gitlab-org--gitlab-foss/changelogs/unreleased/security-64938-dont-disclose-path.yml
Alexandru Croitor 306fed6afd
Redirect user to root path after unsubscribing from private resource
If user unsubsrcribes from a resource that they no longer have
access to they should not be revealed the resource path, but be
redirected to app root instead.

https://gitlab.com/gitlab-org/gitlab-ce/issues/64938
2019-09-30 14:22:05 +02:00

6 lines
137 B
YAML

---
title: Fix new project path being disclosed through unsubscribe link of issue/merge
requests
merge_request:
author:
type: security