1
0
Fork 1
mirror of https://github.com/NixOS/nixpkgs.git synced 2024-12-25 03:17:13 +00:00
nixpkgs/pkgs/applications/version-management
Milan c25756f91c
gitlab: 12.8.1 -> 12.8.2 (#81803)
Includes multiple security fixes mentioned in
https://about.gitlab.com/releases/2020/03/04/gitlab-12-dot-8-dot-2-released/
(unfortunately, no CVE numbers as of yet)

 - Directory Traversal to Arbitrary File Read
 - Account Takeover Through Expired Link
 - Server Side Request Forgery Through Deprecated Service
 - Group Two-Factor Authentication Requirement Bypass
 - Stored XSS in Merge Request Pages
 - Stored XSS in Merge Request Submission Form
 - Stored XSS in File View
 - Stored XSS in Grafana Integration
 - Contribution Analytics Exposed to Non-members
 - Incorrect Access Control in Docker Registry via Deploy Tokens
 - Denial of Service via Permission Checks
 - Denial of Service in Design For Public Issue
 - GitHub Tokens Displayed in Plaintext on Integrations Page
 - Incorrect Access Control via LFS Import
 - Unescaped HTML in Header
 - Private Merge Request Titles Leaked via Widget
 - Project Namespace Exposed via Vulnerability Feedback Endpoint
 - Denial of Service Through Recursive Requests
 - Project Authorization Not Being Updated
 - Incorrect Permission Level For Group Invites
 - Disclosure of Private Group Epic Information
 - User IP Address Exposed via Badge images
 - Update postgresql (GitLab Omnibus)
2020-03-05 16:37:21 +01:00
..
arch
bazaar
bcompare
bitkeeper
blackbox
cvs
cvs-fast-export cvs_fast_export: 1.50 -> 1.51 2020-02-19 19:05:34 +00:00
cvs2svn
cvsps
cvsq
dvc
fossil
gerrit
git-and-tools gitAndTools.gh 0.6.0 -> 0.6.1 2020-03-05 07:49:38 +10:00
git-backup git-backup: upgrade cargo fetcher and cargoSha256 2020-02-29 11:20:47 -05:00
git-crecord
git-lfs
git-repo gitRepo: 2.3 -> 2.4.1 2020-02-25 10:06:29 +01:00
git-review
git-sizer
git-up
gitea
gitinspector
gitkraken gitkraken: 6.5.1 -> 6.5.3 2020-02-25 21:25:38 -05:00
gitlab gitlab: 12.8.1 -> 12.8.2 (#81803) 2020-03-05 16:37:21 +01:00
gitless
gitolite
gitstats
gogs
gource
guitone
meld meld: 3.20.1 -> 3.20.2 2020-02-18 07:14:40 -05:00
mercurial
monotone
monotone-viz
mr
nbstripout
nitpick
p4v
peru
pijul pijul: fix build by migrating off legacy fetchCargo 2020-02-16 09:36:17 -08:00
rabbitvcs
rapidsvn
rcs
redmine
reposurgeon
sit
smartgithg
sourcehut sourcehut: don't refer to rambox 2020-02-17 21:35:35 +03:00
src src: 1.27 -> 1.28 2020-02-27 13:43:09 +00:00
srcml
sublime-merge
subversion
tailor
tkcvs
tortoisehg
vcprompt
vcsh
yadm