GitLab
詳細情報
| タイトル | GitLab |
|---|---|
| URL | https://about.gitlab.com/ |
| バージョン | ver 18.5.1 |
| 更新日 | 2025/10/22 |
| 追加日 | 2016/02/23 |
| 種別 | フリーソフト |
| 説明 | GitHubのようなサービスをローカルで提供することができるGitリポジトリ管理ソフト。 |
レビュー
レビューはありません。
スクリーンショット
スクリーンショットはありません。
更新グラフ
バージョン履歴
## 18.5.1 (2025-10-21)
### Fixed (2 changes)
- [Fix connection pool errors when health check is running](https://gitlab.com/gitlab-org/security/gitlab/-/commit/7852a9fa8c852ff2a949ea8f4ea46026418fc1dd)
- [Downgrade redis-rb gem to v5.4.0](https://gitlab.com/gitlab-org/security/gitlab/-/commit/c5c44135b4ac722173fc343718828d0cce06fa53)
### Security (7 changes)
- [Ensure NPM upload cannot exceed plan limit](https://gitlab.com/gitlab-org/security/gitlab/-/commit/a863e7d2cd55e6e0ec7c583cfb83ee5b2292c1eb) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5427))
- [Limit JSON request payload for /-/collect_events](https://gitlab.com/gitlab-org/security/gitlab/-/commit/2c0995e8c27b0c71aff275bc53d15ecc375dcb5c) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5403))
- [Track pull mirror updates using gitaly_context](https://gitlab.com/gitlab-org/security/gitlab/-/commit/d702910abf4e2c45f0bf34ec0cd2ca4845ed4a0d) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5410))
- [Reject quick actions for ai_workflows scope](https://gitlab.com/gitlab-org/security/gitlab/-/commit/b1a7d090f334e2f584097746e85b4d0b3b32512e) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5409))
- [Use CE policy for runner ability check](https://gitlab.com/gitlab-org/security/gitlab/-/commit/8ccd23988915716dfd7682b3b2e2339f049c136a) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5413))
- [Limit depth, size and total elements when parsing JSON string](https://gitlab.com/gitlab-org/security/gitlab/-/commit/137c1b88a25e5b00025fc43ad3609ab021d83222) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5406))
## 18.4.3 (2025-10-21)
### Fixed (5 changes)
- [Fix connection pool errors when health check is running](https://gitlab.com/gitlab-org/security/gitlab/-/commit/53f5d29c93ea36cd6f1f6f8c4ccb4a144a53a239)
- [Downgrade redis-rb gem to v5.4.0](https://gitlab.com/gitlab-org/security/gitlab/-/commit/3fb24f782beb8708fc8e156e3cd8d5ec38f2613b)
- [Fix zoekt search for API when elasticsearch is disable](https://gitlab.com/gitlab-org/security/gitlab/-/commit/5945f19d1b94d2882faf8c889917f64490db28e5) ([merge request](https://gitilab.com/gitlab-org/gitlab/-/merge_requests/208124))
- [Fix the undefined method id for nil:NilClass in WorkItem](https://gitlab.com/gitlab-org/security/gitlab/-/commit/400938e318bc34ce3bc90f1ff9c3bd21c8ddb868) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/208091))
- [Revert discarded database pool check in load balancer](https://gitlab.com/gitlab-org/security/gitlab/-/commit/2c146b05834027cd1fb1dd97f010d108149d33a9)
### Security (7 changes)
(省略されました)
### Fixed (2 changes)
- [Fix connection pool errors when health check is running](https://gitlab.com/gitlab-org/security/gitlab/-/commit/7852a9fa8c852ff2a949ea8f4ea46026418fc1dd)
- [Downgrade redis-rb gem to v5.4.0](https://gitlab.com/gitlab-org/security/gitlab/-/commit/c5c44135b4ac722173fc343718828d0cce06fa53)
### Security (7 changes)
- [Ensure NPM upload cannot exceed plan limit](https://gitlab.com/gitlab-org/security/gitlab/-/commit/a863e7d2cd55e6e0ec7c583cfb83ee5b2292c1eb) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5427))
- [Limit JSON request payload for /-/collect_events](https://gitlab.com/gitlab-org/security/gitlab/-/commit/2c0995e8c27b0c71aff275bc53d15ecc375dcb5c) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5403))
- [Track pull mirror updates using gitaly_context](https://gitlab.com/gitlab-org/security/gitlab/-/commit/d702910abf4e2c45f0bf34ec0cd2ca4845ed4a0d) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5410))
- [Reject quick actions for ai_workflows scope](https://gitlab.com/gitlab-org/security/gitlab/-/commit/b1a7d090f334e2f584097746e85b4d0b3b32512e) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5409))
- [Use CE policy for runner ability check](https://gitlab.com/gitlab-org/security/gitlab/-/commit/8ccd23988915716dfd7682b3b2e2339f049c136a) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5413))
- [Limit depth, size and total elements when parsing JSON string](https://gitlab.com/gitlab-org/security/gitlab/-/commit/137c1b88a25e5b00025fc43ad3609ab021d83222) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5406))
## 18.4.3 (2025-10-21)
### Fixed (5 changes)
- [Fix connection pool errors when health check is running](https://gitlab.com/gitlab-org/security/gitlab/-/commit/53f5d29c93ea36cd6f1f6f8c4ccb4a144a53a239)
- [Downgrade redis-rb gem to v5.4.0](https://gitlab.com/gitlab-org/security/gitlab/-/commit/3fb24f782beb8708fc8e156e3cd8d5ec38f2613b)
- [Fix zoekt search for API when elasticsearch is disable](https://gitlab.com/gitlab-org/security/gitlab/-/commit/5945f19d1b94d2882faf8c889917f64490db28e5) ([merge request](https://gitilab.com/gitlab-org/gitlab/-/merge_requests/208124))
- [Fix the undefined method id for nil:NilClass in WorkItem](https://gitlab.com/gitlab-org/security/gitlab/-/commit/400938e318bc34ce3bc90f1ff9c3bd21c8ddb868) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/208091))
- [Revert discarded database pool check in load balancer](https://gitlab.com/gitlab-org/security/gitlab/-/commit/2c146b05834027cd1fb1dd97f010d108149d33a9)
### Security (7 changes)
(省略されました)
## 18.5.0 (2025-10-15)
### Added (178 changes)
- [Migrate WorkItemBulkMove to use shared projects query](https://gitlab.com/gitlab-org/gitlab/-/commit/39709cf894c4fb83605e78c413ece1190807f34e) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/208583))
- [Add download route for Attestations](https://gitlab.com/gitlab-org/gitlab/-/commit/e74511d404b9fec7e057b7a0f8cc44f14a334eea) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/207917))
- [Persist and surface prefilled variables from PEP](https://gitlab.com/gitlab-org/gitlab/-/commit/8e55da7ee05f61cdefebda0c0bab26ba2462ab26) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/207861)) **GitLab Enterprise Edition**
- [Rollout security_inventory_filtering feature flag](https://gitlab.com/gitlab-org/gitlab/-/commit/b2e09eff8ac25285c43365a5ef5e69dbf0286855) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/208460)) **GitLab Enterprise Edition**
- [Queueing Background operations](https://gitlab.com/gitlab-org/gitlab/-/commit/63b75906077e2de7ca62596862da218c232254f4) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/207241))
- [Add clear upstream cache functionality to Maven upstreams list](https://gitlab.com/gitlab-org/gitlab/-/commit/679eca47bc1ec730f19a07387e3029387850cb33) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/208049))
- [Prevent connection check if no url is provided](https://gitlab.com/gitlab-org/gitlab/-/commit/d6d0d242d8eac7ad7a0536e1f5965b785ec6114c) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/204582))
