GitLab

詳細情報

タイトル GitLab
URL https://about.gitlab.com/
バージョン ver 17.4.2
更新日 2024/10/10
追加日 2016/02/23
種別 フリーソフト
説明 GitHubのようなサービスをローカルで提供することができるGitリポジトリ管理ソフト。

レビュー

レビューはありません。

スクリーンショット

スクリーンショットはありません。

更新グラフ

バージョン履歴

## 17.4.2 (2024-10-09)
### Fixed (1 change)
- [Drop project_id not null constraint ci_deleted_objects](https://gitlab.com/gitlab-org/security/gitlab/-/commit/e02a0c065456a51ad57a93d56150271cc4dd442e)
### Security (8 changes)
- [Do not create a pipeline on MR refresh if source branch was deleted](https://gitlab.com/gitlab-org/security/gitlab/-/commit/66c4e57a3494686a9dc6058d2348074b465f5dd3) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4522))
- [Escape OAuth application name on authorize page](https://gitlab.com/gitlab-org/security/gitlab/-/commit/293bb1f70c681b75672e0b41af84ab5ae47d1e1e) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4517))
- [Prevent guest access to project templates](https://gitlab.com/gitlab-org/security/gitlab/-/commit/544398bdf7ea2b81100f8b95496f14d9b4698db8) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4477))
- [Remove access to local requests via cube query service](https://gitlab.com/gitlab-org/security/gitlab/-/commit/86894edacdaf1cad4b0e85f71918109d48013ccb) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4492))
- [External webhook token should be set](https://gitlab.com/gitlab-org/security/gitlab/-/commit/70fb8bebe2e8f1b85d625a8e496515c3f7e0e6d8) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4510))
- [Skip content when listing conflict files with types](https://gitlab.com/gitlab-org/security/gitlab/-/commit/c19d8a96d103680ec874327c1631e179e17da06a) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4513))
- [Hide version info from unauthorized users](https://gitlab.com/gitlab-org/security/gitlab/-/commit/0dd81e22f819f916c50cf531fa769000e9b5941b) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4500))
- [Prevent deploy keys from pushing code to an archived project](https://gitlab.com/gitlab-org/security/gitlab/-/commit/ed7a5173cae50f610d2c0263197f7996653cfc10) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4486))
## 17.3.5 (2024-10-09)
### Fixed (1 change)
- [Ensure levels is an array](https://gitlab.com/gitlab-org/security/gitlab/-/commit/74594891f31984feaaae6a069f057d6f48a489a6)
### Security (8 changes)
- [Do not create a pipeline on MR refresh if source branch was deleted](https://gitlab.com/gitlab-org/security/gitlab/-/commit/c36869b2e5cb0f88793bec7e20ded3e4d005f942) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4523))
- [Escape OAuth application name on authorize page](https://gitlab.com/gitlab-org/security/gitlab/-/commit/b5a704563f746e5c61301d3a7db0eab68d434e24) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4518))
- [Prevent guest access to project templates](https://gitlab.com/gitlab-org/security/gitlab/-/commit/92d177e2c5aaafb4f74bc2ceafe39b9a068e803d) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4449))
(省略されました)
## 17.4.1 (2024-09-24)
### Fixed (2 changes)
- [Fix incorrect gitlab-shell-check filename](https://gitlab.com/gitlab-org/security/gitlab/-/commit/27d061512878b35507d1228188f33774193c90d4)
- [Check commit message for issue close pattern setting](https://gitlab.com/gitlab-org/security/gitlab/-/commit/6f475e9255dcb23478ae1401320d4bf74d2523b0)
### Security (3 changes)
- [Implement input sanitization for SummarizeComments](https://gitlab.com/gitlab-org/security/gitlab/-/commit/907bbbae5d84d2505bc9aeaaa2276a9d6662014b) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4474))
- [Hide system notes with invalid references](https://gitlab.com/gitlab-org/security/gitlab/-/commit/f349ddc9dcff2e5a7d9c496a86ce8a5b8f2192f3) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4482))
## 17.3.4 (2024-09-24)
### Security (3 changes)
- [Implement input sanitization for SummarizeComments](https://gitlab.com/gitlab-org/security/gitlab/-/commit/034f25d7a760c8027f3c7426ca57ee49459f866f) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4411))
- [Hide system notes with invalid references](https://gitlab.com/gitlab-org/security/gitlab/-/commit/484a80474d1f262b45923de365e288140605333e) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4483))
## 17.2.8 (2024-09-24)
### Security (3 changes)
- [Implement input sanitization for SummarizeComments](https://gitlab.com/gitlab-org/security/gitlab/-/commit/4bed1f854c5c7014d7486cc404a5da5321c27070) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4412))
- [Hide system notes with invalid references](https://gitlab.com/gitlab-org/security/gitlab/-/commit/884df0d68bb3f3f2a2029b2851d202949780dd3b) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4484))
## 16.3.9 (2024-09-20)
No changes.
