summaryrefslogtreecommitdiffstats
AgeCommit message (Collapse)AuthorFilesLines
2014-10-06Bump version post-releaseDavid Lawrence1-1/+1
2014-10-06Bump version to 4.5.6David Lawrence1-1/+1
2014-10-06Bug 1054702: CSV export vulnerable to formulae injectionSimon Green2-4/+8
r=glob,a=glob
2014-10-06Bug 1064140: [SECURITY] Private comments can be shown to flagmail recipients ↵Simon Green3-18/+38
who aren't in the insider group r=glob,a=glob
2014-10-06Bug 1074980: Forbid the { foo => $cgi->param() } syntax to prevent data overrideFrédéric Buclin1-1/+32
r=dkl,a=sgreen
2014-10-06Bug 1075578: [SECURITY] Improper filtering of CGI argumentsFrédéric Buclin11-45/+46
r=dkl,a=sgreen
2014-10-05Bug 1071276: Markdown comment checkbox value is not passed through properly ↵Koosha1-0/+1
when a mid air collision has occurred and user chooses to submit comment r=dkl a=sgreen
2014-10-02Bug 1076155: Remove "?" from table columns and labels + code cleanupFrédéric Buclin3-23/+14
r=dkl a=justdave
2014-10-01Bug 1069760 - Cannot use 'component' in a templateSimon Green3-17/+17
r=gerv, a=justdave
2014-10-01Bug 1070640: Update (and rename) Bugzilla::Send::Sendmail to work with ↵Frédéric Buclin2-31/+22
Email::Sender::Transport::Sendmail r=dylan a=justdave
2014-10-01Fix bustage due to bug 1061247Frédéric Buclin1-0/+1
2014-10-01Bug 1061247 - Successfully using a password change token should invalidate ↵Reed Loden1-0/+2
all other password change tokens for that user r=gerv a=glob
2014-10-01Bug 1070317 - Bugzilla::Flag's attribute modification_date is affected by ↵Dylan William Hardison1-2/+3
the user's timezone and differs from the database copy after a call to $flag->update() r=dkl, a=justdave
2014-09-29Bug 1071317: Remove unused variablesFrédéric Buclin3-4/+0
r=gerv a=sgreen
2014-09-29Bug 1044457 - PostgreSQL 8.x fails with error: language "plpgsql" does not existDylan William Hardison1-0/+3
2014-09-26Bug 1071024 - improve description of mail_delivery_method. r=glob.Gervase Markham1-1/+6
2014-09-26Bug 1071033: Variable "$user" will not stay shared at buglist.cgiFrédéric Buclin1-5/+4
r=dkl a=sgreen
2014-09-25Bug 1072110: _concatenate_js assumes javascript_urls is an arrayByron Jones3-3/+4
r=dkl,a=glob
2014-09-23Bug 1059685: Add user help for MarkdownKoosha KM1-4/+4
- Fixed template filter for constant in markdown.html.tmpl
2014-09-23Bug 1059685: Add user help for MarkdownKoosha KM3-10/+270
r=dkl,a=sgreen
2014-09-23Bug 1065444: Several columns are not legal when displaying queriesFrédéric Buclin2-41/+46
r=dkl a=sgreen
2014-09-22Bug 1069363: "show user list again" link does not include is_enabled for ↵David Lawrence1-1/+3
showing previous results list r=glob,a=glob
2014-09-20Bug 502625: Replace Email::Send with Email::SenderFrédéric Buclin6-73/+41
r=dylan a=glob
2014-09-18Bug 829273: Certain webservice tests failing due to improper error being ↵David Lawrence1-2/+2
thrown for undef or empty bug id values r=glob,a=glob
2014-09-18Bug 1068521: "Use of uninitialized value" warningsPami Ketolainen2-5/+12
r=glob,a=glob
2014-09-18Bug 1068014: skip strptime() in datetime_from() if the date is in a standard ↵Byron Jones1-3/+8
format r=dylan,a=glob