- [Added header integration](https://gitlab.com/gitlab-org/gitlab/-/commit/048f3cf67596be9f2bf585258686b986ba675040) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/207129)) **GitLab Enterprise Edition**
- [Add model metadata to geo helper](https://gitlab.com/gitlab-org/gitlab/-/commit/c8df63a4ecc81c5a5e09b03580dd92f03992fc74) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/207281)) **GitLab Enterprise Edition**
- [Add `Code generation volume trends` chart](https://gitlab.com/gitlab-org/gitlab/-/commit/fa95a0a6f9c859c936d5d321cf26a77d0c2687a3) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/207924)) **GitLab Enterprise Edition**
- [Add latest flag loading to graphql request](https://gitlab.com/gitlab-org/gitlab/-/commit/1db1019632745dbac43c54ebece739002b210ceb) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/207477)) **GitLab Enterprise Edition**
- [Extend runner job metadata with user and project context](https://gitlab.com/gitlab-org/gitlab/-/commit/45011605485b3be4cbcc51b8cc1f83d3bdb1f1e8) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/206700))
- [Enable `work_item_status_mvc2` by default](https://gitlab.com/gitlab-org/gitlab/-/commit/4ea2ef271211ee178dd22abe7af3fea8976fcc9b) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/207570))
- [Add experiment to manage stage inject strategy](https://gitlab.com/gitlab-org/gitlab/-/commit/5dd577cdd04afcac229de009b17bd266007bb3fa) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/207175)) **GitLab Enterprise Edition**
- [Add API endpoint to store SAST FP detection results](https://gitlab.com/gitlab-org/gitlab/-/commit/61ba69ff61ccc813e68b82e0141eaa345f1ab628) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/207592)) **GitLab Enterprise Edition**
- [Drop invalid rows from security_trainings table](https://gitlab.com/gitlab-org/gitlab/-/commit/116bf61794b6b1939d72f539ef9ac3a26ab36376) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/207080))
- [Requeue security inventory filters backfill](https://gitlab.com/gitlab-org/gitlab/-/commit/53a9e2e6977f81cf3fee6c14d9273723efdf5f0c) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/208111)) **GitLab Enterprise Edition**
(省略されました)
### Added (178 changes)
- [Migrate WorkItemBulkMove to use shared projects query](https://gitlab.com/gitlab-org/gitlab/-/commit/39709cf894c4fb83605e78c413ece1190807f34e) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/208583))
- [Add download route for Attestations](https://gitlab.com/gitlab-org/gitlab/-/commit/e74511d404b9fec7e057b7a0f8cc44f14a334eea) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/207917))
- [Persist and surface prefilled variables from PEP](https://gitlab.com/gitlab-org/gitlab/-/commit/8e55da7ee05f61cdefebda0c0bab26ba2462ab26) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/207861)) **GitLab Enterprise Edition**
- [Rollout security_inventory_filtering feature flag](https://gitlab.com/gitlab-org/gitlab/-/commit/b2e09eff8ac25285c43365a5ef5e69dbf0286855) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/208460)) **GitLab Enterprise Edition**
- [Queueing Background operations](https://gitlab.com/gitlab-org/gitlab/-/commit/63b75906077e2de7ca62596862da218c232254f4) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/207241))
- [Add clear upstream cache functionality to Maven upstreams list](https://gitlab.com/gitlab-org/gitlab/-/commit/679eca47bc1ec730f19a07387e3029387850cb33) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/208049))
- [Prevent connection check if no url is provided](https://gitlab.com/gitlab-org/gitlab/-/commit/d6d0d242d8eac7ad7a0536e1f5965b785ec6114c) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/204582))
- [Added header integration](https://gitlab.com/gitlab-org/gitlab/-/commit/048f3cf67596be9f2bf585258686b986ba675040) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/207129)) **GitLab Enterprise Edition**
- [Add model metadata to geo helper](https://gitlab.com/gitlab-org/gitlab/-/commit/c8df63a4ecc81c5a5e09b03580dd92f03992fc74) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/207281)) **GitLab Enterprise Edition**
- [Add `Code generation volume trends` chart](https://gitlab.com/gitlab-org/gitlab/-/commit/fa95a0a6f9c859c936d5d321cf26a77d0c2687a3) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/207924)) **GitLab Enterprise Edition**
- [Add latest flag loading to graphql request](https://gitlab.com/gitlab-org/gitlab/-/commit/1db1019632745dbac43c54ebece739002b210ceb) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/207477)) **GitLab Enterprise Edition**
- [Extend runner job metadata with user and project context](https://gitlab.com/gitlab-org/gitlab/-/commit/45011605485b3be4cbcc51b8cc1f83d3bdb1f1e8) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/206700))
- [Enable `work_item_status_mvc2` by default](https://gitlab.com/gitlab-org/gitlab/-/commit/4ea2ef271211ee178dd22abe7af3fea8976fcc9b) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/207570))
- [Add experiment to manage stage inject strategy](https://gitlab.com/gitlab-org/gitlab/-/commit/5dd577cdd04afcac229de009b17bd266007bb3fa) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/207175)) **GitLab Enterprise Edition**
- [Add API endpoint to store SAST FP detection results](https://gitlab.com/gitlab-org/gitlab/-/commit/61ba69ff61ccc813e68b82e0141eaa345f1ab628) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/207592)) **GitLab Enterprise Edition**
- [Drop invalid rows from security_trainings table](https://gitlab.com/gitlab-org/gitlab/-/commit/116bf61794b6b1939d72f539ef9ac3a26ab36376) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/207080))
- [Requeue security inventory filters backfill](https://gitlab.com/gitlab-org/gitlab/-/commit/53a9e2e6977f81cf3fee6c14d9273723efdf5f0c) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/208111)) **GitLab Enterprise Edition**
(省略されました)
## 18.4.2 (2025-10-08)
### Added (1 change)
- [Remove check_f02a3f53bf not null constraint](https://gitlab.com/gitlab-org/security/gitlab/-/commit/8286ade8d801ab80891f81defc627839a4d86e20)
### Fixed (3 changes)
- [Prevent session creation for sessionless users](https://gitlab.com/gitlab-org/security/gitlab/-/commit/f88c1242f0a8e5e9f13a187755568d0545f69305)
- [Remove non Saas instances from calling CDOT for trial duration](https://gitlab.com/gitlab-org/security/gitlab/-/commit/6ba5b24afb192c042cf67be4bb85c0dc306db143) **GitLab Enterprise Edition**
- [Transfer start and due dates data upon work item move or clone](https://gitlab.com/gitlab-org/security/gitlab/-/commit/9025e065d671143b547126269c775d52102b9775)
### Security (5 changes)
- [Log JSON bytesize as well](https://gitlab.com/gitlab-org/security/gitlab/-/commit/b6b5c289d3183019524e5604c25f431cf45682c2) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5388))
