New P1 release, detailed in ATR-16231 Validated in the reprocessings: ATR-16202 and ATR-16204 Conditions tag CONDBR2-HLTP-2017-01 validated in ATR-16183
Security Notice: GitLab has uncovered a widespread malicious npm supply-chain attack that potentially can destroy user data. All teams are required to audit packages. Further information can be found under the Computer Security Report for November 2025 and the original blog post in https://about.gitlab.com/blog/gitlab-discovers-widespread-npm-supply-chain-attack/
New P1 release, detailed in ATR-16231 Validated in the reprocessings: ATR-16202 and ATR-16204 Conditions tag CONDBR2-HLTP-2017-01 validated in ATR-16183