]> git.pld-linux.org Git - packages/gitlab-ce.git/commitdiff
8.17.5 (2017-04-05); SECURITY
authorElan Ruusamäe <glen@delfi.ee>
Thu, 6 Apr 2017 19:57:11 +0000 (22:57 +0300)
committerElan Ruusamäe <glen@delfi.ee>
Thu, 6 Apr 2017 19:57:29 +0000 (22:57 +0300)
- Don't show source project name when user does not have access.
- Remove the class attribute from the whitelist for HTML generated from Markdown.
- Fix path disclosure in project import/export.
- Fix for open redirect vulnerability using continue[to] in URL when requesting project import status.
- Fix for open redirect vulnerabilities in todos, issues, and MR controllers.

gitlab-ce.spec

index 8c602b71336012e534b1d62a104d68bcb82ce800..c3615a84927495852cf4ab1d8b5dc288bdd0fe81 100644 (file)
@@ -18,7 +18,7 @@
 %define        workhorse_version 1.3.0
 Summary:       A Web interface to create projects and repositories, manage access and do code reviews
 Name:          gitlab-ce
-Version:       8.17.4
+Version:       8.17.5
 Release:       0.82
 License:       MIT
 Group:         Applications/WWW
This page took 0.074401 seconds and 4 git commands to generate.