- [Adjust complexity for blob data fields](https://gitlab.com/gitlab-org/security/gitlab/-/commit/49554246af3e45202ca7c32e0a0273f13421eb8a) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5384))
- [Some mutations have read_api scope](https://gitlab.com/gitlab-org/security/gitlab/-/commit/5714b2f3c9411e709d6abcb0896b34a208798d1b) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5370))
- [Reject irrelevant 1xx responses](https://gitlab.com/gitlab-org/security/gitlab/-/commit/390f4fddbb5a778dbd52a9647bf22ab52ee8478e) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5332))
- [Restrict manual variables to explicit guests in internal projects](https://gitlab.com/gitlab-org/security/gitlab/-/commit/446b25ac5e3e9c02c49f26a1da31ba108c0bdd23) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5366))
## 18.3.4 (2025-10-08)
### Fixed (2 changes)
- [Remove non Saas instances from calling CDOT for trial duration](https://gitlab.com/gitlab-org/security/gitlab/-/commit/764210b1790db3e4984ecbd404f211c0668af1a4) **GitLab Enterprise Edition**
- [Transfer start and due dates data upon work item move or clone](https://gitlab.com/gitlab-org/security/gitlab/-/commit/ec7a2082e1229aa64d0b1529135f2fb209ba656d)
### Security (5 changes)
- [Log JSON bytesize as well](https://gitlab.com/gitlab-org/security/gitlab/-/commit/bd818dff7bb196ba52e428e8a90eb33869f60fa2) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5389))
(省略されました)
### Added (1 change)
- [Remove check_f02a3f53bf not null constraint](https://gitlab.com/gitlab-org/security/gitlab/-/commit/8286ade8d801ab80891f81defc627839a4d86e20)
### Fixed (3 changes)
- [Prevent session creation for sessionless users](https://gitlab.com/gitlab-org/security/gitlab/-/commit/f88c1242f0a8e5e9f13a187755568d0545f69305)
- [Remove non Saas instances from calling CDOT for trial duration](https://gitlab.com/gitlab-org/security/gitlab/-/commit/6ba5b24afb192c042cf67be4bb85c0dc306db143) **GitLab Enterprise Edition**
- [Transfer start and due dates data upon work item move or clone](https://gitlab.com/gitlab-org/security/gitlab/-/commit/9025e065d671143b547126269c775d52102b9775)
### Security (5 changes)
- [Log JSON bytesize as well](https://gitlab.com/gitlab-org/security/gitlab/-/commit/b6b5c289d3183019524e5604c25f431cf45682c2) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5388))
- [Adjust complexity for blob data fields](https://gitlab.com/gitlab-org/security/gitlab/-/commit/49554246af3e45202ca7c32e0a0273f13421eb8a) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5384))
- [Some mutations have read_api scope](https://gitlab.com/gitlab-org/security/gitlab/-/commit/5714b2f3c9411e709d6abcb0896b34a208798d1b) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5370))
- [Reject irrelevant 1xx responses](https://gitlab.com/gitlab-org/security/gitlab/-/commit/390f4fddbb5a778dbd52a9647bf22ab52ee8478e) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5332))
- [Restrict manual variables to explicit guests in internal projects](https://gitlab.com/gitlab-org/security/gitlab/-/commit/446b25ac5e3e9c02c49f26a1da31ba108c0bdd23) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5366))
## 18.3.4 (2025-10-08)
### Fixed (2 changes)
- [Remove non Saas instances from calling CDOT for trial duration](https://gitlab.com/gitlab-org/security/gitlab/-/commit/764210b1790db3e4984ecbd404f211c0668af1a4) **GitLab Enterprise Edition**
- [Transfer start and due dates data upon work item move or clone](https://gitlab.com/gitlab-org/security/gitlab/-/commit/ec7a2082e1229aa64d0b1529135f2fb209ba656d)
### Security (5 changes)
- [Log JSON bytesize as well](https://gitlab.com/gitlab-org/security/gitlab/-/commit/bd818dff7bb196ba52e428e8a90eb33869f60fa2) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5389))
(省略されました)
## 18.4.1 (2025-09-25)
### Fixed (2 changes)
- [Use isUnsafeLink for xcode protocol](https://gitlab.com/gitlab-org/security/gitlab/-/commit/199dbffae5d6ed7063d73b557b3b1d9d06d88968)
- [Optimize HandleMalformedStrings middleware for CPU and memory](https://gitlab.com/gitlab-org/security/gitlab/-/commit/98da626e12117aff71d135ff2c9ca543a2e8b313)
### Security (10 changes)
- [Add JSON input streaming validator middleware](https://gitlab.com/gitlab-org/security/gitlab/-/commit/e5df969d80cc69a5c3dc0fee932047f08c65a0c1) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5349))
- [Addresses logical bug in the GraphQL base resolver](https://gitlab.com/gitlab-org/security/gitlab/-/commit/48ac9ce9606c742ca94056b94da1d8ea641e8977) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5313))
- [Escape text for wrapNodes utility](https://gitlab.com/gitlab-org/security/gitlab/-/commit/4eb2db6fddf376e187e759871ccc1f5aed1b93d7) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5326))
- [Add the rate limit in BlobSearch GraphQL](https://gitlab.com/gitlab-org/security/gitlab/-/commit/5d8dda684434da9b5f3e6aee195241cacea04cb5) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5335))
- [Prevent role assignment for custom roles in projects](https://gitlab.com/gitlab-org/security/gitlab/-/commit/c377c525426063425a076c6cfcba86d9fa35638b) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5337))
- [Only owners can invite groups](https://gitlab.com/gitlab-org/security/gitlab/-/commit/068d6e200bf2ac6eaa2e68d2ef349228376d7539) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5334))
- [Add limit to array fields in WorkItems API](https://gitlab.com/gitlab-org/security/gitlab/-/commit/a7c51c9588bc2f8a87a57d85f871f2332c8bb312) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5325))
- [Limit String => Integer conversions](https://gitlab.com/gitlab-org/security/gitlab/-/commit/e2db8dad6d85dffbb9ca30bc8ecb42146b6a12d3) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5324))
- [Removes password field from maven upstream GraphQL type](https://gitlab.com/gitlab-org/security/gitlab/-/commit/27a5700b6152d22b08735480d7d118c77dee58de) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5330))
## 18.3.3 (2025-09-25)
### Added (1 change)
- [Add job project claims to CI ID Tokens](https://gitlab.com/gitlab-org/security/gitlab/-/commit/f2fbc42345c2b907c7b3a8f9988972117199788f)
### Fixed (7 changes)
- [Use isUnsafeLink for xcode protocol](https://gitlab.com/gitlab-org/security/gitlab/-/commit/cceeb02fd87dea5260935ca6dc485eb8de0b62c0)
(省略されました)
### Fixed (2 changes)
- [Use isUnsafeLink for xcode protocol](https://gitlab.com/gitlab-org/security/gitlab/-/commit/199dbffae5d6ed7063d73b557b3b1d9d06d88968)
- [Optimize HandleMalformedStrings middleware for CPU and memory](https://gitlab.com/gitlab-org/security/gitlab/-/commit/98da626e12117aff71d135ff2c9ca543a2e8b313)
### Security (10 changes)
- [Add JSON input streaming validator middleware](https://gitlab.com/gitlab-org/security/gitlab/-/commit/e5df969d80cc69a5c3dc0fee932047f08c65a0c1) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5349))
- [Addresses logical bug in the GraphQL base resolver](https://gitlab.com/gitlab-org/security/gitlab/-/commit/48ac9ce9606c742ca94056b94da1d8ea641e8977) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5313))
