- 02 9月, 2019 7 次提交
-
-
由 GitLab Release Tools Bot 提交于
-
由 GitLab Release Tools Bot 提交于
[ci skip]
-
由 John Jarvis 提交于
Prepare 12.2.4 release See merge request gitlab-org/gitlab-ce!32455
-
由 Grzegorz Bizon 提交于
Fix permissions check in `RelativeLinkFilter` See merge request gitlab-org/gitlab-ce!32448
-
由 John Jarvis 提交于
Add StubConfiguration.stub_config method See merge request gitlab-org/gitlab-ce!32530
-
由 Ash McKenzie 提交于
-
由 Filipa Lacerda 提交于
Update Mermaid to v8.2.6 See merge request gitlab-org/gitlab-ce!32502
-
- 30 8月, 2019 9 次提交
-
-
由 Rémy Coutable 提交于
Fix snippets API not working with visibility level Closes #66050 See merge request gitlab-org/gitlab-ce!32286 (cherry picked from commit 1843502f) 680f4377 Fix snippets API not working with visibility level
-
由 Ash McKenzie 提交于
Fix Piwik not working Closes #66627 See merge request gitlab-org/gitlab-ce!32234 (cherry picked from commit 0c639b24) f6058981 Fix Piwik not working
-
由 Filipa Lacerda 提交于
Upgrade Mermaid to v8.2.4 See merge request gitlab-org/gitlab-ce!32186 (cherry picked from commit f90759bb) c2541b64 Upgrade Mermaid to v8.2.4
-
由 Stan Hu 提交于
Add helpers to exactly undo cleanup_concurrent_column_rename See merge request gitlab-org/gitlab-ce!32183 (cherry picked from commit fc08d48c) 9b592a59 Add helper to exactly undo cleanup_concurrent_column_rename 61777843 Add spec for undo_rename_column_concurrently d28ad870 Add spec for when default is false
-
由 Mike Greiling 提交于
fix: remove double % See merge request gitlab-org/gitlab-ce!32178 (cherry picked from commit bf2b4c52) 22e2a601 fix: remove double % from layout width description
-
由 Mayra Cabrera 提交于
Fix N+1 Gitaly calls in /api/v4/projects/:id/issues See merge request gitlab-org/gitlab-ce!32171 (cherry picked from commit bbd39021) 44063501 Fix N+1 Gitaly calls in /api/v4/projects/:id/issues
-
由 Mike Greiling 提交于
Fix issuable sidebar icon of notification disabled See merge request gitlab-org/gitlab-ce!32134 (cherry picked from commit a93612aa) 9ad0a8ad Fix issuable sidebar icon of notification disabled
-
由 Mike Greiling 提交于
Match syntax highlighting theme for line expansion rows Closes #66066 See merge request gitlab-org/gitlab-ce!31821 (cherry picked from commit 1349a3d5) 9013ab1f Add syntax highlighting for line expansion
- 29 8月, 2019 3 次提交
-
-
由 GitLab Release Tools Bot 提交于
-
由 GitLab Release Tools Bot 提交于
[ci skip]
-
由 Jan Provaznik 提交于
Merge branch '66641-broken-master-real-http-connections-are-disabled-unregistered-request' into 'master' Use `stub_full_request` to fix spec failure Closes #66641 See merge request gitlab-org/gitlab-ce!32259
-
- 28 8月, 2019 3 次提交
-
-
由 John Jarvis 提交于
This reverts commit cec9310c.
-
由 GitLab Release Tools Bot 提交于
Return NO_ACCESS if user is nil See merge request gitlab/gitlabhq!3390
-
由 Patrick Derichs 提交于
-
- 27 8月, 2019 6 次提交
-
-
由 GitLab Release Tools Bot 提交于
-
由 GitLab Release Tools Bot 提交于
[ci skip]
-
由 GitLab Release Tools Bot 提交于
Avoid exposing unaccessible repo data upon GFM post processing See merge request gitlab/gitlabhq!3382
-
由 Oswaldo Ferreira 提交于
When post-processing relative links to absolute links RelativeLinkFilter didn't take into consideration that internal repository data could be exposed for users that do not have repository access to the project. This commit solves that by checking whether the user can `download_code` at this repository, avoiding any processing of this filter if the user can't. Additionally, if we're processing for a group ( no project was given), we check if the user can read it in order to expand the href as an extra. That doesn't seem necessarily a breach now, but an extra check doesn't hurt as after all the user needs to be able to `read_group`.
-
由 GitLab Release Tools Bot 提交于
Ensure only authorised users can create notes on merge requests and issues See merge request gitlab/gitlabhq!3324
-
由 Alex Kalderimis 提交于
* Prevent creating notes on inaccessible MRs This applies the notes rules at the MR scope. Rather than adding extra rules to the Project level policy, preventing :create_note here is better since it only prevents creating notes on MRs. * Prevent creating notes in inaccessible Issues without this policy, non-team-members are allowed to comment on issues even when the project has the private-issues policy set. This means that without this change, users are allowed to comment on issues that they cannot read. * Add CHANGELOG entry
-
- 26 8月, 2019 12 次提交
-
-
由 GitLab Release Tools Bot 提交于
Prevent disclosure of merge request id via email See merge request gitlab/gitlabhq!3350
-
由 GitLab Release Tools Bot 提交于
Send TODOs for comments on commits correctly See merge request gitlab/gitlabhq!3365
-
由 GitLab Release Tools Bot 提交于
Gitaly: ignore git redirects See merge request gitlab/gitlabhq!3374
-
由 GitLab Release Tools Bot 提交于
Project visibility restriction bypass See merge request gitlab/gitlabhq!3330
-
由 Jacob Vosmaer 提交于
-
由 George Koltsov 提交于
Add Gitlab::VisibilityLevelChecker that verifies selected project visibility level (or overridden param) is not restricted when creating or importing a project
-
由 GitLab Release Tools Bot 提交于
DNS Rebind SSRF in Kubernetes Integration See merge request gitlab/gitlabhq!3268
-
由 GitLab Release Tools Bot 提交于
Filter out old system notes for epics in notes api endpoint response See merge request gitlab/gitlabhq!3314
-
由 GitLab Release Tools Bot 提交于
Fix HTML injection for label description See merge request gitlab/gitlabhq!3315
-
由 GitLab Release Tools Bot 提交于
Permission fix for MergeRequestsController#pipeline_status See merge request gitlab/gitlabhq!3322
-
由 GitLab Release Tools Bot 提交于
Limit the size of issuable description and comments See merge request gitlab/gitlabhq!3323
-
由 GitLab Release Tools Bot 提交于
Add merge note type as cross reference See merge request gitlab/gitlabhq!3328
-