gitlab-org--gitlab-foss/changelogs/unreleased/security-fix_jira_ssrf_vulnerability.yml
Felipe Artur 492a7e753d Fix DNS rebind vulnerability for JIRA integration
Uses Gitlab::HTTP for JIRA requests instead of Net::Http.
Gitlab::Http comes with some built in SSRF protections.
2019-08-08 10:24:43 -03:00

5 lines
96 B
YAML

---
title: Prevent DNS rebind on JIRA service integration
merge_request:
author:
type: security