summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorGrzegorz Bizon <grzesiek.bizon@gmail.com>2016-04-21 19:44:19 +0200
committerGrzegorz Bizon <grzesiek.bizon@gmail.com>2016-04-22 08:02:02 +0200
commit55df95c3886b42e92b0079b4d9d5eef0011f44d5 (patch)
treee1fca49b6d764f0c2be3c00577889c918d50a6c8
parent01ab6d704c36b211b5a06e290e6912346c8bf496 (diff)
downloadgitlab-ce-55df95c3886b42e92b0079b4d9d5eef0011f44d5.tar.gz
Add Changelog entry for private labels security fix
-rw-r--r--CHANGELOG1
1 files changed, 1 insertions, 0 deletions
diff --git a/CHANGELOG b/CHANGELOG
index ab8b86ba928..e7428834c1b 100644
--- a/CHANGELOG
+++ b/CHANGELOG
@@ -4,6 +4,7 @@ v 8.8.0 (unreleased)
v 8.7.0 (unreleased)
- Gitlab::GitAccess and Gitlab::GitAccessWiki are now instrumented
+ - Fix vulnerability that made it possible to gain access to private labels and milestones
- The number of InfluxDB points stored per UDP packet can now be configured
- Fix error when cross-project label reference used with non-existent project
- Transactions for /internal/allowed now have an "action" tag set