- 27 Sep, 2021 40 commits
-
-
Fernando authored
Sanitize the return_to param to avoid XSS. Update sprite icon markup to be up to HTML standard Changelog: security EE: true
-
GitLab Bot authored
-
Heinrich Lee Yu authored
Fix DB load balance autoloading/code-reloading See merge request gitlab-org/gitlab!71218
-
Alex Kalderimis authored
Send setup_for_company to CustomersDot in trial form See merge request gitlab-org/gitlab!70569
-
GitLab Release Tools Bot authored
Use validated URL when sending request to Gitea Importer See merge request gitlab-org/security/gitlab!1758
-
GitLab Release Tools Bot authored
Security: 2FA bypass using git command See merge request gitlab-org/security/gitlab!1739
-
GitLab Release Tools Bot authored
Apply account locking to password reset page See merge request gitlab-org/security/gitlab!1702
-
GitLab Release Tools Bot authored
Enforce configured scopes for OAuth applications See merge request gitlab-org/security/gitlab!1708
-
GitLab Release Tools Bot authored
Project access tokens can be used as "back doors" See merge request gitlab-org/security/gitlab!1749
-
GitLab Release Tools Bot authored
Do not export and import repository_size_limit See merge request gitlab-org/security/gitlab!1753
-
GitLab Release Tools Bot authored
Users with expired password can still access API and Git with token See merge request gitlab-org/security/gitlab!1690
-
GitLab Release Tools Bot authored
Disable exporting pipeline triggers on project export See merge request gitlab-org/security/gitlab!1752
-
GitLab Release Tools Bot authored
Verify state before using errors from OAuth2 OmniAuth providers See merge request gitlab-org/security/gitlab!1731
-
GitLab Release Tools Bot authored
Prevent showing not allowed subgroup epics See merge request gitlab-org/security/gitlab!1635
-
GitLab Release Tools Bot authored
Add pagination to Dependencies API See merge request gitlab-org/security/gitlab!1679
-
GitLab Release Tools Bot authored
Escapes MR approval rule names correctly See merge request gitlab-org/security/gitlab!1760
-
GitLab Release Tools Bot authored
Prevent moving epic issues to different group hierarchy See merge request gitlab-org/security/gitlab!1626
-
GitLab Release Tools Bot authored
Merge branch 'security-pending-invitations-of-public-groups-and-public-projects-are-visible-to-any-user' into 'master' Require group admin access to list pending invites See merge request gitlab-org/security/gitlab!1714
-
GitLab Release Tools Bot authored
Fix denial-of-service attack in Markdown parser See merge request gitlab-org/security/gitlab!1696
-
GitLab Release Tools Bot authored
Fix stored XSS in GFM auto-complete See merge request gitlab-org/security/gitlab!1703
-
Jonathan Schafer authored
Changelog: changed
-
Rémy Coutable authored
Fix Jira connect events controller spec indentation See merge request gitlab-org/gitlab!70940
-
GitLab Release Tools Bot authored
Scrub artifacts signed URL in SendEntry logs See merge request gitlab-org/security/gitlab!1837
-
Nick Gaskill authored
Docs: Improve cluster levels sections See merge request gitlab-org/gitlab!71209
-
Marcia Ramos authored
-
Nick Gaskill authored
Update error tracking docs with more UI See merge request gitlab-org/gitlab!70803
-
Dmitriy Zaporozhets (DZ) authored
-
Rémy Coutable authored
Skip Product Intelligence review for growth experiments MRs See merge request gitlab-org/gitlab!70907
-
Marcia Ramos authored
Fix GKE IAC instructions See merge request gitlab-org/gitlab!70433
-
João Alexandre Cunha authored
-
Gabriel Mazetto authored
[Geo] Add a worker to backfill verification state See merge request gitlab-org/gitlab!69301
-
Rémy Coutable authored
Add Project Migration Labels See merge request gitlab-org/gitlab!70810
-
alinamihaila authored
-
alinamihaila authored
-
Rémy Coutable authored
Make Import Metrics project_counter private See merge request gitlab-org/gitlab!71114
-
Bob Van Landuyt authored
Use GroupTree ancestors linear scopes See merge request gitlab-org/gitlab!70503
-
Vitali Tatarintev authored
Add md5_hexdigest to compute MD5 hashes for files See merge request gitlab-org/gitlab!71178
-
Achilleas Pipinellis authored
Clean up vale substitution warnings MR1 See merge request gitlab-org/gitlab!71025
-
Abhijeet Chatterjee authored
-
Fabio Pitino authored
Stop using view helpers in Clusters::ClusterPresenter See merge request gitlab-org/gitlab!70867
-