From f3a06d34bbca5be010fb41d6693d7dbbbecb46dc Mon Sep 17 00:00:00 2001 From: GitLab Release Tools Bot Date: Mon, 27 Aug 2018 13:32:21 +0000 Subject: Update CHANGELOG.md for 11.1.5 [ci skip] --- CHANGELOG.md | 13 +++++++++++++ 1 file changed, 13 insertions(+) (limited to 'CHANGELOG.md') diff --git a/CHANGELOG.md b/CHANGELOG.md index 078395b110d..ea753515299 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -263,6 +263,19 @@ entry. - Moves help_popover component to a common location. +## 11.1.5 (2018-08-27) + +### Security (3 changes) + +- Fixed persistent XSS rendering/escaping of diff location lines. +- Adding CSRF protection to Hooks resend action. +- Block link-local addresses in URLBlocker. + +### Fixed (1 change, 1 of them is from the community) + +- Sanitize git URL in import errors. (Jamie Schembri) + + ## 11.1.4 (2018-07-30) ### Fixed (4 changes, 1 of them is from the community) -- cgit v1.2.3