From f51493c8fb8b6fac489dd4984219b0c6e93ef0cd Mon Sep 17 00:00:00 2001 From: GitLab Release Tools Bot Date: Mon, 27 Aug 2018 12:04:47 +0000 Subject: Update CHANGELOG.md for 11.0.6 [ci skip] --- CHANGELOG.md | 13 +++++++++++++ 1 file changed, 13 insertions(+) (limited to 'CHANGELOG.md') diff --git a/CHANGELOG.md b/CHANGELOG.md index b9a2fca9ce5..078395b110d 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -545,6 +545,19 @@ entry. - Use monospaced font for MR diff commit link ref on GFM. +## 11.0.6 (2018-08-27) + +### Security (3 changes) + +- Fixed persistent XSS rendering/escaping of diff location lines. +- Adding CSRF protection to Hooks resend action. +- Block link-local addresses in URLBlocker. + +### Fixed (1 change, 1 of them is from the community) + +- Sanitize git URL in import errors. (Jamie Schembri) + + ## 11.0.5 (2018-07-26) ### Security (4 changes) -- cgit v1.2.3