## 16.2.11 (2024-09-23)
No changes.
(省略されました)
## 17.4.0 (2024-09-18)
### Added (202 changes)
- [Add and backfill project_id for p_ci_runner_machine_builds](https://gitlab.com/gitlab-org/gitlab/-/commit/a59397016256da795da3fc297a9d4a8258d476b9) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/164386))
- [Allow to configure K8s ns and flux resource path in API](https://gitlab.com/gitlab-org/gitlab/-/commit/a741d45320bdaf48388776df213692890129a25a) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/164886))
- [Add Expand and Collapse all files buttons to merge requests](https://gitlab.com/gitlab-org/gitlab/-/commit/2320dd7c826e238af26e0c2afe1efe76d86ea0ad) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/165265))
- [Add group scope to policy drawer](https://gitlab.com/gitlab-org/gitlab/-/commit/18429090a2bd2bae12f4368413485a4c883c3ef9) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/166015)) **GitLab Enterprise Edition**
- [Add full path to expiring group token](https://gitlab.com/gitlab-org/gitlab/-/commit/86d6290ea28a021a0313b66168593e98d4fe4978) by @shangsuru ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/164304))
- [Add group policy scope for SPP](https://gitlab.com/gitlab-org/gitlab/-/commit/5c9eaf6c6b08b0a90d07276bb27cc721e213de97) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/165958)) **GitLab Enterprise Edition**
- [Add a batch migration to populate detumbled_email in emails table](https://gitlab.com/gitlab-org/gitlab/-/commit/755683e6340aa29fa01cda7f28a0f4e90c9dccdc) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/162924))
- [Add AI vulnerability resolution badge](https://gitlab.com/gitlab-org/gitlab/-/commit/3014a7adc57952c463b246f978c7b139c03a0f8f) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/165525)) **GitLab Enterprise Edition**
- [Multiple artifact uploads to model registry model versions](https://gitlab.com/gitlab-org/gitlab/-/commit/3340c50801045b541f029838eed87a98008c7ef8) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/165274))
- [Add ci_finished_pipelines_daily_mv ClickHouse materialized view](https://gitlab.com/gitlab-org/gitlab/-/commit/299b61af1cd7c4a9c44b458dfcf401c654ec1ca2) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/165648))
- [Bump devfile gem to 0.0.28.pre.alpha1](https://gitlab.com/gitlab-org/gitlab/-/commit/29e6be842c8208ae56b21b978a7f92878eff6cf4) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/165888))
- [Add Reachbility Coulmn to sbom occurancy](https://gitlab.com/gitlab-org/gitlab/-/commit/cd7e63fba2eeb8e963a083521d70390b1c754294) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/165421)) **GitLab Enterprise Edition**
- [Audit when job token is used for authentication](https://gitlab.com/gitlab-org/gitlab/-/commit/16345f8e7f8aabdbca54beb56a35bb06f81b3b9b) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/164546)) **GitLab Enterprise Edition**
- [Update GitLab Pages version](https://gitlab.com/gitlab-org/gitlab/-/commit/1549402eafb73b934ba08946d6db4d049e408f90) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/165820))
- [Adds audit events for self-hosted model creation](https://gitlab.com/gitlab-org/gitlab/-/commit/d75ccd5236428a5f3302c12d6901320710b210b5) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/165303))
- [Refactor Issuable reply hotkey](https://gitlab.com/gitlab-org/gitlab/-/commit/c2cbf9ae103249529f0a1b766e2a3af846660a53) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/164078))
- [Make wiki sidebar resizable](https://gitlab.com/gitlab-org/gitlab/-/commit/cf6b77739b7253a13df9e81b436d8f01258531b6) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/154167))
(省略されました)
## 17.3.3 (2024-09-16)
No changes.
## 17.2.7 (2024-09-16)
No changes.
