GitLab - Package Updates
- 
IMPORTANT: this update is only available with Cloudron 5.5 (which is currently not released) since it requires Postgres 11. [1.38.0] - Update Gitlab to 13.1.5
- Release blog
- Manage IT Alerts in GitLab
- Accessibility Testing Merge Request Widget
- Mark any Design thread as resolved
- Merge Request Reviews moved to Core
- Code Intelligence
- Graph code coverage changes over time for a project
- Update git 2.27
- Update ruby to 2.6
 
- 
[1.40.1] - Update GitLab to 13.3.3
- Release blog
- This is an important security release, please update ASAP
- Vendor Cross-Account Assume-Role Attack
- Stored XSS on the Vulnerability Page
- Outdated Job Token Can Be Reused to Access Unauthorized Resources
- File Disclosure Via Workhorse File Upload Bypass
- Unauthorized Maintainer Can Edit Group Badge
- Denial of Service Within Wiki Functionality
- Sign-in Vulnerable to Brute-force Attacks
- Invalidated Session Allows Account Access With an Old Password
- Blind SSRF Through Repository Mirroring
 
- 
[1.40.2] - Update GitLab to 13.3.5
- Release blog
- Update the 2FA user check to use timestamps
- Coerce string object storage options to booleans
- Fix Jira importer user mapping limit
- Fix auto-deploy-image external chart dependencies
- Fix ActiveRecord::IrreversibleOrderError during restore from backup
- Add path helper method for vulnerability todo
- Fix hanging info/refs cache when error occurs
 
- 
[1.41.0] - Update Gitlab to 13.4.1
- Release blog
- List and revoke Personal Access Tokens via API
- Revoke PATs for self-managed credential inventory
- Child pipelines can now trigger their own child pipelines
- Mark a to-do as Done in the Design View
- GitLab Runner 13.4 released
 
- 
[1.43.0] - Update GitLab to 13.6.1
- Release announcement
- Display Code Quality severity ratings
- Group-level management of project integrations
- Fire Webhook on Feature Flag change
- Sort releases by name in UI
- Admin approval required by default for new user registrations
- Export merge requests as a CSV
- Improved user experience for the group member list
- Visualize users, projects, groups, issues, MRs, and pipeline activity
- Configure destination for images uploaded from the Static Site Editor
- Filter Merge Requests by environment and deployment times
- Improved Design Management notifications
- Issues and Merge Requests in VS Code
- Unique design identifier
- GitLab Runner 13.6
 
- 
[1.45.0] - Update GitLab to 13.7
- Release announcement
- Reviewers for Merge Requests
- Clone an issue with a quick action
- Show deployment status on the Environments page
- Improved group members list filtering and sorting
- Improved UI for project creation
- Choose to show one file at a time directly from merge requests
 
 
