104 Commits

Author SHA1 Message Date
bzrmirror%bugzilla.org
240a81000c Bug 1068521: "Use of uninitialized value" warnings
r=glob,a=glob


git-svn-id: svn://10.0.0.236/trunk@265578 18797224-902f-48f8-a5cc-f745e15eee43
2014-09-18 09:15:46 +00:00
bzrmirror%bugzilla.org
84c5be6eb5 Bug 996893: Perl 5.18 and newer throw tons of warnings about deprecated modules
r=dkl a=sgreen


git-svn-id: svn://10.0.0.236/trunk@265490 18797224-902f-48f8-a5cc-f745e15eee43
2014-08-13 11:01:07 +00:00
bzrmirror%bugzilla.org
edbf96658e Bug 1032323: canonicalise_query() should omit parameters with empty values so generated URLs are shorter
r=glob,a=sgreen


git-svn-id: svn://10.0.0.236/trunk@265453 18797224-902f-48f8-a5cc-f745e15eee43
2014-07-10 06:45:46 +00:00
bzrmirror%bugzilla.org
550894d547 Bug 713926: (CVE-2014-1517) [SECURITY] Login form lacks CSRF protection
r=dkl a=justdave


git-svn-id: svn://10.0.0.236/trunk@265332 18797224-902f-48f8-a5cc-f745e15eee43
2014-04-17 16:30:48 +00:00
bzrmirror%bugzilla.org
71bc0fd474 Bug 543432: [PostgreSQL] Crash when typing a string in combination with a numeric field
r=dkl a=sgreen


git-svn-id: svn://10.0.0.236/trunk@265162 18797224-902f-48f8-a5cc-f745e15eee43
2014-01-02 23:15:43 +00:00
bzrmirror%bugzilla.org
0db274e851 Bug 938596 - Add hook for modifying HTTP headers. r=LpSolit.
git-svn-id: svn://10.0.0.236/trunk@265125 18797224-902f-48f8-a5cc-f745e15eee43
2013-11-27 18:15:47 +00:00
bzrmirror%bugzilla.org
d77972f21d Bug 851267: Bugzilla times out when a user has several thousands of votes
r=dkl a=justdave


git-svn-id: svn://10.0.0.236/trunk@265041 18797224-902f-48f8-a5cc-f745e15eee43
2013-09-27 22:47:58 +00:00
bzrmirror%bugzilla.org
e1ba79275b Bug 569177 - Add support for eTag for WebServices
r/a=glob


git-svn-id: svn://10.0.0.236/trunk@264967 18797224-902f-48f8-a5cc-f745e15eee43
2013-08-13 18:58:07 +00:00
bzrmirror%bugzilla.org
c9f2d293ab Bug 868330 - Password creation directions incomplete
r=sgreen, a=sgreen


git-svn-id: svn://10.0.0.236/trunk@264957 18797224-902f-48f8-a5cc-f745e15eee43
2013-08-13 18:47:50 +00:00
bzrmirror%bugzilla.org
3a5d0be0fe Bug 569177 - Add support for eTag for WebServices
r/a=glob


git-svn-id: svn://10.0.0.236/trunk@264956 18797224-902f-48f8-a5cc-f745e15eee43
2013-08-13 18:46:35 +00:00
mkanat%bugzilla.org
59d81c3300 Bug 866927 - Enhance Bugzilla WebServices to allow data access using REST
r=glob,a=justdave


