mkanat%bugzilla.org
9be0b6a917
Bug 606511 - Bug.search should allow use of include_fields and exclude_fields
...
r/a=mkanat
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261921 18797224-902f-48f8-a5cc-f745e15eee43
2011-02-11 22:03:34 +00:00
mkanat%bugzilla.org
3dcad3da1a
Fix a POD compilation error.
...
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261914 18797224-902f-48f8-a5cc-f745e15eee43
2011-02-11 01:06:30 +00:00
mkanat%bugzilla.org
f891421dc0
Fix the POD of Bug.add_attachment to reflect that it now automatically
...
picks the content_type of text/plain when you set is_patch to true.
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261913 18797224-902f-48f8-a5cc-f745e15eee43
2011-02-11 01:04:58 +00:00
mkanat%bugzilla.org
e9f214ef14
Bug 633041: Add an error code for zero_length_file and fill in content_type
...
for patches when content_type is missing in Bug.add_attachment in the
WebService
r=LpSolit, a=LpSolit
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261912 18797224-902f-48f8-a5cc-f745e15eee43
2011-02-11 00:33:27 +00:00
mkanat%bugzilla.org
688917d8bb
Bug 630750: Don't let "." and "lib" get into @INC when running under
...
mod_perl
r=dkl, a=mkanat
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261891 18797224-902f-48f8-a5cc-f745e15eee43
2011-02-03 21:49:37 +00:00
mkanat%bugzilla.org
88ff8f368a
Bug 461014 - How to create a private attachment in enter_bug.cgi not obvious
...
r=reed,a=LpSolit
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261883 18797224-902f-48f8-a5cc-f745e15eee43
2011-02-01 16:03:27 +00:00
mkanat%bugzilla.org
7d81e97f5d
Bug 629007: Example in quicksearch priority shortcut is incorrect
...
r/a=mkanat
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261879 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-31 23:05:07 +00:00
mkanat%bugzilla.org
94c2468a8b
Bug 622679 - Autocomplete suggests inactive/disabled accounts as matches
...
r/a=mkanat
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261854 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-27 22:16:52 +00:00
mkanat%bugzilla.org
1a8bb7bf49
Allow extensions to alter quicksearch terms and search format. r=mkanat.
...
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261850 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-27 13:03:40 +00:00
mkanat%bugzilla.org
219ce259e5
Fix missing documentation. r=mkanat.
...
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261847 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-27 12:05:21 +00:00
mkanat%bugzilla.org
bf6030bf6a
Add diffs parameter to bugmail_recipients hook. r=mkanat.
...
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261843 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-27 10:50:24 +00:00
mkanat%bugzilla.org
658b8a5ca1
Bump the version number post-release.
...
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261828 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-25 02:06:03 +00:00
mkanat%bugzilla.org
feb3bab1bd
Bump the version number for 4.0rc2.
...
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261818 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-24 23:43:34 +00:00
mkanat%bugzilla.org
ebc0ab6d89
Bug 619594: (CVE-2010-4568) [SECURITY] Improve the randomness of
...
generate_random_password, to protect against an account compromise issue
and other critical vulnerabilities.
r=LpSolit, a=LpSolit
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261817 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-24 22:07:59 +00:00
mkanat%bugzilla.org
010d9932db
Bug 621105 - [SECURITY] Voting lacks CSRF protection
...
r=mkanat,a=LpSolit
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261814 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-24 19:53:26 +00:00
mkanat%bugzilla.org
658daf014e
Bug 619588: (CVE-2010-4567) [SECURITY] Safety checks that disallow clicking for javascript: or data: URLs in the URL field can be evaded with prefixed whitespace
...
and
Bug 628034: (CVE-2011-0048) [SECURITY] For not-logged-in users, the URL field doesn't safeguard against javascript: or data: URLs
r=dkl a=LpSolit
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261813 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-24 18:53:58 +00:00
mkanat%bugzilla.org
e75fbf0672
Bug 621572: (CVE-2010-4572) [SECURITY] chart.cgi vulnerable to header-injection due to use of |print "Location:"| instead of $cgi->redirect
...
[r=mkanat a=LpSolit]
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261812 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-24 18:31:15 +00:00
mkanat%bugzilla.org
5facb5e3fd
Bug 619648: (CVE-2010-4570) [SECURITY] XSS via summary in "possible duplicates" table due to lack of encoding by YUI
...
[r=mkanat a=LpSolit]
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261811 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-24 18:25:20 +00:00
mkanat%bugzilla.org
bae2d718df
Bug 619637: (CVE-2010-4569) [SECURITY] XSS in user autocomplete due to lack of encoding by YUI
...
