summaryrefslogtreecommitdiffstats
AgeCommit message (Expand)AuthorFilesLines
2012-03-06Bug 545610: Correctly parse CGI parameters, especially when using mod_perlFrédéric Buclin2-14/+22
2012-03-06Bug 731323: Wrong URLs in the "Total" row at the bottom of tabular reports wh...Frédéric Buclin1-0/+8
2012-03-03Bug 731586: Email notifications about status changes in blockers are incorrec...Frédéric Buclin2-11/+7
2012-03-01Bug 731725 - In the documentation license, the address of the FSF is incorrectEmmanuel Seyman1-2/+2
2012-02-29Bug 731219: Fix XMLRPC breakage when content-type contains a charsetByron Jones1-1/+4
2012-02-28Bug 695514: Slow performance in field-events.js.tmpl on show_bug.cgi with lar...Frédéric Buclin3-3/+14
2012-02-28Bug 731055: get_enterable_products() is very slow when a product has many com...Frédéric Buclin1-6/+8
2012-02-27Bug 730598: Running checksetup.pl twice deletes the DEFAULT value of the bug_...Frédéric Buclin1-1/+1
2012-02-26Bug 714030: Add Mac OS 10.7 Lion detectionMatt Selsky1-0/+1
2012-02-26Bug 714368: Add Windows 8 detectionMatt Selsky1-0/+1
2012-02-25Bug 696352: Required fields have broken colorsMichal 'hramrach' Suchanek1-0/+1
2012-02-25Bug 730552: HTML markup validation: unescaped "&" in CSV link on buglist.cgiFrédéric Buclin1-1/+1
2012-02-22Updated docs for stable releaseDave Lawrence1-2/+1
2012-02-22Bumped version number post-releaseDave Lawrence1-1/+1
2012-02-22Bumped version to 4.2Dave Lawrence2-4/+4
2012-02-22Bug 725663 - (CVE-2012-0453) [SECURITY] CSRF vulnerability in the XML-RPC API...Dave Lawrence3-0/+21
2012-02-20Bug 718283: Indentation and newlines in the "Descriptive text sent within whi...Matt Selsky1-2/+2
2012-02-16Bug 723944: Plain-text only emails are mangled when they contain non-ASCII ch...Frédéric Buclin1-1/+5
2012-02-15Test 1 fails if PERLLIB contains paths with whitespace.Marc Schumann1-1/+1
2012-02-15Bug 724464 - JSON-RPC support shouldn't require SOAP::LiteDave Lawrence2-20/+14
2012-02-15Bug 722113: The profile_search table has a wrong index nameFrédéric Buclin2-1/+7
2012-02-14Bug 727240: The POD for Bug.attachments is wrong about the format of the retu...Frédéric Buclin1-16/+10
2012-02-08Bug 722161: Clickjacking is possible in "View All" with HTML attachmentsFrédéric Buclin2-4/+21
2012-02-01Bump the version number post-releaseDave Lawrence1-1/+1
2012-01-31Bumped to version 4.2rc2Dave Lawrence2-4/+4
2012-01-31(CVE-2012-0440) [SECURITY] JSON-RPC permits to bypass token checks and can le...Frédéric Buclin2-1/+18
2012-01-31Bug 714472: (CVE-2012-0448) [SECURITY] utf8 homoglyphs are allowed in email a...Frédéric Buclin4-7/+5
2012-01-31Bug 714446: Product.create default behavior is broken and inconsistent with PODFrédéric Buclin1-17/+29
2012-01-27Bug 720756 - Update release notes for Bugzilla 4.2rc2Dave Lawrence1-4/+8
2012-01-27Bug 721715: URLs in the See Also field must be detainted before inserted into...Frédéric Buclin1-4/+3
2012-01-26Fix bustage due to bug 715514.Tiago Mello1-1/+1
2012-01-25Bug 717217: The regexp in Bugzilla::BugUrl::JIRA::should_handle() isn'tSimon Green1-1/+1
2012-01-25Bug 715514: Fix showdependencytree misleading in "hide resolved" viewMatt Selsky1-2/+2
2012-01-24Bug 718183: Rename duplicated series names before inserting the new index in ...Frédéric Buclin1-0/+31
2012-01-24Bug 715870: [Oracle] Related sequences and triggers must be removed when drop...Frédéric Buclin1-1/+19
2012-01-24Bug 633061: Require Apache2::SizeLimit 0.96 for proper operation on LinuxMax Kanat-Alexander2-5/+5
2012-01-21Bug 469068: SMTP parameters not documentedMatt Selsky1-0/+62
2012-01-18Bug 718905: Move user_preferences hook up, before other actions in userprefs.cgiTiago Mello1-8/+10
2012-01-12Bug 715731 - profile_search.user_id should have a FK pointing to profiles.useridDave Lawrence1-1/+4
2012-01-12Bug 717215: Remove references to url_quote filterSimon Green2-5/+1
2012-01-12Bug 715902: Do not log personal common activities in audit_logFrédéric Buclin8-3/+23
2012-01-11Bug 717210: If all attachments are stored locally (maxattachmentsize = 0, max...Simon Green2-3/+3
2012-01-11Bug 591638: In the admin page, the link to edit field values is named 'Field ...A. Shimono1-1/+1
2012-01-11Bug 715650 - User auto-completion does not work in request.cgi for requester ...Dave Lawrence1-1/+2
2012-01-11Bug 716227: When checksetup.pl tells the admin that he should edit variables ...Frédéric Buclin2-9/+14
2012-01-10Bug 716283: Clickjacking in the attachment "Details" page allows to bypass to...Frédéric Buclin2-0/+13
2012-01-06Bug 706753 about JSON::RPC 1.01 is now fixedFrédéric Buclin1-4/+0
2012-01-06Bug 695294: The See Also field is not visible in "Format for Printing"Matt Selsky1-0/+12
2012-01-06Bug 319684: The documentation is unclear about how to disable quipsMatt Selsky1-7/+12
2012-01-06Bug 641957: The documentation should mention that the voting system is now an...Matt Selsky1-0/+5