- [Escape text for wrapNodes utility](https://gitlab.com/gitlab-org/security/gitlab/-/commit/4eb2db6fddf376e187e759871ccc1f5aed1b93d7) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5326))
- [Add the rate limit in BlobSearch GraphQL](https://gitlab.com/gitlab-org/security/gitlab/-/commit/5d8dda684434da9b5f3e6aee195241cacea04cb5) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5335))
- [Prevent role assignment for custom roles in projects](https://gitlab.com/gitlab-org/security/gitlab/-/commit/c377c525426063425a076c6cfcba86d9fa35638b) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5337))
- [Only owners can invite groups](https://gitlab.com/gitlab-org/security/gitlab/-/commit/068d6e200bf2ac6eaa2e68d2ef349228376d7539) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5334))
- [Add limit to array fields in WorkItems API](https://gitlab.com/gitlab-org/security/gitlab/-/commit/a7c51c9588bc2f8a87a57d85f871f2332c8bb312) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5325))
- [Limit String => Integer conversions](https://gitlab.com/gitlab-org/security/gitlab/-/commit/e2db8dad6d85dffbb9ca30bc8ecb42146b6a12d3) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5324))
- [Removes password field from maven upstream GraphQL type](https://gitlab.com/gitlab-org/security/gitlab/-/commit/27a5700b6152d22b08735480d7d118c77dee58de) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5330))
## 18.3.3 (2025-09-25)
### Added (1 change)
- [Add job project claims to CI ID Tokens](https://gitlab.com/gitlab-org/security/gitlab/-/commit/f2fbc42345c2b907c7b3a8f9988972117199788f)
### Fixed (7 changes)
- [Use isUnsafeLink for xcode protocol](https://gitlab.com/gitlab-org/security/gitlab/-/commit/cceeb02fd87dea5260935ca6dc485eb8de0b62c0)
(省略されました)
## 18.4.0 (2025-09-17)
### Added (149 changes)
- [Handle IP ranges in the IP validation](https://gitlab.com/gitlab-org/gitlab/-/commit/fb82ac4e01c36c208307dc15180586ba17913aee) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/204334))
- [Fix breadcrumb navigation for work items in project issues](https://gitlab.com/gitlab-org/gitlab/-/commit/6c29ffc76a5af702752ec93a618b681c60432d32) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/204335))
- [Update table_size database dictionary entries](https://gitlab.com/gitlab-org/gitlab/-/commit/96a61fd4c42ac455e7ae4223db503b2cd0c6144a) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/205000))
- [Add “Reformat table” to More options menu in PTE](https://gitlab.com/gitlab-org/gitlab/-/commit/89db5d606ef408cd66b591fd1af77c95a49f1931) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/201392))
- [Add agent selection dropdown for agentic chat](https://gitlab.com/gitlab-org/gitlab/-/commit/a68f6f4f05eb1c7773ca18bbae68ee29f8157755) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/204075)) **GitLab Enterprise Edition**
- [Add webPath and editPath to group and project GraphQL types](https://gitlab.com/gitlab-org/gitlab/-/commit/682783046b849e9259d96faac16429c2baa91dab) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/203935))
- [Resolve status by mapping](https://gitlab.com/gitlab-org/gitlab/-/commit/b698844cf40100ec1982c746ef83be128f931fad) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/204229)) **GitLab Enterprise Edition**
- [Use new import by url UI when feature flag enabled](https://gitlab.com/gitlab-org/gitlab/-/commit/78013637dff0568786f6510ad5b4f1832f6de534) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/201202))
- [Geo Replicables: Resync all failed registries](https://gitlab.com/gitlab-org/gitlab/-/commit/f5045c92c4070724560e0df69eec87c9c5d6f75a) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/204282)) **GitLab Enterprise Edition**
- [Add project to attributes update service](https://gitlab.com/gitlab-org/gitlab/-/commit/59b7b15136356b1cad0cc5a0cd4a14d21b7e32bb) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/203149)) **GitLab Enterprise Edition**
- [Add GraphQL mutation to undo keep as placeholder](https://gitlab.com/gitlab-org/gitlab/-/commit/9b3e61b4242ea1cf2430f10fc2de515b405fef7d) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/204272))
- [Include approved_at timestamp in approvals API response](https://gitlab.com/gitlab-org/gitlab/-/commit/bffe907f00459321c11398dd7edfa1d25c9e9420) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/204605))
- [Add security report time window to MR approval policy](https://gitlab.com/gitlab-org/gitlab/-/commit/18d0ddd7d9954db5e3ec4faf523c9b9d6326b2b7) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/204521)) **GitLab Enterprise Edition**
- [Create the lease_outstanding table](https://gitlab.com/gitlab-org/gitlab/-/commit/a163d57cbcf2ba341b37a74586913ca5e0df8ae2) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/203567))
- [Add name filter to workItemAllowedStatuses field](https://gitlab.com/gitlab-org/gitlab/-/commit/bb6de20f26a078150b50c7a6a4e1bd7caf2cb71c) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/204616)) **GitLab Enterprise Edition**
- [Add spdx or custom_license constraint to software_license_policies](https://gitlab.com/gitlab-org/gitlab/-/commit/cb2bc472504fb96077925930fd85d28999b6b81c) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/201975))
- [Add category create and update mutations](https://gitlab.com/gitlab-org/gitlab/-/commit/0a269169c0ede40bb089c61a24d81e3520369c0f) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/202652)) **GitLab Enterprise Edition**
(省略されました)
### Added (149 changes)
- [Handle IP ranges in the IP validation](https://gitlab.com/gitlab-org/gitlab/-/commit/fb82ac4e01c36c208307dc15180586ba17913aee) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/204334))
- [Fix breadcrumb navigation for work items in project issues](https://gitlab.com/gitlab-org/gitlab/-/commit/6c29ffc76a5af702752ec93a618b681c60432d32) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/204335))
- [Update table_size database dictionary entries](https://gitlab.com/gitlab-org/gitlab/-/commit/96a61fd4c42ac455e7ae4223db503b2cd0c6144a) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/205000))
- [Add “Reformat table” to More options menu in PTE](https://gitlab.com/gitlab-org/gitlab/-/commit/89db5d606ef408cd66b591fd1af77c95a49f1931) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/201392))
- [Add agent selection dropdown for agentic chat](https://gitlab.com/gitlab-org/gitlab/-/commit/a68f6f4f05eb1c7773ca18bbae68ee29f8157755) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/204075)) **GitLab Enterprise Edition**
- [Add webPath and editPath to group and project GraphQL types](https://gitlab.com/gitlab-org/gitlab/-/commit/682783046b849e9259d96faac16429c2baa91dab) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/203935))
