gitlab-org--gitlab-foss/changelogs/unreleased/security-56927-xss-resolve-conflicts-branch-name.yml
Paul Slaughter e6e9c10ee1
Fix XSS in resolve conflicts form
The issue arose when the branch name contained Vue template
JavaScript. The fix is to use `v-pre` which disables Vue
compilation in a template.
2019-03-07 01:54:16 -06:00

5 lines
83 B
YAML

---
title: Fix XSS in resolve conflicts form
merge_request:
author:
type: security