- Apr 29, 2022
-
-
GitLab Release Tools Bot authored
[merge-train skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
Alessio Caiazza authored
Fixes infinite loop when rendering Ipynb Diffs See merge request gitlab-org/security/gitlab!2401
-
Merge branch 'security-upgrade-ipynbdiff-0.4.5-14-9-14-9' into '14-9-stable-ee' See merge request gitlab-org/security/gitlab!2401 Changelog: security
-
GitLab Release Tools Bot authored
Update Import/Export merge/push access levels & exclude ci config path See merge request gitlab-org/security/gitlab!2371
-
Merge branch 'security-update-import-export-pr-branches-14-9' into '14-9-stable-ee' See merge request gitlab-org/security/gitlab!2371 Changelog: security
-
GitLab Release Tools Bot authored
Prevent maintainers from editing PipelineSchedule See merge request gitlab-org/security/gitlab!2422
-
Merge branch 'security-force-ci-schedule-ownership-14-9' into '14-9-stable-ee' See merge request gitlab-org/security/gitlab!2422 Changelog: security
-
GitLab Release Tools Bot authored
Add validation to pypi file sha256 values See merge request gitlab-org/security/gitlab!2416
-
Merge branch 'security-262724-pypi-sha256-validation-14-9' into '14-9-stable-ee' See merge request gitlab-org/security/gitlab!2416 Changelog: security
-
GitLab Release Tools Bot authored
Conan Token uses PAT rather than ID in payload See merge request gitlab-org/security/gitlab!2345
-
Merge branch 'security-296866-conan-token-update-14-9' into '14-9-stable-ee' See merge request gitlab-org/security/gitlab!2345 Changelog: security
-
GitLab Release Tools Bot authored
[security] Fix markdown API disclosing issue titles of limited projects See merge request gitlab-org/security/gitlab!2406
-
Merge branch 'security-markdown-api-issue-title-14-9' into '14-9-stable-ee' See merge request gitlab-org/security/gitlab!2406 Changelog: security
-
GitLab Release Tools Bot authored
Verify that mentioned user can read TODO's note See merge request gitlab-org/security/gitlab!2396
-
Merge branch 'security-check-read-note-permissions-before-creating-todo-14-9' into '14-9-stable-ee' See merge request gitlab-org/security/gitlab!2396 Changelog: security
-
GitLab Release Tools Bot authored
Invalidate markdown cache to clear up stored XSS See merge request gitlab-org/security/gitlab!2419
-
Merge branch 'security-654-14-9' into '14-9-stable-ee' See merge request gitlab-org/security/gitlab!2419 Changelog: security
-
GitLab Release Tools Bot authored
Allow rate limiting of deploy tokens See merge request gitlab-org/security/gitlab!2384
-
Merge branch 'security-342481-deploy-token-support-rack-attack-14-9' into '14-9-stable-ee' See merge request gitlab-org/security/gitlab!2384 Changelog: security
-
GitLab Release Tools Bot authored
Merge branch 'security-pedropombeiro/330047/use-protected-suffix-for-cache-name-14-9' into '14-9-stable-ee' Add suffix to cache name to add isolation See merge request gitlab-org/security/gitlab!2374
-
Merge branch 'security-pedropombeiro/330047/use-protected-suffix-for-cache-name-14-9' into '14-9-stable-ee' See merge request gitlab-org/security/gitlab!2374 Changelog: security
-
GitLab Release Tools Bot authored
Disable wiki access with CI_JOB_TOKEN when improper access level See merge request gitlab-org/security/gitlab!2390
-
Merge branch 'security-wiki-access-from-jobs-14-9' into '14-9-stable-ee' See merge request gitlab-org/security/gitlab!2390 Changelog: security
-
GitLab Release Tools Bot authored
Sanitize error input to prevent HTML/CSS injection in messages See merge request gitlab-org/security/gitlab!2377
-
Merge branch 'security-fix-html-css-injection-14-9' into '14-9-stable-ee' See merge request gitlab-org/security/gitlab!2377 Changelog: security
-
GitLab Release Tools Bot authored
Secure debug trace artifact download See merge request gitlab-org/security/gitlab!2366
-
Merge branch 'security-aw-secure-trace-downloads-14-9' into '14-9-stable-ee' See merge request gitlab-org/security/gitlab!2366 Changelog: security
-
GitLab Release Tools Bot authored
Use password type for all secret integration properties See merge request gitlab-org/security/gitlab!2410
-
Merge branch 'security-integrations-password-fields-14-9' into '14-9-stable-ee' See merge request gitlab-org/security/gitlab!2410 Changelog: security
-
GitLab Release Tools Bot authored
Limit CI job group_name regexp See merge request gitlab-org/security/gitlab!2380
-
Merge branch 'security-improve-ci-job-group-name-regexp-14-9' into '14-9-stable-ee' See merge request gitlab-org/security/gitlab!2380 Changelog: security
-
- Apr 12, 2022
-
-
GitLab Release Tools Bot authored
[merge-train skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
GitLab Release Tools Bot authored
[ci skip]
-
Amy Phillips authored
Prepare 14.9.3-ee release See merge request gitlab-org/gitlab!84664
-
- Apr 08, 2022
-
-
Amy Phillips authored
Merge branch 'revert-protected-environments-group-access-inheritence-14-9' into '14-9-stable-ee-patch-3' Revert Protected Environment group access inheritence See merge request gitlab-org/gitlab!84685
-
Shinya Maeda authored
This commit reverts the group access inhertience in protected environments. Changelog: fixed
-
- Apr 07, 2022
-
-
See https://gitlab.com/gitlab-org/gitlab/-/merge_requests/84511 Changelog: fixed
-