git-svn-id: svn://10.0.0.236/trunk@264889 18797224-902f-48f8-a5cc-f745e15eee43
2013-07-12 21:00:57 +00:00
mkanat%bugzilla.org
d7fb30d846 Bug 413851 - add CSV output option to request lists. r=LpSolit.
git-svn-id: svn://10.0.0.236/trunk@264615 18797224-902f-48f8-a5cc-f745e15eee43
2013-01-02 17:16:27 +00:00
mkanat%bugzilla.org
1764f0df90 Bug 787668: Use |use parent| instead of |use base|
r/a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@264508 18797224-902f-48f8-a5cc-f745e15eee43
2012-12-01 01:31:00 +00:00
mkanat%bugzilla.org
f6af30d002 Bug 816747 - Add dummy POD for unPODded methods.
r/a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@264502 18797224-902f-48f8-a5cc-f745e15eee43
2012-11-30 14:45:59 +00:00
mkanat%bugzilla.org
8e47ba629a Bug 787529: Use |use 5.10.1| everywhere
r=wicked a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@264195 18797224-902f-48f8-a5cc-f745e15eee43
2012-09-01 21:45:59 +00:00
mkanat%bugzilla.org
d40bf68cd1 Bug 782856: Remove the obsolete BEGIN block in Bugzilla/CGI.pm
r=glob a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@264170 18797224-902f-48f8-a5cc-f745e15eee43
2012-08-29 14:46:08 +00:00
mkanat%bugzilla.org
30816230e2 Fix more bustage caused by Bug 772953
git-svn-id: svn://10.0.0.236/trunk@264168 18797224-902f-48f8-a5cc-f745e15eee43
2012-08-29 05:01:27 +00:00
mkanat%bugzilla.org
82bda8dd77 Fix bustage caused by Bug 772953
git-svn-id: svn://10.0.0.236/trunk@264167 18797224-902f-48f8-a5cc-f745e15eee43
2012-08-29 05:00:48 +00:00
mkanat%bugzilla.org
3d7d902c40 Bug 772953: Remove the token from buglist urls
r=dkl, a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@264163 18797224-902f-48f8-a5cc-f745e15eee43
2012-08-28 15:30:47 +00:00
mkanat%bugzilla.org
25984acb6b Bug 783386: Removing PATH_INFO prevents Bugzilla from working correctly with IIS
r=dkl a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@264147 18797224-902f-48f8-a5cc-f745e15eee43
2012-08-17 15:15:46 +00:00
mkanat%bugzilla.org
e26a6812bd Bug 771100: Unable to attach a file to a bug with perl 5.16
r=dkl a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@264143 18797224-902f-48f8-a5cc-f745e15eee43
2012-08-15 19:30:45 +00:00
mkanat%bugzilla.org
b54628bc0a Bug 779088 - Allow extensions to whitelist PATH_INFO
r/a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@264133 18797224-902f-48f8-a5cc-f745e15eee43
2012-08-10 21:00:44 +00:00
mkanat%bugzilla.org
dacb5c6725 Fix typo in a comment
git-svn-id: svn://10.0.0.236/trunk@264058 18797224-902f-48f8-a5cc-f745e15eee43
2012-07-24 14:17:17 +00:00
mkanat%bugzilla.org
22cfe5b291 Bug 243764: Remove the Path-Info information from the URL as it causes unexpected behaviors
r=dkl a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@264057 18797224-902f-48f8-a5cc-f745e15eee43
2012-07-24 14:16:35 +00:00
mkanat%bugzilla.org
1ae108ba0c Bug 761199: buglist.cgi enters in an infinite loop if called without arguments and the user is logged in
r=timello a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@263912 18797224-902f-48f8-a5cc-f745e15eee43
2012-06-07 19:30:45 +00:00
mkanat%bugzilla.org
2f16da14cb Bug 761331: Remove our customized multipart_init() method
r=glob a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@263898 18797224-902f-48f8-a5cc-f745e15eee43
2012-06-05 14:30:42 +00:00
mkanat%bugzilla.org
049206fa69 Bug 671612: Send "X-Content-Type-Options: nosniff" with every response
r/a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@263870 18797224-902f-48f8-a5cc-f745e15eee43
2012-05-29 15:16:07 +00:00
mkanat%bugzilla.org
3e4f37dad9 Bug 730670: Do not redirect in buglist.cgi to improve performance
r=glob a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@263490 18797224-902f-48f8-a5cc-f745e15eee43
2012-02-27 14:02:13 +00:00
mkanat%bugzilla.org
3b5e8524aa Bug 680131: Replace the MPL 1.1 license by the MPL 2.0 one in all files, and add it to files which miss one
r=kiko r=mkanat r=mrbball a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@263258 18797224-902f-48f8-a5cc-f745e15eee43
2012-01-11 22:48:45 +00:00
mkanat%bugzilla.org
537ef5d3ce Bug 629326: Make it simpler to check ETags
r/a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@263197 18797224-902f-48f8-a5cc-f745e15eee43
2011-12-26 13:16:27 +00:00
mkanat%bugzilla.org
436efca340 Bug 680771 - Send X-XSS-Protection header for XSS prevention/blocking
[r=mkanat a=LpSolit]


git-svn-id: svn://10.0.0.236/trunk@263093 18797224-902f-48f8-a5cc-f745e15eee43
2011-11-21 22:31:20 +00:00
mkanat%bugzilla.org
a7d5a2e186 Bug 647649: Change the old "Boolean Charts" UI into the new AND/OR
"Custom Search" UI.
r=timello, a=mkanat


git-svn-id: svn://10.0.0.236/trunk@262354 18797224-902f-48f8-a5cc-f745e15eee43
2011-05-31 16:32:47 +00:00
mkanat%bugzilla.org
0042617522 Bug 655847: Accessing buglist.cgi throws: Use of inherited AUTOLOAD for non-method Bugzilla::CGI::SERVER_PUSH() is deprecated at Bugzilla/CGI.pm line 233
r/a=mkanat


git-svn-id: svn://10.0.0.236/trunk@262349 18797224-902f-48f8-a5cc-f745e15eee43
2011-05-29 13:02:15 +00:00
mkanat%bugzilla.org
aca412ae49 Bug 652625 - Empty queries still get run because the list_id parameter is added to them
r/a=mkanat


git-svn-id: svn://10.0.0.236/trunk@262286 18797224-902f-48f8-a5cc-f745e15eee43
2011-05-04 22:03:57 +00:00
mkanat%bugzilla.org
da5eb7494c Bug 637977: Re-setup CGI.pm global variables on every request under mod_perl,
which prevents CGI.pm from generating URLs with semicolons in them instead
of ampersands.
r=glob, a=mkanat