## 17.2.6 (2024-09-13)
No changes.
## 17.1.8 (2024-09-16)
No changes.
## 17.0.8 (2024-09-16)
No changes.
## 16.11.10 (2024-09-16)
No changes.
## 17.3.2 (2024-09-11)
### Fixed (3 changes)
- [Update Access data on sync even if data didn’t changed](https://gitlab.com/gitlab-org/security/gitlab/-/commit/4ef29892400e4cfd9d77ae2ed11d577cf94bf026)
- [Fix Sidekiq crashing when GITLAB_LOG_LEVEL set to debug](https://gitlab.com/gitlab-org/security/gitlab/-/commit/e2eba0a9279b9f92d0adda8653474efb0ca1014a)
- [Fix issue when resizing images in RTE](https://gitlab.com/gitlab-org/security/gitlab/-/commit/812f117e1fc8260121c1dfbeb5e503552aedca37)
### Changed (1 change)
- [Backport OpenSSL v3 callout to 17.3](https://gitlab.com/gitlab-org/security/gitlab/-/commit/ba9718022b12e627375e166a8731e9cb83fd632b)
### Security (19 changes)
- [Fix the vulnerability in the glm_source parameter](https://gitlab.com/gitlab-org/security/gitlab/-/commit/878cda6f69865a8a61d0a3e431ed365bb01fd7a0) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4436))
- [Improve GraphQL log security](https://gitlab.com/gitlab-org/security/gitlab/-/commit/8ab77ecaffab94c02d4d8054dd900ef853ddb492) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4400))
- [Add permissions check to project creations from a project template](https://gitlab.com/gitlab-org/security/gitlab/-/commit/9aaaaf465c69b9cf80f7b3906338a822f31adadd) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4443))
- [Fix credentials disclosure in mirroring failure](https://gitlab.com/gitlab-org/security/gitlab/-/commit/0c2d3c9417a1fccea08bdc817943685f058c7fa5) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4446))
- [Redirect url in the link validated for being external](https://gitlab.com/gitlab-org/security/gitlab/-/commit/219cfd97cc2771266d2e92c9bd2e87bad2cdceb4) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4440))
- [[17.3] Update edit permissions for DAST profiles](https://gitlab.com/gitlab-org/security/gitlab/-/commit/44638f2465398883881de00a84fea1f724bc3456) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4372))
- [Execute environment stop actions as the owner of the action](https://gitlab.com/gitlab-org/security/gitlab/-/commit/e160b472c887a33122f9ef2894551b167a321377) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4404))
- [Prevent code injection in Product Analytics funnels YAML](https://gitlab.com/gitlab-org/security/gitlab/-/commit/04ee196cf8dde5621404345a35a85c600e294536) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4431))
- [Fixed frontend regex to parse URI](https://gitlab.com/gitlab-org/security/gitlab/-/commit/ae7d2fddff8fe064bde1bd9ab01bf10e219cbfa8) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4419))
- [Use session instead of params for identity linking](https://gitlab.com/gitlab-org/security/gitlab/-/commit/7ae3008fd84476d8995fe9fa7ec0800219cd1370) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4369))
- [Fix external wiki integration DoS by changing request to HEAD](https://gitlab.com/gitlab-org/security/gitlab/-/commit/20a6c608712831e7e9b072fbe0de61bb61105cdf) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4381))
(省略されました)
## 17.3.1 (2024-08-20)
### Fixed (3 changes)
- [Merge branch '444926-fix-bug-in-resolve-vulnerabilities-migration' into 'master'](https://gitlab.com/gitlab-org/security/gitlab/-/commit/ac8a0cdc00b76c5ad84e8d18f3a7e49ebea2a538)
- [Turn NotFound from Gitaly into 404 for InfoRefs](https://gitlab.com/gitlab-org/security/gitlab/-/commit/3566c2625d62857246b215e191fb137091de1650)
- [Fix timeout when checking group dependencies](https://gitlab.com/gitlab-org/security/gitlab/-/commit/3f3bdb24b185196875a3989f0378d237243e80f6) **GitLab Enterprise Edition**
### Changed (1 change)
- [Include language server version in code suggestions](https://gitlab.com/gitlab-org/security/gitlab/-/commit/5b4b98955c5fa55911631800c3cd48f6224bf664) **GitLab Enterprise Edition**
### Security (4 changes)
- [Do not run pipelines when resolving vulnerability](https://gitlab.com/gitlab-org/security/gitlab/-/commit/ef9c251b19c1ad7aedb591870158fc0085ee5fd9) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4360))
