security/gitlab!2391 Changelog: security
-
GitLab Release Tools Bot authored
Sanitize error input to prevent HTML/CSS injection in messages See merge request gitlab-org/security/gitlab!2378
-
Merge branch 'security-fix-html-css-injection-14-8' into '14-8-stable-ee' See merge request gitlab-org/security/gitlab!2378 Changelog: security
-
GitLab Release Tools Bot authored
Secure debug trace artifact download See merge request gitlab-org/security/gitlab!2367
-
Merge branch 'security-aw-secure-trace-downloads-14-8' into '14-8-stable-ee' See merge request gitlab-org/security/gitlab!2367 Changelog: security
-
GitLab Release Tools Bot authored
Use password type for all secret integration properties See merge request gitlab-org/security/gitlab!2411
-
Merge branch 'security-integrations-password-fields-14-8' into '14-8-stable-ee' See merge request gitlab-org/security/gitlab!2411 Changelog: security
-
GitLab Release Tools Bot authored
Limit CI job group_name regexp See merge request gitlab-org/security/gitlab!2381
-
Merge branch 'security-improve-ci-job-group-name-regexp-14-8' into '14-8-stable-ee' See merge request gitlab-org/security/gitlab!2381 Changelog: security
-
- Apr 04, 2022
-
-
Fix time-dependent failure on roadmap spec See merge request gitlab-org/gitlab!84157
-
- Mar 31, 2022
-
-
GitLab Release Tools Bot authored
-
GitLab Release Tools Bot authored
[merge-train skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
John Skarbek authored
Update to commonmarker 0.23.4 See merge request gitlab-org/security/gitlab!2282
-
Merge branch 'security-update-cmark-gfm-14-8' into '14-8-stable-ee' See merge request gitlab-org/security/gitlab!2282 Changelog: security
-
John Skarbek authored
Revert merge request approval groups behavior See merge request gitlab-org/security/gitlab!2334
-
Merge branch '14-8_fix_merge_request_approval_rules' into '14-8-stable-ee' See merge request gitlab-org/security/gitlab!2334 Changelog: security
-