summaryrefslogtreecommitdiffstats
AgeCommit message (Collapse)AuthorFilesLines
2010-08-05Bug 584032: Cannot set requestees on bug creationFrédéric Buclin1-2/+3
r=pyrzak a=LpSolit
2010-08-05Bug 583690: (CVE-2010-2759) [SECURITY][PostgreSQL] Bugzilla crashes when ↵Frédéric Buclin3-12/+13
viewing a bug if a comment contains 'bug <num>' or 'attachment <num>' where <num> is greater than the max allowed integer r=mkanat a=LpSolit
2010-08-04Bug 450013: (CVE-2010-2757) [SECURITY] Can sudo a user without sending emailFrédéric Buclin4-19/+57
r=glob a=LpSolit
2010-08-04Bug 417048: (CVE-2010-2756) [SECURITY] Boolean charts let me query for users ↵Frédéric Buclin1-0/+7
being in any given group r=mkanat a=LpSolit
2010-08-04Bug 583649: Release Notes for Bugzilla 3.6.2Max Kanat-Alexander1-0/+58
r=LpSolit
2010-08-04Bug 583614: Simple Search no longer worksFrédéric Buclin1-1/+1
r/a=mkanat
2010-08-04Bug 584036: _sync_fulltext() not called when (un)setting an existing comment ↵Frédéric Buclin1-1/+2
as private r/a=mkanat
2010-08-04Bug 584021: FILTER txt should also remove &nbsp;Frédéric Buclin1-0/+2
r/a=mkanat
2010-08-04Bug 584018: @foo= bar in email_in.pl is not parsed correctly, due to a ↵Frédéric Buclin1-1/+1
missing whitespace before "=" r/a=mkanat
2010-08-04Bug 584110: Don't name attachment files "attachment.txt" by default, because ↵Frédéric Buclin2-2/+2
this confuses IE a=LpSolit
2010-08-03Bug 584069: IE6 throws many JS errorsGuy Pyrzak2-2/+2
r/a=LpSolit
2010-08-03Bug 453425 - Send "X-Content-Type-Options: nosniff" header when displaying ↵Reed Loden1-1/+2
attachments so IE8 doesn't try to sniff the content type. [r=LpSolit a=LpSolit]
2010-08-03Bug 583287: Some fields should not be displayed in bugmail for new bugsFrédéric Buclin2-4/+4
r/a=mkanat
2010-08-03Bug 583165: Un(setting) a comment as private doesn't update bugs.delta_tsFrédéric Buclin1-1/+3
r/a=mkanat
2010-08-02Bug 553884: Quicksearch incorrectly treats "-" in quotes as negationFrédéric Buclin1-0/+3
r/a=mkanat
2010-08-02Bug 583622: email_in.pl doesn't let me set timetracking fieldsFrédéric Buclin2-7/+5
r/a=mkanat
2010-08-02Bug 578494: We can't use "shellwords" to split words for sql_fulltext on Pg,Max Kanat-Alexander1-6/+17
because it doesn't work with unbalanced single quotes. So we just do a hack to make Quicksearch work right, for Pg. r=LpSolit, a=mkanat
2010-08-02Bug 578572: Make the user autocomplete and keyword autocomplete behaveMax Kanat-Alexander3-8/+12
similarly, and fix a race condition in user autocomplete where sometimes an older result would appear after a newer result, overriding the newer result. r=pyrzak, a=mkanat
2010-08-02Bug 583645: Make $dbh->quote always detaint its output, even on DBDs thatMax Kanat-Alexander1-0/+11
don't normally detaint output from $dbh->quote. r=LpSolit, a=LpSolit
2010-08-02Bug 577956: Bugs which were never confirmed cannot be reopened as UNCONFIRMEDFrédéric Buclin1-2/+2
r/a=mkanat
2010-08-02Bug 581622: When a quicksearch includes the "content" field, it is limited ↵Frédéric Buclin3-11/+0
to 200 bugs r/a=mkanat
2010-08-02Bug 547748: Wrong parsing of email_in emails if some @field has no dataFrédéric Buclin1-1/+1
r/a=mkanat
2010-08-02Bug 581327: The patch to allow commas in Product (etc.) names broke theMax Kanat-Alexander1-1/+15
entering of comma-separated values in other search fields, like bug_id. So now we split on commas in text fields, but not for <select> fields. r=mkanat, a=mkanat (module owner)
2010-08-02Bug 526272: Do not duplicate the 'File a new bug in the "Foo" product' link ↵Frédéric Buclin1-1/+1
when the buglist is empty r=timello a=LpSolit
2010-07-30Bug 583167: The "X-Bugzilla-Changed-Fields:" header in bugmails is unreadableFrédéric Buclin1-1/+1
r=reed a=LpSolit
2010-07-28Bug 396558: Dependency change e-mails should only include status changes ↵Frédéric Buclin4-164/+125