2014-09-17Bug 1064395: concatenate and slightly minify javascript filesByron Jones4-14/+100
r=dkl,a=glob
2014-09-17Bug 1068277: No longer able to save/edit/forget a saved search if results ↵David Lawrence1-27/+27
are 0 in buglist.cgi r=LpSolit,a=sgreen
2014-09-16Bug 1039940: serialisation of objects for webservice responses is extremely slowByron Jones1-5/+8
r=dylan,a=sgreen
2014-09-15Bug 252555: Remove the ANSI mode when running MySQLVishant Gautam1-3/+4
r=LpSolit a=sgreen
2014-09-15Bug 1066184: data/params.js should be renamed to data/params.json since the ↵David Lawrence6-16/+21
data form is JSON and not JS r=LpSolit,a=sgreen
2014-09-11Bug 1064933: Bugzilla.pm does not compile without Text::MarkdownKoosha KM3-4/+6
r=glob,a=sgreen
2014-09-11Bug 1052724: Use JSON::XS instead of Data::Dumper to store parameters into ↵Frédéric Buclin8-61/+77
data/params r=dkl r=wurblzap a=sgreen
2014-09-11Bug 1041306: Kill global/site-navigation.html.tmpl to conform to the HTML5 ↵Frédéric Buclin4-81/+3
spec about valid <link rel="..."> keywords r=dkl a=sgreen
2014-09-11Bug 1009013 - Require a user to change their password if they log in and ↵Simon Green6-23/+63
their current password does not meet the password complexity rules r=glob, a=sgreen
2014-09-10Bug 1053513 - fix patching errorDylan William Hardison1-1/+1
I yearn for review board and more git-based development.
2014-09-10Bug 1035080: preload visibility of referenced bugs in _preload_referenced_bugsByron Jones1-0/+3
r=sgreen,a=sgreen
2014-09-10Bug 1036242: "TypeError: bug_status is undefined" when creating a bugMatt Tyson1-4/+8
r=glob,a=glob
2014-09-09Bug 1053513 - remove last-visited entries when a user removes involvement ↵Dylan William Hardison2-0/+16
from a bug r/a=glob
2014-09-08Bug 1046126: Do not generate a new API token every time you access a ↵David Lawrence1-3/+10
bug-related page r=sgreen,a=glob
2014-09-08Bug 1046213: datetime_from() generates wrong dates if year < 1901Frédéric Buclin1-3/+7
r=sgreen a=glob
2014-09-08Bug 768892 - Specific Search without search words yields invalid_column_name ↵Simon Green1-1/+1
message, complaining about sort order "relevance desc" r=sgreen, a=glob
2014-09-08Bug 1057838 - Update Autolinkification documentation to cover a list of ↵Koosha KM1-0/+4
bug/comment ids r=sgreen, a=sgreen
2014-09-05Bug 1060308: Markdown: URLs and Emails are not rendered literally in code ↵Koosha KM1-1/+6
spans and code blocks r=glob,a=sgreen
2014-09-04Bug 1040728 - testserver.pl on Ubuntu 12.04 with Apache2 invalidly gives ↵Dylan William Hardison1-1/+1
error 'Failed to find the GID for the 'httpd' process' due to truncated command name r=gerv,a=sgreen
2014-09-02Bug 281791 - Add ability to change flags in "change several bugs at once"Simon Green6-1/+184
r=glob, a=sgreen
2014-09-02Bug 1054175 - Exclude Bugzilla::Migrate:: from requiring POD documentationSimon Green1-0/+1
r=gerv, a=sgreen
2014-08-30Bug 1060233 - Aliases are not displayed correctly in some placesSimon Green2-5/+6
r=dkl, a=sgreen
2014-08-28Bug 330707: Add optional support for MarkDownKoosha KM25-15/+624
r=dkl,a=sgreen
2014-08-26Bug 1056087 - contrib/merge-users.pl fails if there are no duplicate ↵Dylan William Hardison1-2/+7
bug_user_last_visit rows