- [Add Octokit::ResponseValidation middleware](https://gitlab.com/gitlab-org/security/gitlab/-/commit/08d547262c574b00135fb71105e52f03dc3ca8c0) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4375))
- [IP restriction to prevent all group permissions](https://gitlab.com/gitlab-org/security/gitlab/-/commit/e080f2d2c5a578df52f202505e993c560fec6cb2) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4368))
- [Destroy associated releases when removing a tag via Git CLI](https://gitlab.com/gitlab-org/security/gitlab/-/commit/b79ada987b82fa756e6ae74f7527dcde8c30d08f) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4365))
## 17.2.4 (2024-08-21)
### Security (1 change)
- [Always build assets image when tagging](https://gitlab.com/gitlab-org/security/gitlab/-/commit/d0e661baad53be4fb7eef3b530b544d05a609953) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4386))
## 17.2.3 (2024-08-20)
### Fixed (3 changes)
- [Turn NotFound from Gitaly into 404 for InfoRefs](https://gitlab.com/gitlab-org/security/gitlab/-/commit/cdd5159fa1f8259dbf92333cf13a2968e814d307)
- [Fix empty dependency list page](https://gitlab.com/gitlab-org/security/gitlab/-/commit/71fc48e515cffcbc46ad4f824dc1990a0eb3b08a) **GitLab Enterprise Edition**
(省略されました)
## 17.3.0 (2024-08-14)
### Added (143 changes)
- [Trigger a Flux reconciliation from the cluster UI](https://gitlab.com/gitlab-org/gitlab/-/commit/be261dabcf80bb62aeec0ecbb7f8d7182e1bcea8) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/162017))
- [Add REST API invited groups in a group](https://gitlab.com/gitlab-org/gitlab/-/commit/7340e9d4fd361520da764924c8924e74e7a78aab) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/161792))
- [Sync finished pipelines to ClickHouse](https://gitlab.com/gitlab-org/gitlab/-/commit/fc536baba08a5df805424ccf6c04a90a93a16e3a) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/162145))
- [Add subscription_history to Namespace GraphQL Type](https://gitlab.com/gitlab-org/gitlab/-/commit/0557753c50b8c4a142b16016f43b733335efd546) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/162042))
- [Add common phrases copy to the password](https://gitlab.com/gitlab-org/gitlab/-/commit/4251bc65f2506121e1e244dccdb4ed4c0d299b7b) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/158789)) **GitLab Enterprise Edition**
- [Set project_id when creating Packages::Dependency](https://gitlab.com/gitlab-org/gitlab/-/commit/47a58a87252853c5743243cedf9c39b3f2c87318) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/161039))
- [Extend deprecation properties with custom scan action](https://gitlab.com/gitlab-org/gitlab/-/commit/13626c77eacdea11360434c53e2f93dfe5840afa) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/162026)) **GitLab Enterprise Edition**
- [Add a shared avatar image for security policy bots](https://gitlab.com/gitlab-org/gitlab/-/commit/e32392893acc6531fc06bca68b3f36c0f8428ff8) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/160803))
- [Add backend support for multiple Vue list filters](https://gitlab.com/gitlab-org/gitlab/-/commit/98184fee58bde0c25a7f87b239a2a95f33947e47) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/160938)) **GitLab Enterprise Edition**
- [Add EPSS to GitLab database](https://gitlab.com/gitlab-org/gitlab/-/commit/1e1d3d03038ea74054cf9d6e662727ff6e8395d6) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/158908)) **GitLab Enterprise Edition**
- [Script to update Topology Service Gem](https://gitlab.com/gitlab-org/gitlab/-/commit/4ecbc79341a0e0c8af290e964b174bf79fc971c7) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/161064))
- [Add TLS support for Redis Sentinel](https://gitlab.com/gitlab-org/gitlab/-/commit/e161ba73e46386101338317f7587c393f02784a7) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/162132))
- [Create events to measure Branch rule edit adoption](https://gitlab.com/gitlab-org/gitlab/-/commit/2ddb31d3c03cb19f3a6963f28382ccec69fa1b4b) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/160591)) **GitLab Enterprise Edition**
