Skip to content

GitLab

  • Menu
Projects Groups Snippets
  • Help
    • Help
    • Support
    • Community forum
    • Submit feedback
  • Sign in / Register
  • G gitlab-ce
  • Project information
    • Project information
    • Activity
    • Labels
    • Members
  • Repository
    • Repository
    • Files
    • Commits
    • Branches
    • Tags
    • Contributors
    • Graph
    • Compare
  • Issues 0
    • Issues 0
    • List
    • Boards
    • Service Desk
    • Milestones
  • Merge requests 1
    • Merge requests 1
  • CI/CD
    • CI/CD
    • Pipelines
    • Jobs
    • Schedules
  • Deployments
    • Deployments
    • Environments
    • Releases
  • Monitor
    • Monitor
    • Metrics
    • Incidents
  • Analytics
    • Analytics
    • Value stream
    • CI/CD
    • Repository
  • Wiki
    • Wiki
  • Snippets
    • Snippets
  • Activity
  • Graph
  • Create a new issue
  • Jobs
  • Commits
  • Issue Boards
Collapse sidebar
  • nexedi
  • gitlab-ce
  • Repository

Switch branch/tag
  • gitlab-ce
  • ee
  • lib
  • gitlab
  • elastic
  • search_results.rb
Find file BlameHistoryPermalink
  • Dylan Griffith's avatar
    Redact search results based on Ability.allowed? · 54d41e04
    Dylan Griffith authored Oct 17, 2019
    In order to improve security we want to avoid any chance of leaking
    search results that the user should not have access to. This approach
    should account for bugs from incorrect queries or stale/incorrect data
    in the index.
    
    It happens that this also fixes
    https://gitlab.com/gitlab-org/gitlab/issues/33712 for the time being as
    we have not yet fixed the root cause of the problem which is that the
    query is wrong.
    54d41e04

Replace search_results.rb

Attach a file by drag & drop or click to upload


Cancel
GitLab will create a branch in your fork and start a merge request.
GitLab Nexedi Edition | About GitLab | About Nexedi | 沪ICP备2021021310号-2 | 沪ICP备2021021310号-7