BigW Consortium Gitlab
Skip to content
Projects
Groups
Snippets
Help
This project
Loading...
Sign in / Register
Toggle navigation
G
gitlab-ce
Project
Overview
Details
Activity
Cycle Analytics
Repository
Repository
Files
Commits
Branches
Tags
Contributors
Graph
Compare
Charts
Issues
0
Issues
0
List
Board
Labels
Milestones
Merge Requests
0
Merge Requests
0
Registry
Registry
Wiki
Wiki
Snippets
Snippets
Members
Members
Collapse sidebar
Close sidebar
Activity
Graph
Charts
Create a new issue
Commits
Issue Boards
Open sidebar
Forest Godfrey
gitlab-ce
Commits
406299f4
Commit
406299f4
authored
Feb 07, 2018
by
Robert Speicher
Browse files
Options
Browse Files
Download
Email Patches
Plain Diff
Update CHANGELOG.md for 10.2.8
[ci skip]
parent
83d49d1e
Hide whitespace changes
Inline
Side-by-side
Showing
5 changed files
with
10 additions
and
20 deletions
+10
-20
CHANGELOG.md
CHANGELOG.md
+10
-0
fix-gh-namespace-issue.yml
changelogs/unreleased/fix-gh-namespace-issue.yml
+0
-5
fix-stored-xss-in-code-blocks.yml
changelogs/unreleased/fix-stored-xss-in-code-blocks.yml
+0
-5
mc-bug-38984-wildcard-protected-tags.yml
...elogs/unreleased/mc-bug-38984-wildcard-protected-tags.yml
+0
-5
security-10-4-todo-api-reveals-sensitive-information.yml
.../security-10-4-todo-api-reveals-sensitive-information.yml
+0
-5
No files found.
CHANGELOG.md
View file @
406299f4
...
...
@@ -2,6 +2,16 @@
documentation](doc/development/changelog.md) for instructions on adding your own
entry.
## 10.2.8 (2018-02-07)
### Security (4 changes)
-
Fix namespace access issue for GitHub, BitBucket, and GitLab.com project importers.
-
Fix stored XSS in code blocks that ignore highlighting.
-
Fix wilcard protected tags protecting all branches.
-
Restrict Todo API mark_as_done endpoint to the user's todos only.
## 10.2.7 (2018-01-18)
-
No changes.
...
...
changelogs/unreleased/fix-gh-namespace-issue.yml
deleted
100644 → 0
View file @
83d49d1e
---
title
:
Fix namespace access issue for GitHub, BitBucket, and GitLab.com project importers
merge_request
:
author
:
type
:
security
changelogs/unreleased/fix-stored-xss-in-code-blocks.yml
deleted
100644 → 0
View file @
83d49d1e
---
title
:
Fix stored XSS in code blocks that ignore highlighting
merge_request
:
author
:
type
:
security
changelogs/unreleased/mc-bug-38984-wildcard-protected-tags.yml
deleted
100644 → 0
View file @
83d49d1e
---
title
:
Fix wilcard protected tags protecting all branches
merge_request
:
author
:
type
:
security
changelogs/unreleased/security-10-4-todo-api-reveals-sensitive-information.yml
deleted
100644 → 0
View file @
83d49d1e
---
title
:
Restrict Todo API mark_as_done endpoint to the user's todos only
merge_request
:
author
:
type
:
security
Write
Preview
Markdown
is supported
0%
Try again
or
attach a new file
Attach a file
Cancel
You are about to add
0
people
to the discussion. Proceed with caution.
Finish editing this message first!
Cancel
Please
register
or
sign in
to comment