- [Resolve status by mapping](https://gitlab.com/gitlab-org/gitlab/-/commit/b698844cf40100ec1982c746ef83be128f931fad) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/204229)) **GitLab Enterprise Edition**
- [Use new import by url UI when feature flag enabled](https://gitlab.com/gitlab-org/gitlab/-/commit/78013637dff0568786f6510ad5b4f1832f6de534) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/201202))
- [Geo Replicables: Resync all failed registries](https://gitlab.com/gitlab-org/gitlab/-/commit/f5045c92c4070724560e0df69eec87c9c5d6f75a) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/204282)) **GitLab Enterprise Edition**
- [Add project to attributes update service](https://gitlab.com/gitlab-org/gitlab/-/commit/59b7b15136356b1cad0cc5a0cd4a14d21b7e32bb) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/203149)) **GitLab Enterprise Edition**
- [Add GraphQL mutation to undo keep as placeholder](https://gitlab.com/gitlab-org/gitlab/-/commit/9b3e61b4242ea1cf2430f10fc2de515b405fef7d) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/204272))
- [Include approved_at timestamp in approvals API response](https://gitlab.com/gitlab-org/gitlab/-/commit/bffe907f00459321c11398dd7edfa1d25c9e9420) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/204605))
- [Add security report time window to MR approval policy](https://gitlab.com/gitlab-org/gitlab/-/commit/18d0ddd7d9954db5e3ec4faf523c9b9d6326b2b7) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/204521)) **GitLab Enterprise Edition**
- [Create the lease_outstanding table](https://gitlab.com/gitlab-org/gitlab/-/commit/a163d57cbcf2ba341b37a74586913ca5e0df8ae2) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/203567))
- [Add name filter to workItemAllowedStatuses field](https://gitlab.com/gitlab-org/gitlab/-/commit/bb6de20f26a078150b50c7a6a4e1bd7caf2cb71c) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/204616)) **GitLab Enterprise Edition**
- [Add spdx or custom_license constraint to software_license_policies](https://gitlab.com/gitlab-org/gitlab/-/commit/cb2bc472504fb96077925930fd85d28999b6b81c) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/201975))
- [Add category create and update mutations](https://gitlab.com/gitlab-org/gitlab/-/commit/0a269169c0ede40bb089c61a24d81e3520369c0f) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/202652)) **GitLab Enterprise Edition**
(省略されました)
## 18.3.2 (2025-09-09)
### Added (1 change)
- [Add Compare link to submodule diffs](https://gitlab.com/gitlab-org/security/gitlab/-/commit/2f6ecb3f3443b4cd710d59d5bda31ac1475a90f0)
### Fixed (9 changes)
- [Backport comment suggestion line range fix to 18-3](https://gitlab.com/gitlab-org/security/gitlab/-/commit/b6ab76b225017a1e5046a11bc4456a918b76a66c)
- [Update gitlab-shell to v14.45.2 to allow ED25519 for FIPS](https://gitlab.com/gitlab-org/security/gitlab/-/commit/497cc999266226f1a61b5eac3ff87014e313bd4a)
- [Make FileLocationType.endLine nullable](https://gitlab.com/gitlab-org/security/gitlab/-/commit/eabd8d768f54de8c43a8206d272da2dfe82369f2) **GitLab Enterprise Edition**
- [Preserve the exact string representation of the URI](https://gitlab.com/gitlab-org/security/gitlab/-/commit/edc490fcb992e0ca351050beed0397331bb35162) **GitLab Enterprise Edition**
- [Fix nil error in Gitlab:Auth:IpRateLimiter](https://gitlab.com/gitlab-org/security/gitlab/-/commit/6f1d8f3ec3841790aeb1d440122f89ffe8acc00e)
- [Display MCP in General settings of root groups for SM instances](https://gitlab.com/gitlab-org/security/gitlab/-/commit/3abe94466b6ee1c99962d42400da46513d1b5e94)
- [Fix shared group access for advanced code search](https://gitlab.com/gitlab-org/security/gitlab/-/commit/6bc61a1551d9a3c7b4df2c1d19efd33a7fd3f0c6) **GitLab Enterprise Edition**
- [Fix webauthn authentication in Firefox](https://gitlab.com/gitlab-org/security/gitlab/-/commit/05b92aeca1cf8590ae070e3c3d5ad5f12a7130ad)
- [Update gitlab-shell to v14.45.0](https://gitlab.com/gitlab-org/security/gitlab/-/commit/8f040315eb5b3a09c19957fb1697b7e764ff9e6b)
### Security (6 changes)
- [Introduce limit for closed issues](https://gitlab.com/gitlab-org/security/gitlab/-/commit/00b2bd3e6a02e544918f4d604d64c8a5ab4832a6) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5257))
- [Add file size limit for blob editing](https://gitlab.com/gitlab-org/security/gitlab/-/commit/4db58c8cb370d31f5c93543bd6c533106c420182) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5296))
- [Fix DoS via large SAML Response](https://gitlab.com/gitlab-org/security/gitlab/-/commit/52602fdd1094a9ca30603ca01be44093799a52e3) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5263))
- [Add limit to deploy token name](https://gitlab.com/gitlab-org/security/gitlab/-/commit/df2340492a220a11f9fdebfd54df25be0c6e6d38) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5299))
- [Fix webhook custom header validation](https://gitlab.com/gitlab-org/security/gitlab/-/commit/d80e590444fcee5ed0d747b83f4d051b1b8be218) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5292))
(省略されました)
### Added (1 change)
- [Add Compare link to submodule diffs](https://gitlab.com/gitlab-org/security/gitlab/-/commit/2f6ecb3f3443b4cd710d59d5bda31ac1475a90f0)
### Fixed (9 changes)
- [Backport comment suggestion line range fix to 18-3](https://gitlab.com/gitlab-org/security/gitlab/-/commit/b6ab76b225017a1e5046a11bc4456a918b76a66c)
- [Update gitlab-shell to v14.45.2 to allow ED25519 for FIPS](https://gitlab.com/gitlab-org/security/gitlab/-/commit/497cc999266226f1a61b5eac3ff87014e313bd4a)
- [Make FileLocationType.endLine nullable](https://gitlab.com/gitlab-org/security/gitlab/-/commit/eabd8d768f54de8c43a8206d272da2dfe82369f2) **GitLab Enterprise Edition**
- [Preserve the exact string representation of the URI](https://gitlab.com/gitlab-org/security/gitlab/-/commit/edc490fcb992e0ca351050beed0397331bb35162) **GitLab Enterprise Edition**
- [Fix nil error in Gitlab:Auth:IpRateLimiter](https://gitlab.com/gitlab-org/security/gitlab/-/commit/6f1d8f3ec3841790aeb1d440122f89ffe8acc00e)
- [Display MCP in General settings of root groups for SM instances](https://gitlab.com/gitlab-org/security/gitlab/-/commit/3abe94466b6ee1c99962d42400da46513d1b5e94)
- [Fix shared group access for advanced code search](https://gitlab.com/gitlab-org/security/gitlab/-/commit/6bc61a1551d9a3c7b4df2c1d19efd33a7fd3f0c6) **GitLab Enterprise Edition**
- [Fix webauthn authentication in Firefox](https://gitlab.com/gitlab-org/security/gitlab/-/commit/05b92aeca1cf8590ae070e3c3d5ad5f12a7130ad)
- [Update gitlab-shell to v14.45.0](https://gitlab.com/gitlab-org/security/gitlab/-/commit/8f040315eb5b3a09c19957fb1697b7e764ff9e6b)
### Security (6 changes)
- [Introduce limit for closed issues](https://gitlab.com/gitlab-org/security/gitlab/-/commit/00b2bd3e6a02e544918f4d604d64c8a5ab4832a6) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5257))
- [Add file size limit for blob editing](https://gitlab.com/gitlab-org/security/gitlab/-/commit/4db58c8cb370d31f5c93543bd6c533106c420182) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5296))