- [Add compliance_checks and compliance_requirements tables](https://gitlab.com/gitlab-org/gitlab/-/commit/b2a57db58eb817eac96235724ce99cd54dcbda1b) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/161382))
- [Cleanup sync_audit_events_to_new_tables feature flag](https://gitlab.com/gitlab-org/gitlab/-/commit/155ed664f2252c45e95e8ac1ef4e248b8e136ad1) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/161982))
- [Add setting for max_artifact_archive_size_bytes](https://gitlab.com/gitlab-org/gitlab/-/commit/5785b4e21bf90f56107a6282280790f84ffec9a8) by @danlamanna ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/148554))
- [Add MR mergeability check for locked paths](https://gitlab.com/gitlab-org/gitlab/-/commit/e746530ad02b3734878b18a6e560f554e78b1df0) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/160929))
(省略されました)
## 17.2.2 (2024-08-06)
### Fixed (2 changes)
- [bug: Fix template error due to divided by zero](https://gitlab.com/gitlab-org/security/gitlab/-/commit/a09aab977c287262a07bec5a267d611c56bf4f9c)
- [Ignore unknown sequences in sequence fix migration](https://gitlab.com/gitlab-org/security/gitlab/-/commit/7aa835983a46af9edd1ac4699593017e66979e1d)
### Changed (2 changes)
- [Reverify externally verified gpg keys](https://gitlab.com/gitlab-org/security/gitlab/-/commit/a390e0347e8bd5565d6c324c82221a0f7cccedfc)
- [Put groups_direct field in CI JWT tokens behind feature flag](https://gitlab.com/gitlab-org/security/gitlab/-/commit/59f2133beed57e99c0f8ebab31ea77bb892fef36)
### Security (13 changes)
- [Show correct file content](https://gitlab.com/gitlab-org/security/gitlab/-/commit/1357224fea289ba708f30f528c04e213b29e0b23) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4334))
- [Fix Possible asciidoctor include:: directive DOS](https://gitlab.com/gitlab-org/security/gitlab/-/commit/9762e4636b3dd69edac8b235b4706db515e65e79) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4329))
- [Filter parameters in Rack::Attack logs](https://gitlab.com/gitlab-org/security/gitlab/-/commit/401bdc5202d7b083f750361a2f1ef57466bc919f) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4272))
- [Update audit payload](https://gitlab.com/gitlab-org/security/gitlab/-/commit/864194bebe8a5b2e2187d04a65e0e2b530c7b779) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4325))
- [Limit access to project accessed by Security Policy Bot](https://gitlab.com/gitlab-org/security/gitlab/-/commit/100a915754d858cd18cfb7851c80944c8fda640b) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4343))
- [Show alert about not rendering files due to path encoding](https://gitlab.com/gitlab-org/security/gitlab/-/commit/d8533d727a1c036560df59282bf62ab561258a13) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4337))
- [Fix the catastrophic backtracking](https://gitlab.com/gitlab-org/security/gitlab/-/commit/001aab470cfc14b4c1655de2382d0aa4c39a4fac) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4289))
- [Security fixes for banzai pipeline part 2](https://gitlab.com/gitlab-org/security/gitlab/-/commit/266c315f6e825881c36aa78f0203bf6a2c36a132) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4283))
- [Remove xhtml extensions from snippets blobs](https://gitlab.com/gitlab-org/security/gitlab/-/commit/73b5fc95468dcc35d796737ebb1a6c11d88ebf64) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4300))
- [Add a project scope to LfsTokens](https://gitlab.com/gitlab-org/security/gitlab/-/commit/943c7867ce0d9dc98929af322ecd422438c9f9c6) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4319))
- [Fix ReDoS when parsing git push options](https://gitlab.com/gitlab-org/security/gitlab/-/commit/798466f7574554358d770d28df036f60eff31e41) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4312))
(省略されました)
## 17.2.1 (2024-07-24)
### Fixed (1 change)
- [Fix PEP when SEC is available](https://gitlab.com/gitlab-org/security/gitlab/-/commit/5cbd3187cab87e736c260d374f75cf849997d66c) **GitLab Enterprise Edition**
### Security (7 changes)
- [Refactor import_export_upload to be user-based](https://gitlab.com/gitlab-org/security/gitlab/-/commit/07257efc00d8f4984eddf9576debd62edc6d485d) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4269))
