diff options
author | Stan Hu <stanhu@gmail.com> | 2015-07-20 16:42:07 +0000 |
---|---|---|
committer | Stan Hu <stanhu@gmail.com> | 2015-07-20 16:42:07 +0000 |
commit | 996ad35bedca4b8975a6f65fcbf5dbdb75cae278 (patch) | |
tree | 47c5bb13598455255a87ef782e23641368729e97 /CHANGELOG | |
parent | 3522018db3b6bb9f799e9326e109c6897c4a285e (diff) | |
parent | 4a0e4c857f799d2e3cc5d5dc37de6da784661965 (diff) | |
download | gitlab-ce-996ad35bedca4b8975a6f65fcbf5dbdb75cae278.tar.gz |
Merge branch 'fix-disabled-feature-access' into 'master'
Fix (i.e. prevent) access to disabled features for unauthenticated users
Unauthenticated users had access to disabled features of public
projects. The code has been slightly refactored so that feature checks
are done in a separate method and can also be applied for public access.
See merge request !1006
Diffstat (limited to 'CHANGELOG')
-rw-r--r-- | CHANGELOG | 1 |
1 files changed, 1 insertions, 0 deletions
diff --git a/CHANGELOG b/CHANGELOG index 799856c91fa..d249a014802 100644 --- a/CHANGELOG +++ b/CHANGELOG @@ -3,6 +3,7 @@ Please view this file on the master branch, on stable branches it's out of date. v 7.14.0 (unreleased) - Remove repository graph log to fix slow cache updates after push event (Stan Hu) - Fix label read access for unauthenticated users (Daniel Gerhardt) + - Fix access to disabled features for unauthenticated users (Daniel Gerhardt) - Fix OAuth provider bug where GitLab would not go return to the redirect_uri after sign-in (Stan Hu) - Fix file upload dialog for comment editing (Daniel Gerhardt) - Set OmniAuth full_host parameter to ensure redirect URIs are correct (Stan Hu) |