- [Fix DoS via large SAML Response](https://gitlab.com/gitlab-org/security/gitlab/-/commit/52602fdd1094a9ca30603ca01be44093799a52e3) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5263))
- [Add limit to deploy token name](https://gitlab.com/gitlab-org/security/gitlab/-/commit/df2340492a220a11f9fdebfd54df25be0c6e6d38) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5299))
- [Fix webhook custom header validation](https://gitlab.com/gitlab-org/security/gitlab/-/commit/d80e590444fcee5ed0d747b83f4d051b1b8be218) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5292))
(省略されました)
## 18.3.1 (2025-08-26)
### Fixed (1 change)
- [Fix trusted proxies regression when hostname is specified](https://gitlab.com/gitlab-org/security/gitlab/-/commit/70f1e084bfff4ee4e66c25729afba77d11f567f1)
### Security (4 changes)
- [Gitea import rate limiting](https://gitlab.com/gitlab-org/security/gitlab/-/commit/eba1f64c91f30a3196b176cd02212a66b1602437) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5253))
- [Fix tag/branch ambiguity in raw file display](https://gitlab.com/gitlab-org/security/gitlab/-/commit/5c48100ee91213b8ba0d607a67b2dcd972cee889) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5248))
- [Add authentication check for manual variables via new policy](https://gitlab.com/gitlab-org/security/gitlab/-/commit/bf00956e1861280ab7e12e2ecc86f314ea125ade) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5255))
## 18.2.5 (2025-08-26)
### Fixed (2 changes)
- [Ignore silent mode in clickhouse http calls](https://gitlab.com/gitlab-org/security/gitlab/-/commit/ed59a658334df6d01362f6d23c08f5acd768ff8e)
- [Check Stage for self-managed](https://gitlab.com/gitlab-org/security/gitlab/-/commit/eb039f297e553de4847c97eff3c7c6f6f303fd7b) **GitLab Enterprise Edition**
### Security (4 changes)
- [Gitea import rate limiting](https://gitlab.com/gitlab-org/security/gitlab/-/commit/a9dd8d3b15f7b4b5a6c9775d9f72de2cf8fa36f3) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5252))
- [Fix tag/branch ambiguity in raw file display](https://gitlab.com/gitlab-org/security/gitlab/-/commit/f871b4ea8a988103c28423a99b7907fe1b36705a) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5238))
- [Add authentication check for manual variables via new policy](https://gitlab.com/gitlab-org/security/gitlab/-/commit/1f5b9f623bcc43612fa07861a57d0901291be72c) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5194))
## 18.1.5 (2025-08-26)
### Security (4 changes)
- [Gitea import rate limiting](https://gitlab.com/gitlab-org/security/gitlab/-/commit/5e14b26cb33e61c0605f1a0ec91c3e0467533fb3) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5254))
- [Fix tag/branch ambiguity in raw file display](https://gitlab.com/gitlab-org/security/gitlab/-/commit/ffb1039c1e06962b217b479799b6b3052a824b7b) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5239))
- [Add authentication check for manual variables via new policy](https://gitlab.com/gitlab-org/security/gitlab/-/commit/e4fa4e405ddb8eca1cfccc9a8db355a07254f8f3) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5195))
### Fixed (1 change)
- [Fix trusted proxies regression when hostname is specified](https://gitlab.com/gitlab-org/security/gitlab/-/commit/70f1e084bfff4ee4e66c25729afba77d11f567f1)
### Security (4 changes)
- [Gitea import rate limiting](https://gitlab.com/gitlab-org/security/gitlab/-/commit/eba1f64c91f30a3196b176cd02212a66b1602437) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5253))
- [Fix tag/branch ambiguity in raw file display](https://gitlab.com/gitlab-org/security/gitlab/-/commit/5c48100ee91213b8ba0d607a67b2dcd972cee889) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5248))
- [Add authentication check for manual variables via new policy](https://gitlab.com/gitlab-org/security/gitlab/-/commit/bf00956e1861280ab7e12e2ecc86f314ea125ade) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5255))
## 18.2.5 (2025-08-26)
### Fixed (2 changes)
- [Ignore silent mode in clickhouse http calls](https://gitlab.com/gitlab-org/security/gitlab/-/commit/ed59a658334df6d01362f6d23c08f5acd768ff8e)
- [Check Stage for self-managed](https://gitlab.com/gitlab-org/security/gitlab/-/commit/eb039f297e553de4847c97eff3c7c6f6f303fd7b) **GitLab Enterprise Edition**
### Security (4 changes)
- [Gitea import rate limiting](https://gitlab.com/gitlab-org/security/gitlab/-/commit/a9dd8d3b15f7b4b5a6c9775d9f72de2cf8fa36f3) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5252))
- [Fix tag/branch ambiguity in raw file display](https://gitlab.com/gitlab-org/security/gitlab/-/commit/f871b4ea8a988103c28423a99b7907fe1b36705a) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5238))
- [Add authentication check for manual variables via new policy](https://gitlab.com/gitlab-org/security/gitlab/-/commit/1f5b9f623bcc43612fa07861a57d0901291be72c) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5194))
## 18.1.5 (2025-08-26)
### Security (4 changes)
- [Gitea import rate limiting](https://gitlab.com/gitlab-org/security/gitlab/-/commit/5e14b26cb33e61c0605f1a0ec91c3e0467533fb3) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5254))
- [Fix tag/branch ambiguity in raw file display](https://gitlab.com/gitlab-org/security/gitlab/-/commit/ffb1039c1e06962b217b479799b6b3052a824b7b) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5239))
- [Add authentication check for manual variables via new policy](https://gitlab.com/gitlab-org/security/gitlab/-/commit/e4fa4e405ddb8eca1cfccc9a8db355a07254f8f3) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5195))
## 18.3.0 (2025-08-20)
### Added (205 changes)
- [Use Lookahead for work items children field](https://gitlab.com/gitlab-org/gitlab/-/commit/88fd35c29fcc27f174e80a513bf2d449938b8703) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/201725)) **GitLab Enterprise Edition**
- [Add security_inventory_filters table](https://gitlab.com/gitlab-org/gitlab/-/commit/fc95b7f4c8ae135db9f8b1003ba5442ae6b22a15) by @ysiev ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/198459)) **GitLab Enterprise Edition**
- [Add workflow events to project graphql](https://gitlab.com/gitlab-org/gitlab/-/commit/45cc21b30ac038dcc47427c6b458dc30d053ba3c) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/200083)) **GitLab Enterprise Edition**
- [Allow for editing of service account email address via UI](https://gitlab.com/gitlab-org/gitlab/-/commit/04ff57cc7ca7f60365f270ef359bd0d93dc042d6) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/201536))
- [Add trigger for work_item_transitions](https://gitlab.com/gitlab-org/gitlab/-/commit/aec76eda3ead8794fc6d9a3ddccec56d86df5cca) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/200955))
- [Add cron schedule option for LdapAddOnSeatSyncWorker](https://gitlab.com/gitlab-org/gitlab/-/commit/36fcc905a0957791a2e87575a11dfcf7f5bd14ec) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/200729)) **GitLab Enterprise Edition**
