Validate URI scheme also for internal URI
Gitlab::UrlBlocker ignores scheme when validating URI matching either config.gitlab or config.gitlab_shell This patch enforces matching config.gitlab.protocol for internal web and ssh for internal shell.
Showing
Please register or sign in to comment