summaryrefslogtreecommitdiffstats
AgeCommit message (Collapse)AuthorFilesLines
2009-02-02The URL to the Security Advisory was incorrect.mkanat%bugzilla.org1-1/+1
2009-02-02Bug 472362: [SECURITY] Malicious attachments can change your user settings ↵lpsolit%gmail.com2-0/+9
(user + email prefs, shared searches) - Patch by Frédéric Buclin <LpSolit@gmail.com> r=wicked a=LpSolit
2009-02-02Bug 472206: [SECURITY] Bugzilla should optionally not allow the user to view ↵lpsolit%gmail.com5-21/+57
possibly harmful attachments - Patch by Frédéric Buclin <LpSolit@gmail.com> r=mkanat r=justdave a=LpSolit
2009-02-02Bug 466692: [SECURITY] keywords and unused flag types can be deleted by ↵lpsolit%gmail.com5-32/+23
bypassing the token check - Patch by Frédéric Buclin <LpSolit@gmail.com> r=mkanat a=LpSolit
2009-02-02Bug 466748: [SECURITY] Shared/saved searches can be deleted without user ↵lpsolit%gmail.com4-10/+22
confirmation using predictable URL - Patch by Frédéric Buclin <LpSolit@gmail.com> r=mkanat a=LpSolit
2009-02-02I almost forgot the fix on checkin for bug 26257lpsolit%gmail.com1-1/+0
2009-02-02Second part of bug 26257: [SECURITY] Bugzilla should prevent malicious ↵lpsolit%gmail.com1-0/+63
webpages from making bugzilla users submit changes to bugs
2009-02-02Bug 26257: [SECURITY] Bugzilla should prevent malicious webpages from making ↵lpsolit%gmail.com9-8/+98
bugzilla users submit changes to bugs - Patch by Frédéric Buclin <LpSolit@gmail.com> r=mkanat a=LpSolit
2009-02-02Bug 38862: [SECURITY] attachments should be at a different hostname - Patch ↵lpsolit%gmail.com6-40/+162
by Byron Jones <bugzilla@glob.com.au> and Frédéric Buclin <LpSolit@gmail.com> r=mkanat a=LpSolit
2009-01-31Bug 472078: Release Notes for Bugzilla 3.2.1mkanat%bugzilla.org1-3/+58
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit
2009-01-31SnowyOwl noticed that the word "Bug" appeared raw in the title of some ↵mkanat%bugzilla.org1-2/+2
errors I checked in as part of bug 472872.
2009-01-30Bug 344559: Add Commit Button below the top fields on show_bug.cgiguy.pyrzak%gmail.com2-9/+12
Patch By Guy Pyrzak <guy.pyrzak@gmail.com> r=mkanat, a=mkanat
2009-01-29Bug 219021: Only display email addresses to logged-in usersmkanat%bugzilla.org21-146/+252
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit, a=LpSolit
2009-01-29Bug 473201: config.rdf.tmpl flag_type should include group information - ↵lpsolit%gmail.com1-0/+4
Patch by Frank Becker <Frank@Frank-Becker.de> r/a=LpSolit
2009-01-29Bug 471523: Cloning a bug copies the newest visible comment for Newest to ↵lpsolit%gmail.com1-4/+7
Oldest comment order - Patch by Frédéric Buclin <LpSolit@gmail.com> r=mkanat a=LpSolit
2009-01-28Bug 470262 - Show alias if available in show_bug.cgi for bug dependencies, ↵dkl%redhat.com1-6/+6
otherwise show bug id Mistakenly checked in previous version of patch. This brings the changes up to date with the approved patch. dkl
2009-01-28Bug 470262 - Show alias if available in show_bug.cgi for bug dependencies, ↵dkl%redhat.com2-12/+16
otherwise show bug id Patch by David Lawrence <dkl@redhat.com> - r/a=mkanat
2009-01-26Bug 474516: specific_search_allow_empty_words should default to onmkanat%bugzilla.org1-1/+1
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit, a=LpSolit
2009-01-26Bug 467334: Commit button is not spaced the same vertically as the Status ↵mkanat%bugzilla.org1-1/+1
drop-down Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=pyrzak, a=mkanat
2009-01-26Bug 474902: Allow the Bug URL (See Also) field to also accept Launchpad bug URLsmkanat%bugzilla.org2-24/+47
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=dkl, a=mkanat
2009-01-26Bug 474997: Make update_see_also actually return the right thingmkanat%bugzilla.org1-6/+10
Patch by Max Kanat-Alexander <mkanat@bugzilla.org> r=dkl, a=mkanat
2009-01-26Bug 473646 - WebService methods should check list parameters for scalars ↵dkl%redhat.com4-8/+37
and convert before use Patch by Dave Lawrence <dkl@redhat.com> - r/a=mkanat
2009-01-25Bug 473006: welcome-admin page is wrong about visible administrative links - ↵lpsolit%gmail.com1-5/+5
Patch by Frédéric Buclin <LpSolit@gmail.com> r=bbaetz a=LpSolit
2009-01-25Bug 405355: Move flatten_group_membership() from User.pm to Group.pm - Patch ↵lpsolit%gmail.com7-40/+45
by arbingersys <arbingersys@gmail.com> r/a=LpSolit
2009-01-25Bug 471461: Incorrect text displayed about groups when a bug is in a product ↵lpsolit%gmail.com1-35/+41
which has only one group defined, with settings Mandatory/Mandatory - Patch by Frédéric Buclin <LpSolit@gmail.com> r=wicked a=LpSolit
