nixpkgs/pkgs/applications
Milan c25756f91c
gitlab: 12.8.1 -> 12.8.2 (#81803)
Includes multiple security fixes mentioned in
https://about.gitlab.com/releases/2020/03/04/gitlab-12-dot-8-dot-2-released/
(unfortunately, no CVE numbers as of yet)

 - Directory Traversal to Arbitrary File Read
 - Account Takeover Through Expired Link
 - Server Side Request Forgery Through Deprecated Service
 - Group Two-Factor Authentication Requirement Bypass
 - Stored XSS in Merge Request Pages
 - Stored XSS in Merge Request Submission Form
 - Stored XSS in File View
 - Stored XSS in Grafana Integration
 - Contribution Analytics Exposed to Non-members
 - Incorrect Access Control in Docker Registry via Deploy Tokens
 - Denial of Service via Permission Checks
 - Denial of Service in Design For Public Issue
 - GitHub Tokens Displayed in Plaintext on Integrations Page
 - Incorrect Access Control via LFS Import
 - Unescaped HTML in Header
 - Private Merge Request Titles Leaked via Widget
 - Project Namespace Exposed via Vulnerability Feedback Endpoint
 - Denial of Service Through Recursive Requests
 - Project Authorization Not Being Updated
 - Incorrect Permission Level For Group Invites
 - Disclosure of Private Group Epic Information
 - User IP Address Exposed via Badge images
 - Update postgresql (GitLab Omnibus)
2020-03-05 16:37:21 +01:00
..
accessibility contrast: upgrade cargo fetcher and cargoSha256 2020-02-29 11:15:12 -05:00
audio Merge pull request #81630 from r-ryantm/auto-update/snd 2020-03-05 07:36:52 -05:00
backup deja-dup: 40.4 -> 40.6 2019-12-22 22:07:13 -08:00
blockchains Merge pull request #80160 from bhipple/u/parity 2020-02-27 07:33:39 -05:00
display-managers treewide: NIX_*_FLAGS -> string 2019-12-31 00:15:46 +01:00
editors Merge pull request #79536 from r-ryantm/auto-update/kdevelop-pg-qt 2020-03-04 20:31:56 -05:00
gis whitebox-tools: upgrade cargo fetcher and cargoSha256 2020-02-28 00:24:54 -08:00
graphics Merge pull request #81741 from r-ryantm/auto-update/avocode 2020-03-04 19:58:37 -08:00
kde kdepim-runtime: Remove obsolete patch to fix compilation 2020-02-12 09:46:37 +01:00
misc gallery-dl: 1.12.3 -> 1.13.1 2020-03-04 23:34:31 +00:00
networking Merge pull request #79062 from marsam/update-rclone 2020-03-05 09:58:34 -05:00
office aesop: 1.2.3 -> 1.2.4 2020-03-01 08:58:30 +00:00
qubes/qubes-core-vchan-xen maintainers: fix 0x4A6F 2020-02-11 19:29:51 +01:00
radio pyradio: init at 0.8.7.1 2020-03-02 09:48:55 -08:00
science Merge pull request #81783 from r-ryantm/auto-update/gmsh 2020-03-05 08:31:38 -05:00
search doodle: 0.7.0 -> 0.7.1 2020-01-15 11:02:17 +00:00
system glances: move from python-module to application 2020-02-29 15:07:44 -08:00
version-management gitlab: 12.8.1 -> 12.8.2 (#81803) 2020-03-05 16:37:21 +01:00
video Merge pull request #81448 from primeos/wf-recorder 2020-03-02 23:38:28 +02:00
virtualization conmon: 2.0.10 -> 2.0.11 2020-03-05 07:50:51 +10:00
window-managers i3status-rust: upgrade cargo fetcher and cargoSha256 2020-02-27 21:07:02 -05:00