From faac5e70ce92133773a2043619f9f23870beb14b Mon Sep 17 00:00:00 2001 From: Dave Lawrence Date: Mon, 28 Nov 2011 11:38:31 -0500 Subject: Bug 704308 - CSRF vulnerability in post_bug.cgi allows possible unauthorized bug creation --- .../bug/create/confirm-create-dupe.html.tmpl | 57 ---------------------- 1 file changed, 57 deletions(-) delete mode 100644 template/en/default/bug/create/confirm-create-dupe.html.tmpl (limited to 'template/en/default') diff --git a/template/en/default/bug/create/confirm-create-dupe.html.tmpl b/template/en/default/bug/create/confirm-create-dupe.html.tmpl deleted file mode 100644 index b0a5cddda..000000000 --- a/template/en/default/bug/create/confirm-create-dupe.html.tmpl +++ /dev/null @@ -1,57 +0,0 @@ -[%# The contents of this file are subject to the Mozilla Public - # License Version 1.1 (the "License"); you may not use this file - # except in compliance with the License. You may obtain a copy of - # the License at http://www.mozilla.org/MPL/ - # - # Software distributed under the License is distributed on an "AS - # IS" basis, WITHOUT WARRANTY OF ANY KIND, either express or - # implied. See the License for the specific language governing - # rights and limitations under the License. - # - # The Original Code is the Bugzilla Bug Tracking System. - # - # The Initial Developer of the Original Code is Olav Vitters. - # - # Contributor(s): Olav Vitters - #%] - -[%# INTERFACE: - # bugid: integer. ID of the bug previously used to create a bug. - # allow_override: boolean int. Is 1 if the user may submit the bug again. - #%] - -[% PROCESS "global/field-descs.none.tmpl" %] - -[% PROCESS global/header.html.tmpl - title = "Already filed $terms.bug" -%] - -[% USE Bugzilla %] - - - - - -
- - You already used the form to file [% "$terms.bug $bugid" FILTER bug_link(bugid) FILTER none %]. - -
- -

You are highly encouraged to visit [% "$terms.bug $bugid" -FILTER bug_link(bugid) FILTER none %].

- -[% IF allow_override %] -

If you are sure you used the same form to submit a new [% terms.bug %], - click 'File [% terms.bug %] again'.

- -

- [% PROCESS "global/hidden-fields.html.tmpl" - exclude="^(Bugzilla_login|Bugzilla_password|ignore_token)$" %] - - -
-[% END %] - -[% PROCESS global/footer.html.tmpl %] -- cgit v1.2.3-24-g4f1b