Blog post: https://about.gitlab.com/releases/2023/05/05/critical-security-release-gitlab-15-11-2-released/
Includes one fix, for:
Table of Fixes Title Severity Malicious Runner Attachment via GraphQL critical
Test instance:
- gitlab-prod-1002.devtools.eqiad1.wikimedia.cloud
-
gitlab-runner-1002.devtools.eqiad1.wikimedia.cloud -
gitlab-runner-1003.devtools.eqiad1.wikimedia.cloud
Replicas:
- gitlab1003.wikimedia.org
- gitlab1004.wikimedia.org
Production:
- gitlab2002.wikimedia.org
-
Trusted runners -
Shared runners -
Cloud runners