- [Attribute BulkImport::Export to a particular user](https://gitlab.com/gitlab-org/security/gitlab/-/commit/53f8ad67517a92f1e914858c07829ec57e261cc1) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4284))
- [Don't include project-level analytics settings in DOM](https://gitlab.com/gitlab-org/security/gitlab/-/commit/639bf845ed2537e44487d8c9e804ec9ac4844045) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4271))
- [Fix for private dotenv artifacts not accessible to downstream jobs](https://gitlab.com/gitlab-org/security/gitlab/-/commit/49a4b36f4155702f8277e043d1d1c146b5a52e01) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4275))
- [Do not allow script execution on dependency responses](https://gitlab.com/gitlab-org/security/gitlab/-/commit/e1a84f999c73dab1ce45e9027738a59be977304e) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4276))
- [Remove prohibited tags after import](https://gitlab.com/gitlab-org/security/gitlab/-/commit/41db34926ea53f45215294138da716fba4ec03dd) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4268))
## 17.1.3 (2024-07-24)
### Fixed (2 changes)
- [Fix wildcard search for package.json in npm upload](https://gitlab.com/gitlab-org/security/gitlab/-/commit/f319a2257eca7ef742367b9b4636645ad4781ea2)
- [Ignore object pool already exists creation errors](https://gitlab.com/gitlab-org/security/gitlab/-/commit/01c080264ccb25ec17c04eeb470014389a916cfa)
### Security (7 changes)
- [Refactor import_export_upload to be user-based](https://gitlab.com/gitlab-org/security/gitlab/-/commit/70145f096f59d1729df3f0e1244a039c6e14f0b7) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4264))
- [Attribute BulkImport::Export to a particular user](https://gitlab.com/gitlab-org/security/gitlab/-/commit/68eb8994474a9b0fdd15d03ae2f0a75a61eecd1f) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4285))
- [Don't include project-level analytics settings in DOM](https://gitlab.com/gitlab-org/security/gitlab/-/commit/caf6a3a26a0bedfc309f8ba45bea605fc37e70f7) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4185))
- [Fix for private dotenv artifacts not accessible to downstream jobs](https://gitlab.com/gitlab-org/security/gitlab/-/commit/ed6d149e28b4c8aafe36d6c6ff2824e1d459c651) ([merge request](https://gitlab.com/gitlab-org/security/gitlab/-/merge_requests/4242))
(省略されました)
## 17.2.0 (2024-07-17)
### Added (159 changes)
- [Add status to scan result policy violations](https://gitlab.com/gitlab-org/gitlab/-/commit/0a0ae8f1088928daa6b432d9179b0daf9a6feba1) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/158203)) **GitLab Enterprise Edition**
- [Add new run keyword under job](https://gitlab.com/gitlab-org/gitlab/-/commit/928bb79fccefe9d52ae30272bc333116b9ca3f1e) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/146333))
- [Added filters for multiple compliance frameworks](https://gitlab.com/gitlab-org/gitlab/-/commit/280906c08eb0df45e8fd89dd6e957ded70fbed04) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/158229)) **GitLab Enterprise Edition**
- [Add Duo Enterprise to provision service for add-ons](https://gitlab.com/gitlab-org/gitlab/-/commit/f053e045f3eb066c3c6a2b4f915616554ea07126) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/158969)) **GitLab Enterprise Edition**
- [Add Duo Pro end trial widget](https://gitlab.com/gitlab-org/gitlab/-/commit/bf8e86288372c1c18335105d11dbfefc511016bf) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/155614)) **GitLab Enterprise Edition**
- [Add RoR tutorial to Observability docs](https://gitlab.com/gitlab-org/gitlab/-/commit/25c507c7a5c10fd111407225d6735692a7d17ba5) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/158625))
- [Enable container scanning for registry](https://gitlab.com/gitlab-org/gitlab/-/commit/ccda3ca324318a8825fa032e1a2b853a95929e13) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/156247))
- [Add willAutoCloseByMergeRequest field to work items API](https://gitlab.com/gitlab-org/gitlab/-/commit/8ea220794cd74f59876a798cdf58ba294af3836f) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/158145))