- [Add duo agent platform create and start events](https://gitlab.com/gitlab-org/gitlab/-/commit/77edea09fe29e9afec073e13d27493f94cc5f6e1) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/201505)) **GitLab Enterprise Edition**
- [Clickhouse model for ci_finished_builds](https://gitlab.com/gitlab-org/gitlab/-/commit/2a9b8e6fdc61814d92b8328b1a55dac7e3cce7a6) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/198683))
- [Adds FE for ui setting](https://gitlab.com/gitlab-org/gitlab/-/commit/32e39afc14df8f4a8fe8ff438c94af812ba5e666) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/200503))
- [Add JiraTrackerData sharding key db trigger](https://gitlab.com/gitlab-org/gitlab/-/commit/da0952c6b6bbeafc67b583ff204f15c204e223bb) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/201119))
- [Add MCP get_merge_request_pipelines_service](https://gitlab.com/gitlab-org/gitlab/-/commit/8a0390c0a30ecef47718e270db3834744387e8c9) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/201586))
- [Add backend link for email work item modal](https://gitlab.com/gitlab-org/gitlab/-/commit/9da1c9321d091776a4432bf8c51d79ed94128139) by @n.h.long.9697 ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/201422))
- [Gitaly page-token pagination for protected_tags and protected_branches](https://gitlab.com/gitlab-org/gitlab/-/commit/77978da98300bdf28bcf4d37d4ea70f326c30094) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/200493))
- [Enable committer_email feature flag to true](https://gitlab.com/gitlab-org/gitlab/-/commit/59cb2d23714db729dd84a538dc3a2cc561462a00) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/201519))
- [Add vertical resizing to text boxes](https://gitlab.com/gitlab-org/gitlab/-/commit/8e61b92cc785dfa25a1bf4c18b807587cdd818a7) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/198307))
- [Project level open vulnnerabiltiies](https://gitlab.com/gitlab-org/gitlab/-/commit/4e714bd9c871ba69379f90efda42063072f59eb6) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/201036)) **GitLab Enterprise Edition**
- [Add bypass options to a police drawer](https://gitlab.com/gitlab-org/gitlab/-/commit/c3b118436b9528e66b5f70d2c5a66df867a9ef3f) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/200328)) **GitLab Enterprise Edition**
(省略されました)
### Added (205 changes)
- [Use Lookahead for work items children field](https://gitlab.com/gitlab-org/gitlab/-/commit/88fd35c29fcc27f174e80a513bf2d449938b8703) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/201725)) **GitLab Enterprise Edition**
- [Add security_inventory_filters table](https://gitlab.com/gitlab-org/gitlab/-/commit/fc95b7f4c8ae135db9f8b1003ba5442ae6b22a15) by @ysiev ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/198459)) **GitLab Enterprise Edition**
- [Add workflow events to project graphql](https://gitlab.com/gitlab-org/gitlab/-/commit/45cc21b30ac038dcc47427c6b458dc30d053ba3c) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/200083)) **GitLab Enterprise Edition**
- [Allow for editing of service account email address via UI](https://gitlab.com/gitlab-org/gitlab/-/commit/04ff57cc7ca7f60365f270ef359bd0d93dc042d6) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/201536))
- [Add trigger for work_item_transitions](https://gitlab.com/gitlab-org/gitlab/-/commit/aec76eda3ead8794fc6d9a3ddccec56d86df5cca) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/200955))
- [Add cron schedule option for LdapAddOnSeatSyncWorker](https://gitlab.com/gitlab-org/gitlab/-/commit/36fcc905a0957791a2e87575a11dfcf7f5bd14ec) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/200729)) **GitLab Enterprise Edition**
- [Add duo agent platform create and start events](https://gitlab.com/gitlab-org/gitlab/-/commit/77edea09fe29e9afec073e13d27493f94cc5f6e1) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/201505)) **GitLab Enterprise Edition**
- [Clickhouse model for ci_finished_builds](https://gitlab.com/gitlab-org/gitlab/-/commit/2a9b8e6fdc61814d92b8328b1a55dac7e3cce7a6) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/198683))
- [Adds FE for ui setting](https://gitlab.com/gitlab-org/gitlab/-/commit/32e39afc14df8f4a8fe8ff438c94af812ba5e666) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/200503))
- [Add JiraTrackerData sharding key db trigger](https://gitlab.com/gitlab-org/gitlab/-/commit/da0952c6b6bbeafc67b583ff204f15c204e223bb) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/201119))
- [Add MCP get_merge_request_pipelines_service](https://gitlab.com/gitlab-org/gitlab/-/commit/8a0390c0a30ecef47718e270db3834744387e8c9) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/201586))
- [Add backend link for email work item modal](https://gitlab.com/gitlab-org/gitlab/-/commit/9da1c9321d091776a4432bf8c51d79ed94128139) by @n.h.long.9697 ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/201422))
- [Gitaly page-token pagination for protected_tags and protected_branches](https://gitlab.com/gitlab-org/gitlab/-/commit/77978da98300bdf28bcf4d37d4ea70f326c30094) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/200493))
- [Enable committer_email feature flag to true](https://gitlab.com/gitlab-org/gitlab/-/commit/59cb2d23714db729dd84a538dc3a2cc561462a00) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/201519))
- [Add vertical resizing to text boxes](https://gitlab.com/gitlab-org/gitlab/-/commit/8e61b92cc785dfa25a1bf4c18b807587cdd818a7) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/198307))
- [Project level open vulnnerabiltiies](https://gitlab.com/gitlab-org/gitlab/-/commit/4e714bd9c871ba69379f90efda42063072f59eb6) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/201036)) **GitLab Enterprise Edition**
- [Add bypass options to a police drawer](https://gitlab.com/gitlab-org/gitlab/-/commit/c3b118436b9528e66b5f70d2c5a66df867a9ef3f) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/200328)) **GitLab Enterprise Edition**
(省略されました)
## 18.2.4 (2025-08-18)
### Fixed (1 change)
- [Update gitlab-shell to v14.44.0](https://gitlab.com/gitlab-org/gitlab/-/commit/b68a4e61107e7317839d60ba2bd2ca9c75c2be4b) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/201780))
### Fixed (1 change)
- [Update gitlab-shell to v14.44.0](https://gitlab.com/gitlab-org/gitlab/-/commit/b68a4e61107e7317839d60ba2bd2ca9c75c2be4b) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/201780))
## 18.2.3 (2025-08-18)
### Fixed (2 changes)
- [Merge branch 'bw-delegate-placeholder-check' into 'master'](https://gitlab.com/gitlab-org/gitlab/-/commit/c7370850eefb04eca86be0119b28fd85fe4b74b3) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/201366))
- [Fix the reset of sidebar navigation](https://gitlab.com/gitlab-org/gitlab/-/commit/6908b7b9653109d202e13973da3f91a38f30b961) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/200234))
## 17.11.7 (2025-08-14)
No changes.