that happened right now r/a=mkanat
2010-07-26Bug 581798: Remove whitespaces from URLs when listing classifications and ↵Frédéric Buclin2-23/+5
products in editproducts.cgi r/a=mkanat
2010-07-25Bug 581693: Missing whitespace for the auth_failure_action hookFrédéric Buclin1-1/+1
r/a=mkanat
2010-07-24Bug 581668: Obsolete groups have no name nor ID when moving a bug to another ↵Frédéric Buclin1-4/+3
product r=timello a=LpSolit
2010-07-24Bug 581663: Directive closed twiceFrédéric Buclin1-1/+1
r=timello a=LpSolit
2010-07-23Bug 581326 – Misleading JSON error message.Marc Schumann1-2/+2
Patch by Marc Schumann <wurblzap@gmail.com>, r/a=mkanat
2010-07-23Bug 581311: Bring the documentation of various hooks in Bugzilla::HookMax Kanat-Alexander1-46/+69
up to date r=mkanat, a=mkanat (module owner)
2010-07-23Bug 581316 – Minor typos in notification reason descriptions.Marc Schumann1-2/+2
Patch by Marc Schumann <wurblzap@gmail.com>, r/a=LpSolit
2010-07-23Bug 578240 - Re-add "owner" as a quicksearch alias for searching for ↵Reed Loden1-0/+1
"assigned_to" [r=mkanat a=mkanat]
2010-07-23Bug 578494: When doing a QuickSearch on a phrase, pass the phrase quotedMax Kanat-Alexander2-4/+13
to the fulltext engine, so that it knows it's a phrase. r=LpSolit, a=mkanat
2010-07-23Bug 577054: ChoiceInterface was denying the deletion of any value ifMax Kanat-Alexander2-5/+11
the field had *any* value-controlling values. r=LpSolit, a=LpSolit
2010-07-23Bug 556579: Back out the patch from bug 554819, because it caused specialMax Kanat-Alexander1-4/+32
characters in quoted strings to be interpreted instead of passed along. r=LpSolit, a=LpSolit
2010-07-23Bug 398701: Replace |FILTER url_quote| by |FILTER uri|Frédéric Buclin69-238/+223
r/a=mkanat
2010-07-22Bug 580208: Search.pm: Combine all the user search types into one searchMax Kanat-Alexander2-157/+153
function r=mkanat, a=mkanat (module owner)
2010-07-21Bug 580761: YUI scripts no longer workFrédéric Buclin1-1/+1
r/a=mkanat
2010-07-21Bug 428313: Properly expire the browser's CSS and JS cache when thereMax Kanat-Alexander8-150/+267
are new versions of those files. This also eliminates single-file skins and should also allow Extensions to have skins. r=glob, a=mkanat
2010-07-20Bug 579514: Make Bug.attachments also return attachment dataMax Kanat-Alexander4-25/+64
r=dkl, a=mkanat
2010-07-20Bug 560003: Hide the "Add Bug URLs" box behind an (add) link.Max Kanat-Alexander2-5/+20
r=timello, a=mkanat
2010-07-20Bug 579797: Restore ValidateGroupName in Bugzilla::Group, because it isMax Kanat-Alexander1-0/+33
still in use by the whining system r=LpSolit, a=LpSolit
2010-07-20Bug 575475: ANSI coloring of error messages was hiding template compilationMax Kanat-Alexander1-1/+3
errors r=LpSolit, a=LpSolit
2010-07-20Bug 580174: Search.pm: Move special parsing functions around, to be moreMax Kanat-Alexander1-157/+164
orderly r=mkanat, a=mkanat (module owner)
2010-07-20Bug 576912: Make the automatic duplicate detection table appear onkeyupMax Kanat-Alexander1-6/+18
instead of onblur, but give it a delay so that (a) we're not sending too many queries and (b) so that it doesn't appear at the exact same time as you click Submit Bug (making the "Submit Bug" click not work) r=timello, a=mkanat
2010-07-19Bug 579749: Linkify the URL found in attachments (restore the is_url ↵Frédéric Buclin1-5/+22
behavior) if there is only an URL in them r/a=LpSolit
2010-07-18Bug 119703: Create an attachment by pasting it into a text fieldFrédéric Buclin23-186/+93
r/a=mkanat
2010-07-18Bug 579695: Make xt/search.t do substring tests using a more consistentMax Kanat-Alexander3-16/+41
substring length, thus fixing an intermittent failure that would show up when searching the cf_multi_select field. r=mkanat, a=mkanat (module owner)