summaryrefslogtreecommitdiffstats
path: root/Bugzilla
AgeCommit message (Collapse)AuthorFilesLines
2011-08-04Bug 637981: (CVE-2011-2379) [SECURITY] "Raw Unified" patch diffs can cause ↵Byron Jones1-0/+2
XSS on this domain in IE 6-8 and Safari r/a=LpSolit
2011-08-04Bug 660502: (CVE-2011-2977) [SECURITY] Temporary files for uploaded ↵Frédéric Buclin1-1/+4
attachments are not deleted on Windows r=glob a=LpSolit
2011-08-04Bug 653477: (CVE-2011-2380) [SECURITY] Group names can be guessed when ↵Frédéric Buclin4-48/+115
creating or editing a bug r=mkanat a=LpSolit
2011-08-04Bug 657158 - (CVE-2011-2381) [SECURITY] Request email headers for attachment ↵Reed Loden1-0/+3
containing newline are corrupt [r=LpSolit a=LpSolit]
2011-08-04Bug 676200: We shouldn't manually delete obsolete parameters in ↵Frédéric Buclin1-17/+13
Bugzilla::Config::update_params(), else they are not saved in old-params.txt r/a=mkanat
2011-08-03Fix a warning thrown when running 011pod.tFrédéric Buclin1-1/+1
2011-08-03Bug 655910: When calling ./install-module.pl --all, install LWP before ↵Frédéric Buclin1-6/+6
XML::Twig, else arguments passed to build XML::Twig are propagated to Net::HTTP which then fails r/a=mkanat
2011-08-01Bug 634812: Having a very large number of custom fields can make displaying ↵Frédéric Buclin1-0/+5
show_bug.cgi slow r=glob a=LpSolit
2011-08-01Bug 674574: When all components or versions are disabled, you cannot enter ↵Frédéric Buclin1-9/+14
bugs into the product but it's listed in enter_bug.cgi anyway r=dkl a=LpSolit
2011-07-31Bug 673702: Undefined get_add_fk_sql in Bugzilla/DB/Schema.pmBodo-Merle Sandor1-2/+2
r/a=mkanat
2011-07-31Bug 655912: install-module.pl is unable to install LWP::UserAgent on Perl ↵Frédéric Buclin1-1/+13
<5.8.8, because LWP 6.0 now requires 5.8.8 as a minimum r/a=mkanat
2011-07-25Bug 642388: Description of field days_elapsed missing from ↵Frédéric Buclin1-0/+1
global/field-descs.none.tmpl r=wurblzap a=LpSolit
2011-07-25Bug 589128: Adds a preference allowing users to choose between text or htmlByron Jones7-17/+35
for bugmail. r=LpSolit, a=LpSolit
2011-07-25Bug 652663 - When using bug_format_comment hook some replacements can happen ↵David Lawrence1-2/+4
more than once causing broken links r/a=LpSolit
2011-07-20Bug 600810: Use XMLRPC::Transport::HTTP:Apache as base class under mod_perlTeemu Mannermaa1-1/+5
r/a=mkanat
2011-07-19Bug 671964: Move old field names conversion from do_search_functionTiago Mello1-7/+6
to _handle_chart(). r/a=mkanat
2011-07-18Bug 670906 - Make it so delta_ts is only updated when there are changes. Fix ↵Gervase Markham1-1/+1
regression from bug 620827. r=timello, a=lpsolit.