- [Add Duo Enterprise to provision service for add-ons](https://gitlab.com/gitlab-org/gitlab/-/commit/ecf4a2c3df04db0105966313e3f4d5b8c81a2963) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/158963)) **GitLab Enterprise Edition**
- [Add models for Virtual Registries, part 1/2](https://gitlab.com/gitlab-org/gitlab/-/commit/a7638db2d3bea91d1db1219df57add5986d11169) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/156930))
- [Ensure uniqueness p_ci_job_annotation](https://gitlab.com/gitlab-org/gitlab/-/commit/760b22da62461eebaae7325c7651cf040349a97a) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/159071))
- [Add job action button to PMG](https://gitlab.com/gitlab-org/gitlab/-/commit/f3a916e6ba9ee27b345526914a3652fe2915b8fd) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/159004))
- [Add migration to add seat control column to namespace settings table](https://gitlab.com/gitlab-org/gitlab/-/commit/deb3e5bda554bbbfd9341a91e9221b569852627e) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/158819))
- [Display ratios instead of counts in CI/CD Analytics](https://gitlab.com/gitlab-org/gitlab/-/commit/9cbe9da793af51cb171289f8f505581ec3494988) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/158957))
- [Add Importer User for imports user mapping](https://gitlab.com/gitlab-org/gitlab/-/commit/9051ecf67b14924bea3b8df52e24dad141e03b5d) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/157979))
- [Add GraphQL API for Duo Pro seats assigned and used](https://gitlab.com/gitlab-org/gitlab/-/commit/16bed9c42c1bcb03d5a6e0c1591e92ce8b7a5fbe) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/157936)) **GitLab Enterprise Edition**
- [Enable direct code completions by default](https://gitlab.com/gitlab-org/gitlab/-/commit/257c07f0bc44606e4ef54f4ba1fc6bbb26cbf83b) ([merge request](https://gitlab.com/gitlab-org/gitlab/-/merge_requests/158733)) **GitLab Enterprise Edition**
(省略されました)
## 17.1.2 (2024-07-09)
### Fixed (2 changes)
- [Update dependency slack-messenger to v2.3.5](gitlab-org/security/gitlab@e21a4599ab21cc6f6b89ca432d9557ed72169c85)
- [Fix MailRoom not loading in Omnibus](gitlab-org/security/gitlab@5547c1164c494705bf29595062124ff8cb266cb3)
### Security (9 changes)
- [Disallow serving Pages over disabled custom domains with deployments](gitlab-org/security/gitlab@176442d616a111667481f22186560925d1175c67) ([merge request](gitlab-org/security/gitlab!4245))
- [Check npm package name, version and scripts coherence](gitlab-org/security/gitlab@917d805ce57e5d0439b4a4c757967d494014a97d) ([merge request](gitlab-org/security/gitlab!4212))
- [Check for create_deploy_token policy before creating deploy token](gitlab-org/security/gitlab@8ae4e9b0b25bec92561698da3c7d0495d6ba61bc) ([merge request](gitlab-org/security/gitlab!4209))
- [Check if user has ban_group_member access before banning in namespace](gitlab-org/security/gitlab@eefb608987d64b9cf58411b8520f260d1fb9b1c3) ([merge request](gitlab-org/security/gitlab!4091))
- [Prevent privilege escalation via custom role](gitlab-org/security/gitlab@a618e86dc4585b0fef049f75f13acf0eec00656d) ([merge request](gitlab-org/security/gitlab!4199))
- [Prevent using quick actions for some bot users](gitlab-org/security/gitlab@5789cc333d04d76ffb4c79239e71be1910f12229) ([merge request](gitlab-org/security/gitlab!4231))
- [Disable raw HTML for quick action pipeline](gitlab-org/security/gitlab@7db9b002b803cb6b53a3e6ce3f8d9b15107e7464) ([merge request](gitlab-org/security/gitlab!4235))
- [Disable quick actions unless description changed](gitlab-org/security/gitlab@a1800c591b38df0e2d143df3ee56f76b4f3a914f) ([merge request](gitlab-org/security/gitlab!4234))
- [Remove comment support from shrug and tableflip](gitlab-org/security/gitlab@fb6bcef1935dc3a7dd60def448a652769c86ee62) ([merge request](gitlab-org/security/gitlab!4229))
## 17.0.4 (2024-07-09)
### Fixed (1 change)
- [Update dependency slack-messenger to v2.3.5](gitlab-org/security/gitlab@8800f576925de4fcf00d46f707a70e1e81e5f00a)
### Security (9 changes)
- [Disallow serving Pages over disabled custom domains with deployments](gitlab-org/security/gitlab@760d6115e963e744ee55230be45e9fc3c138a73d) ([merge request](gitlab-org/security/gitlab!4248))
(省略されました)