2009-01-25Bug 471880: More scripts should use the shadow DB instead of the master DB - ↵lpsolit%gmail.com7-8/+23
Patch by Frédéric Buclin <LpSolit@gmail.com> r=mkanat a=LpSolit
2009-01-24Bug 471613: Replace Bugzilla::Util::is_tainted() by Scalar::Util::tainted() ↵lpsolit%gmail.com2-21/+3
- Patch by Nitish Bezzala <nbezzala@yahoo.com> r/a=LpSolit
2009-01-23Bug 474206: Useless </a> in the component_cc section when deleting a user ↵lpsolit%gmail.com1-1/+1
account - Patch by arbingersys <arbingersys@gmail.com> r/a=LpSolit
2009-01-23Bug 474881: checksetup.pl only creates custom CSS files on the second run - ↵lpsolit%gmail.com1-4/+3
Patch by Frédéric Buclin <LpSolit@gmail.com> r/a=mkanat
2009-01-23Bug 471518: "Field only appears when:" produces a JavaScript error in ↵guy.pyrzak%gmail.com2-2/+2
Internet Explorer Patch By Jill Foley <jillpf55@sbcglobal.net> r=mkanat, a=mkanat
2009-01-23Fix some nits that I forgot to fix on checkin for bug 474715.mkanat%bugzilla.org2-4/+4
2009-01-23Bug 474715: Add 'limit', 'offset' and 'changed_since' arguments to ↵mkanat%bugzilla.org2-6/+78
WebService::Bug.search() Patch By Kip Hampton <khampton@totalcinema.com> r=mkanat, a=mkanat
2009-01-23Bug 398281: Basic search for bugs via WebService (Bug.search)mkanat%bugzilla.org1-54/+261
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=dkl, a=mkanat
2009-01-23Bug 471943: Implement Bugzilla::Bug::matchmkanat%bugzilla.org1-0/+60
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=dkl, a=mkanat
2009-01-22Bug 474249: Add a WebService interface to add a See Also bug link to a bugmkanat%bugzilla.org2-0/+151
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=dkl, a=mkanat
2009-01-22Bug 472872: Add a field where people can put the URLs to Bugzilla bugs (from ↵mkanat%bugzilla.org13-7/+194
any Bugzilla installation) Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=dkl, a=mkanat
2009-01-21Bug 471633: Sort open bugs and closed bugs separately in show_bug ↵lpsolit%gmail.com1-2/+8
dependson/blocks lists - Patch by Nitish Bezzala <nbezzala@yahoo.com> r/a=LpSolit
2009-01-20Bug 473052: Modify WebService::Bug.add_comment to return the new comment IDmkanat%bugzilla.org1-1/+19
Patch By Kip Hampton <khampton@totalcinema.com> r=mkanat, a=mkanat
2009-01-20Bug 472954: Expose additional properties via the WebService::Bug.get interfacemkanat%bugzilla.org1-10/+91
Patch By Kip Hampton <khampton@totalcinema.com> r=mkanat, a=mkanat
2009-01-20Bug 470057: Collapse and wrap text messages and text errorsmkanat%bugzilla.org3-3/+12
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit, a=LpSolit
2009-01-20Bug 431744: "Change Columns" URL contained more than 3x the characters in ↵mkanat%bugzilla.org1-0/+4
the base buglist.cgi URL Patch By Michael J Tosh <michael.j.tosh@lmco.com> r=mkanat, a=mkanat
2009-01-20Bug 134022: PERFORMANCE: deleting old login cookies locks login checksmkanat%bugzilla.org3-11/+17
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit, a=mkanat
2009-01-16Bug 473883: Re-arrange Perl module instructions so that required modules are ↵mkanat%bugzilla.org2-59/+62
listed at the end Patch By Max Kanat-Alexander <mkanat@bugzilla.org> (module owner) a=mkanat
2009-01-16Bug 460376: Make module-install instructions localizable.mkanat%bugzilla.org2-78/+87
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> (module owner) a=mkanat
2009-01-15Bug 286452: Add more detailed information to time tracking summary report - ↵wicked%sci.fi2-1/+49
Original patch by Shane H. W. Travis <shane.h.w.travis@gmail.com> and modified/extended patch by Teemu Mannermaa <wicked@sci.fi> r/a=LpSolit
2009-01-15Bug 344878: Automatically generate list of acceptable columns for ↵lpsolit%gmail.com5-77/+125
buglist.cgi from the database - Patch by Teemu Mannermaa <wicked@sci.fi> r/a=mkanat
2009-01-15Bug 464992: Binary attachments, graphical reports and new charts are not ↵lpsolit%gmail.com3-1/+5
displayed correctly on Windows - Patch by Frédéric Buclin <LpSolit@gmail.com> r=mkanat a=LpSolit
2009-01-15Bug 473677: Update YUI to 2.6.0mkanat%bugzilla.org4-21/+25
Patch By Max Kanat-Alexander <mkanat@bugzilla.org> r=LpSolit, a=mkanat
2009-01-15Bug 471890: The Index of Parameters should linkify parameters, not the ↵lpsolit%gmail.com1-3/+6
category they belong to - Patch by Nitish Bezzala <nbezzala@yahoo.com> r/a=LpSolit
2009-01-15Bug 473553: ERROR_MODE_DIE should be the default if the script is not CGI - ↵lpsolit%gmail.com1-1/+1
Patch by Frédéric Buclin <LpSolit@gmail.com> r/a=mkanat