Skip to content
GitLab
Menu
Projects
Groups
Snippets
Loading...
Help
Help
Support
Community forum
Keyboard shortcuts
?
Submit feedback
Contribute to GitLab
Sign in
Toggle navigation
Menu
Open sidebar
gpt
large_projects
gitlabhq1
Commits
1dea6792
Commit
1dea6792
authored
6 years ago
by
GitLab Release Tools Bot
Committed by
Jose Vargas
6 years ago
Browse files
Options
Download
Email Patches
Plain Diff
Update CHANGELOG.md for 11.2.2
[ci skip]
parent
cdc2bc43
Changes
2
Hide whitespace changes
Inline
Side-by-side
Showing
2 changed files
with
9 additions
and
5 deletions
+9
-5
CHANGELOG.md
CHANGELOG.md
+9
-0
changelogs/unreleased/security-fj-missing-csrf-system-hooks-resend.yml
...released/security-fj-missing-csrf-system-hooks-resend.yml
+0
-5
No files found.
CHANGELOG.md
View file @
1dea6792
...
...
@@ -2,6 +2,15 @@
documentation
](
doc/development/changelog.md
)
for instructions on adding your own
entry.
## 11.2.2 (2018-08-27)
### Security (3 changes)
-
Fixed persistent XSS rendering/escaping of diff location lines.
-
Adding CSRF protection to Hooks resend action.
-
Block link-local addresses in URLBlocker.
## 11.2.1 (2018-08-22)
### Fixed (2 changes)
...
...
This diff is collapsed.
Click to expand it.
changelogs/unreleased/security-fj-missing-csrf-system-hooks-resend.yml
deleted
100644 → 0
View file @
cdc2bc43
---
title
:
Adding CSRF protection to Hooks resend action
merge_request
:
author
:
type
:
security
This diff is collapsed.
Click to expand it.
Write
Preview
Markdown
is supported
0%
Try again
or
attach a new file
.
Attach a file
Cancel
You are about to add
0
people
to the discussion. Proceed with caution.
Finish editing this message first!
Cancel
Please
register
or
sign in
to comment