git-svn-id: svn://10.0.0.236/trunk@262040 18797224-902f-48f8-a5cc-f745e15eee43
2011-03-14 05:18:26 +00:00
mkanat%bugzilla.org
4555545f11 Remove unused variable, per my review comment
git-svn-id: svn://10.0.0.236/trunk@261699 18797224-902f-48f8-a5cc-f745e15eee43
2010-12-28 02:16:43 +00:00
mkanat%bugzilla.org
46d29e85bf Bug 615574: Make every search done by buglist.cgi create a list_id, so that
even Saved Searches get "last list" support.
r=LpSolit, a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@261694 18797224-902f-48f8-a5cc-f745e15eee43
2010-12-27 22:21:47 +00:00
mkanat%bugzilla.org
e1754db844 Bug 475894 - Send the 'X-Frame-Options: SAMEORIGIN' header to help protect against clickjacking.
[r=mkanat a=mkanat]


git-svn-id: svn://10.0.0.236/trunk@261679 18797224-902f-48f8-a5cc-f745e15eee43
2010-12-18 08:48:34 +00:00
mkanat%bugzilla.org
28236b4ff5 Bug 607138: Don't send the Strict-Transport-Security header for the
attachment_base.
r=LpSolit, a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@261628 18797224-902f-48f8-a5cc-f745e15eee43
2010-12-06 16:03:52 +00:00
mkanat%bugzilla.org
b40f0c6830 Bug 600464: (CVE-2010-3172) [SECURITY] Content/Header injection due to non-random multipart/x-mixed-replace boundary
r=mkanat a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@261506 18797224-902f-48f8-a5cc-f745e15eee43
2010-11-02 23:37:45 +00:00
mkanat%bugzilla.org
69002b97f4 Bug 607966: Use of qw(...) as parentheses is deprecated since Perl 5.13.5
r=gerv a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@261490 18797224-902f-48f8-a5cc-f745e15eee43
2010-10-28 15:35:02 +00:00
mkanat%bugzilla.org
ee495843f0 Bug 600475 - Support the 'includeSubDomains' flag as an option for the 'Strict-Transport-Security' advanced option in order to protect subdomains.
[r=glob a=mkanat]


git-svn-id: svn://10.0.0.236/trunk@261301 18797224-902f-48f8-a5cc-f745e15eee43
2010-09-29 19:03:27 +00:00
mkanat%bugzilla.org
dd4e3e53f2 Bug 594990: Make the Strict-Transport-Security HTTP header only be sent
if a particular parameter is enabled.
r=glob, a=mkanat


git-svn-id: svn://10.0.0.236/trunk@261289 18797224-902f-48f8-a5cc-f745e15eee43
2010-09-28 03:32:33 +00:00
mkanat%bugzilla.org
c634e6e71e Bug 398308: Make Search.pm take a hashref for its "params" argument
instead of taking a CGI object.
r=mkanat, a=mkanat (module owner)


git-svn-id: svn://10.0.0.236/trunk@260794 18797224-902f-48f8-a5cc-f745e15eee43
2010-07-16 03:01:42 +00:00
mkanat%bugzilla.org
d9437423f7 Bug 521416: Some web servers fail to set the QUERY_STRING parameter
r/a=mkanat


git-svn-id: svn://10.0.0.236/trunk@260786 18797224-902f-48f8-a5cc-f745e15eee43
2010-07-15 17:34:25 +00:00
mkanat%bugzilla.org
c6d6540cb3 Bug 575097 - "New STS header in Bugzilla::CGI causes malformed header error due to lack of Content-Type naming"
[r=LpSolit a=LpSolit]


git-svn-id: svn://10.0.0.236/trunk@260589 18797224-902f-48f8-a5cc-f745e15eee43
2010-06-27 19:31:31 +00:00
mkanat%bugzilla.org
55eca11ffc Bug 562475 - "Bugzilla should use strict-transport-security (STS) headers"
[r=mkanat a=mkanat]


git-svn-id: svn://10.0.0.236/trunk@260585 18797224-902f-48f8-a5cc-f745e15eee43
2010-06-26 01:16:25 +00:00
mkanat%bugzilla.org
2f60aceddb Bug 574166: Make clean_search_url take into account the new email3 fields
from query.cgi
r=glob, a=mkanat


git-svn-id: svn://10.0.0.236/trunk@260556 18797224-902f-48f8-a5cc-f745e15eee43
2010-06-24 17:03:04 +00:00
mkanat%bugzilla.org
6add188323 Bug 24896: Make the First/Last/Prev/Next navigation on bugs work with
multiple buglists at once
r=glob, a=mkanat


git-svn-id: svn://10.0.0.236/trunk@260472 18797224-902f-48f8-a5cc-f745e15eee43
2010-06-16 01:46:23 +00:00
mkanat%bugzilla.org
de34e60cb7 Bug 561296: A fix allowing updating a field value's name when it is
the default value
r=LpSolit, a=LpSolit


git-svn-id: svn://10.0.0.236/trunk@260309 18797224-902f-48f8-a5cc-f745e15eee43
2010-05-14 14:34:34 +00:00