diff options
author | Kushal Pandya <kushal@gitlab.com> | 2018-11-12 12:55:42 +0300 |
---|---|---|
committer | Kushal Pandya <kushal@gitlab.com> | 2018-11-12 14:05:28 +0300 |
commit | 380214b3b8397402a616a37d0ccc1172bf04ec93 (patch) | |
tree | 1feeaa354f5999a1218f06daaf69e723bf51d582 | |
parent | 9c5bb1c4b50fb4536040c27982168641596ddc1e (diff) |
Add changelog entry
-rw-r--r-- | changelogs/unreleased/security-11-3-2717-xss-username-autocomplete.yml | 5 |
1 files changed, 5 insertions, 0 deletions
diff --git a/changelogs/unreleased/security-11-3-2717-xss-username-autocomplete.yml b/changelogs/unreleased/security-11-3-2717-xss-username-autocomplete.yml new file mode 100644 index 00000000000..d9b1015eeb4 --- /dev/null +++ b/changelogs/unreleased/security-11-3-2717-xss-username-autocomplete.yml @@ -0,0 +1,5 @@ +--- +title: Escape user fullname while rendering autocomplete template to prevent XSS +merge_request: +author: +type: security |