2011-07-08Bug 670169 - Escape '>' in js filterReed Loden1-0/+1
[r=LpSolit a=LpSolit]
2011-07-05Bug 658929 - User autocomplete is very slow when there are lots of users in ↵David Lawrence5-9/+47
the profiles table r/a=mkanat
2011-06-14Bug 660866: Allow editing of old "boolean chart" searches using the newMax Kanat-Alexander3-17/+63
"custom search" UI controls on the advanced search form. r=mkanat, a=mkanat (module owner)
2011-06-11Fixes several bugs at once related to New Charts:Frédéric Buclin1-10/+3
Bug 610739: YUI-generated tabular reports do not work if only one axis is set Bug 617676: Wrong URLs in the "Total" row at the bottom of tabular reports when JS is enabled Bug 655848: Use of uninitialized value $tbl in string eq at /var/www/html/bugzilla/report.cgi line 162 r/a=LpSolit
2011-06-11Bug 663208: Recursive "Verify new product details" page when attempting to ↵Frédéric Buclin1-1/+7
move multiple bugs to another product r/a=mkanat
2011-06-07Bug 662406: Add the "id" column for bug_see_also to Schema.pm.Max Kanat-Alexander1-0/+2
r=mkanat, a=mkanat (module owner)
2011-06-06Bug 649281 - Add ircs:// to url protocols for external links in commentMatt Selsky1-2/+2
author=Matt Selsky, r=dkl, a=LpSolit
2011-05-31Bug 647649: Change the old "Boolean Charts" UI into the new AND/ORMax Kanat-Alexander1-3/+12
"Custom Search" UI. r=timello, a=mkanat
2011-05-30Bug 659816: Fix url_decoding of utf8 stringsByron Jones1-4/+1
r=mkanat, a=mkanat
2011-05-29Bug 655847: Accessing buglist.cgi throws: Use of inherited AUTOLOAD for ↵Frédéric Buclin1-9/+1
non-method Bugzilla::CGI::SERVER_PUSH() is deprecated at Bugzilla/CGI.pm line 233 r/a=mkanat
2011-05-24Bug 659185: html_quote() escapes @ causing mailto links to not be processedFrédéric Buclin1-1/+2
r/a=mkanat
2011-05-23Bug 648096: UWinnipeg (theory PPM repo) instructions are not necessary with ↵Frédéric Buclin1-3/+2
recent ActiveState releases r=mkanat a=LpSolit
2011-05-17Bug 655229: Adds components, versions and milestones to Product.get Byron Jones2-36/+233
r=mkanat, a=mkanat
2011-05-13Allow searches to specify whether the top-level criteria will be joinedMax Kanat-Alexander1-1/+1
together with AND or OR. (This is part of bug 647649 but fixes a test failure caused by bug 656994 so is being checked in now.)
2011-05-11Bug 656146: Require PatchReader 0.9.6 as it significantly improves the way ↵Frédéric Buclin1-1/+2
to display patches r/a=mkanat
2011-05-10Bug 28849: Block users from CCing other users if they do not have editbugs privsByron Jones1-0/+4
r=LpSolit, a=LpSolit
2011-05-06Bug 653713: editusers.cgi crashes when editing a user profileJochen Wiedmann1-1/+4
r/a=mkanat
2011-05-06Bug 653341: Bug.create() fails to error out if an invalid group is passedFrédéric Buclin3-9/+19
r/a=mkanat
2013-05-04Bug 652625 - Empty queries still get run because the list_id parameter is ↵David Lawrence1-1/+3
added to them r/a=mkanat
2011-04-28Bump the version number post-release.Max Kanat-Alexander1-1/+1
2011-04-28Bump version number for 4.1.2.Max Kanat-Alexander1-1/+1
https://bugzilla.mozilla.org/show_bug.cgi?id=652474
2011-04-28Bug 423612 - Allow editing extern_id for users from the admin interfaceJochen Wiedmann8-0/+68
r=mkanat, a=mkanat
2011-04-28Bug 646578: Make Math::Random::Secure fail to install if its dependenciesMax Kanat-Alexander1-1/+24
don't install properly, when using install-module.pl. r=glob, a=mkanat
2011-04-25Bug 648178: Make install-module.pl check if a compiler is availableMax Kanat-Alexander2-1/+30
and fail with a clear error if not. r=glob, a=mkanat
2011-04-23Bug 652165: Flagmails have a wrong Date: valueFrédéric Buclin2-14/+19
r=wicked a=LpSolit
2011-04-23Bug 650624: Changing the requestee of a flag should not change the requesterFrédéric Buclin1-5/+3
a=LpSolit
2011-04-21Bug 650593: Bugzilla crashes when the database is gone, even when ↵Frédéric Buclin1-3/+4
shutdownhtml is set r=justdave a=LpSolit
2011-04-20Add missing entry in POD for Bugzilla::WebService::Group, see bug 469195Frédéric Buclin1-0/+2
2011-04-17Bug 469195: New WebService function, Group.create.Carole Pryfer2-1/+149
r=mkanat, a=mkanat
2011-04-08Improve the POD for Product.create.Max Kanat-Alexander1-11/+17
https://bugzilla.mozilla.org/show_bug.cgi?id=469193
2011-04-07Bug 469193: WebService function to create new products (Product.create)Julien Heyman2-0/+124
r/a=mkanat
2011-04-06Bug 313726: When searching by relative dates, don't make them go to theMichael J Tosh1-15/+33
"beginning" of the specified period unless the user explicitly requests that. r=mkanat, a=mkanat
2011-04-05Bug 646209: Offer "UTC" as a timezone option in General PreferencesTom Dickson1-0/+1
r=mkanat, a=mkanat