diff options
author | lpsolit%gmail.com <> | 2009-08-01 14:35:46 +0200 |
---|---|---|
committer | lpsolit%gmail.com <> | 2009-08-01 14:35:46 +0200 |
commit | 2039a990c46a153a30a15b6e76e19062c5565e02 (patch) | |
tree | 53cc73654ed593baae26e597b29e949e20444b1d /template/en/default/bug/field.html.tmpl | |
parent | 8bd1ee512f2e16192c38da0887caa7dbfc7f4dc1 (diff) | |
download | bugzilla-2039a990c46a153a30a15b6e76e19062c5565e02.tar.gz bugzilla-2039a990c46a153a30a15b6e76e19062c5565e02.tar.xz |
Bug 507389: [SECURITY] Users can see all products when editing bugs - Patch by Frédéric Buclin <LpSolit@gmail.com> r=mkanat a=LpSolit
Diffstat (limited to 'template/en/default/bug/field.html.tmpl')
-rw-r--r-- | template/en/default/bug/field.html.tmpl | 6 |
1 files changed, 5 insertions, 1 deletions
diff --git a/template/en/default/bug/field.html.tmpl b/template/en/default/bug/field.html.tmpl index 039910f1d..e8ed85010 100644 --- a/template/en/default/bug/field.html.tmpl +++ b/template/en/default/bug/field.html.tmpl @@ -23,6 +23,7 @@ [%# INTERFACE: # field: a Bugzilla::Field object # value: The value of the field for this bug. + # override_legal_values (optional): The list of legal values, for select fields. # editable: Whether the field should be displayed as an editable # <input> or as just the plain text of its value. # allow_dont_change: display the --do_not_change-- option for select fields. @@ -130,7 +131,10 @@ [% dontchange FILTER html %] </option> [% END %] - [% FOREACH legal_value = field.legal_values %] + [% IF NOT override_legal_values %] + [% override_legal_values = field.legal_values %] + [% END %] + [% FOREACH legal_value = override_legal_values %] [% SET control_value = legal_value.visibility_value %] [% SET control_field = field.value_field %] <option value="[% legal_value.name FILTER html %]" |