### Fixed (2 changes)
- [Merge branch 'bw-delegate-placeholder-check' into 'master'](https://gitlab.com/gitlab-org/gitlab/-/commit/c7370850eefb04eca86be0119b28fd85fe4b74b3) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/201366))
- [Fix the reset of sidebar navigation](https://gitlab.com/gitlab-org/gitlab/-/commit/6908b7b9653109d202e13973da3f91a38f30b961) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/200234))
## 17.11.7 (2025-08-14)
No changes.
## 18.2.2 (2025-08-12)
### Added (1 change)
- [Add outbound allowlist to allowed endpoints for SSRF filter](https://gitlab.com/gitlab-org/security/gitlab/-/commit/23e2fe82bd5ccb84b739833ecd0092129c690c2a)
### Fixed (7 changes)
- [Detect CORS problems in Web IDE](https://gitlab.com/gitlab-org/security/gitlab/-/commit/84bd4650037396a8b0df0dcf6b7747b669418e91)
- [Fix Web IDE loading race condition](https://gitlab.com/gitlab-org/security/gitlab/-/commit/8b48753fdce4a4fac10a07f45f1c1208afc32227)
- [Fix numpad enter not working for revision compare dropdown](https://gitlab.com/gitlab-org/security/gitlab/-/commit/a802fcffc7359add5f39acfd6a1ef057f4b5ea08)
- [Fix another case where Sidekiq can take too long to shut down](https://gitlab.com/gitlab-org/security/gitlab/-/commit/0d78035880ee5ed4f3fc7eac3b0aff67a5262103)
- [Fix: include relative URL root in PDF worker and cMap paths](https://gitlab.com/gitlab-org/security/gitlab/-/commit/f7254c6383db50493e211a79a5a3dec7a8b603c4)
- [New projects inherit parent value for duo_features_enabled](https://gitlab.com/gitlab-org/security/gitlab/-/commit/478689b1f93ee21bb8bfa38eb7142e3e2ed3822b) **GitLab Enterprise Edition**
- [Skip Geo secondary for SyncProjectPolicyWorker](https://gitlab.com/gitlab-org/security/gitlab/-/commit/20de308d39a6821b741b83d37cdef1d3718ace50) **GitLab Enterprise Edition**
### Changed (2 changes)
- [Check root namespace of project framework for SAAS only](https://gitlab.com/gitlab-org/security/gitlab/-/commit/051fe36ef0e9b208a8ede74bce73c8a6082f94d5) **GitLab Enterprise Edition**
- [Fix case sensitivity in CODEOWNERS validation](https://gitlab.com/gitlab-org/security/gitlab/-/commit/3c87a2c77787747a37be3069a91d7bdf7f98f42b) **GitLab Enterprise Edition**
### Security (12 changes)
- [Remove the destroy issue permission from the planner role](https://gitlab.com/gitlab-org/security/gitlab/-/commit/d604e0418ef28a03d49aa38830e1e8a6862d50ec) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5145))
- [Release names are unbounded, leads to server crash](https://gitlab.com/gitlab-org/security/gitlab/-/commit/bc504676f35f3cd17a6e397b2e14c232e4982c19) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5208))
- [Block access to assigned issues when group has IP restriction](https://gitlab.com/gitlab-org/security/gitlab/-/commit/859a6a48b098369ff31878d8caad7916be4bbc21) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5161))
- [More rigorous sanitization of placeholders](https://gitlab.com/gitlab-org/security/gitlab/-/commit/2c5937032ef4ef28234fecfe291bd072550e2545) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5205))
(省略されました)
### Added (1 change)
- [Add outbound allowlist to allowed endpoints for SSRF filter](https://gitlab.com/gitlab-org/security/gitlab/-/commit/23e2fe82bd5ccb84b739833ecd0092129c690c2a)
### Fixed (7 changes)
- [Detect CORS problems in Web IDE](https://gitlab.com/gitlab-org/security/gitlab/-/commit/84bd4650037396a8b0df0dcf6b7747b669418e91)
- [Fix Web IDE loading race condition](https://gitlab.com/gitlab-org/security/gitlab/-/commit/8b48753fdce4a4fac10a07f45f1c1208afc32227)
- [Fix numpad enter not working for revision compare dropdown](https://gitlab.com/gitlab-org/security/gitlab/-/commit/a802fcffc7359add5f39acfd6a1ef057f4b5ea08)
- [Fix another case where Sidekiq can take too long to shut down](https://gitlab.com/gitlab-org/security/gitlab/-/commit/0d78035880ee5ed4f3fc7eac3b0aff67a5262103)
- [Fix: include relative URL root in PDF worker and cMap paths](https://gitlab.com/gitlab-org/security/gitlab/-/commit/f7254c6383db50493e211a79a5a3dec7a8b603c4)
- [New projects inherit parent value for duo_features_enabled](https://gitlab.com/gitlab-org/security/gitlab/-/commit/478689b1f93ee21bb8bfa38eb7142e3e2ed3822b) **GitLab Enterprise Edition**
- [Skip Geo secondary for SyncProjectPolicyWorker](https://gitlab.com/gitlab-org/security/gitlab/-/commit/20de308d39a6821b741b83d37cdef1d3718ace50) **GitLab Enterprise Edition**
### Changed (2 changes)
- [Check root namespace of project framework for SAAS only](https://gitlab.com/gitlab-org/security/gitlab/-/commit/051fe36ef0e9b208a8ede74bce73c8a6082f94d5) **GitLab Enterprise Edition**
- [Fix case sensitivity in CODEOWNERS validation](https://gitlab.com/gitlab-org/security/gitlab/-/commit/3c87a2c77787747a37be3069a91d7bdf7f98f42b) **GitLab Enterprise Edition**
### Security (12 changes)
- [Remove the destroy issue permission from the planner role](https://gitlab.com/gitlab-org/security/gitlab/-/commit/d604e0418ef28a03d49aa38830e1e8a6862d50ec) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5145))
- [Release names are unbounded, leads to server crash](https://gitlab.com/gitlab-org/security/gitlab/-/commit/bc504676f35f3cd17a6e397b2e14c232e4982c19) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5208))
- [Block access to assigned issues when group has IP restriction](https://gitlab.com/gitlab-org/security/gitlab/-/commit/859a6a48b098369ff31878d8caad7916be4bbc21) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5161))
- [More rigorous sanitization of placeholders](https://gitlab.com/gitlab-org/security/gitlab/-/commit/2c5937032ef4ef28234fecfe291bd072550e2545) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/5205))
(省略されました)