[r=mkanat r=dkl a=LpSolit]
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261810 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-24 18:23:31 +00:00
mkanat%bugzilla.org
b953b8067d
Bug 621110: [SECURITY] Quips (adding/approving/deleting) lacks CSRF protection
...
r=dkl a=LpSolit
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261806 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-24 17:38:25 +00:00
mkanat%bugzilla.org
99400b6c80
Bug 621108: [SECURITY] Creating/editing charts lacks CSRF protection
...
r=dkl a=LpSolit
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261805 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-24 17:27:06 +00:00
mkanat%bugzilla.org
a09da32128
Bug 621107: [SECURITY] Sanity checking lacks CSRF protection
...
r=dkl a=LpSolit
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261804 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-24 17:20:55 +00:00
mkanat%bugzilla.org
51a8aa1a14
Bug 621090: [SECURITY] Adding saved searches lacks CSRF protection
...
r=mkanat a=justdave
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261803 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-24 17:02:20 +00:00
mkanat%bugzilla.org
eb7ffcf602
An optional module was accidentally listed in the "required" section of the
...
release notes.
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261798 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-24 04:21:54 +00:00
mkanat%bugzilla.org
33ad90f4c6
Bug 627910: Update Release Notes for Bugzilla 4.0rc2
...
r=reed
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261797 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-24 04:20:14 +00:00
mkanat%bugzilla.org
e021804d59
Bug 621128 - Remove trailing whitespace from '<div id="view_disabled" >'
...
[r=reed a=LpSolit]
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261795 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-22 21:33:53 +00:00
mkanat%bugzilla.org
32842732f6
Bug 621109: Column changing lacks CSRF protection
...
r=dkl a=mkanat
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261792 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-22 17:33:23 +00:00
mkanat%bugzilla.org
547b712918
Bug 627854: Add 'form' hook to create-guided.html.tmpl similar to create.html.tmpl
...
r/a=mkanat
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261785 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-21 21:50:19 +00:00
mkanat%bugzilla.org
ee59edf683
Bug 591165: (CVE-2010-4411) [SECURITY] Bump minimum required version of CGI.pm to v3.51 in order to address header injection vulnerability.
...
[r=mkanat a=mkanat]
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261784 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-21 21:22:55 +00:00
mkanat%bugzilla.org
d08915c9d6
Bug 627660 - Rename "Send" button on final create account page to "Create", as nothing is actually sent.
...
[r=mkanat a=mkanat]
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261783 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-21 21:03:23 +00:00
mkanat%bugzilla.org
970d3469ec
Bug 626292 - "Make description private" checkbox should set bz_private class on the comment box
...
r/a=mkanat
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261782 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-21 06:48:14 +00:00
mkanat%bugzilla.org
6e519349e3
Bug 623608 - Add intro/outro extension hooks to footer.html.tmpl
...
r/a=mkanat
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261780 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-21 05:19:52 +00:00
mkanat%bugzilla.org
88509a0a82
Bug 625190: Typo and Missing FK in Bugzilla::DB::Schema
...
r/a=mkanat
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261748 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-15 00:19:58 +00:00
mkanat%bugzilla.org
95a2e64ef9
Bug 618841: Bare word "bug" in release notes
...
r=dkl a=LpSolit
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261732 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-09 14:36:48 +00:00
mkanat%bugzilla.org
2b21720865
Bug 622204: Bugzilla::Migrate crashes trying to create bugs with resolutions
...
r/a=mkanat
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261731 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-09 14:35:14 +00:00
mkanat%bugzilla.org
3567f8fe5a
Bug 255524: The duplicates table inherits no CSS classes when viewed in simple format
...
r=dkl a=LpSolit
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261728 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-07 12:50:04 +00:00
mkanat%bugzilla.org
31ef49da46
Document how to add user settings. r,a=mkanat.
...
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261709 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-05 17:03:49 +00:00
mkanat%bugzilla.org
feae4816d9
Bug 622822 - add additional_links hook to front page. r,a=mkanat.
...
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261707 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-05 10:50:18 +00:00
mkanat%bugzilla.org
560361c5b7
Bug 622437: Remove 'colchange_columns' hook from the Example extension
...
r/a=LpSolit
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261705 18797224-902f-48f8-a5cc-f745e15eee43
2011-01-02 20:04:09 +00:00
mkanat%bugzilla.org
f6edf0720e
Bug 622105 - Misspelling in setting_info_invalid error message
...
r/a=LpSolit
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261703 18797224-902f-48f8-a5cc-f745e15eee43
2010-12-30 17:03:17 +00:00
mkanat%bugzilla.org
59edbe7e37
Bug 621597: Make mod_perl.pl do the INC configuration itself, instead of
...
requiring it to be in httpd.conf.
r=dkl, a=mkanat
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261700 18797224-902f-48f8-a5cc-f745e15eee43
2010-12-28 23:04:08 +00:00
mkanat%bugzilla.org
33c20ff8a1
Bug 618844: Make clear that the Apache module must be enabled in release notes
...
r/a=mkanat
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261698 18797224-902f-48f8-a5cc-f745e15eee43
2010-12-27 22:51:56 +00:00
mkanat%bugzilla.org
d7381f30ef
Bug 618842: Enclose checksetup.pl between <kbd> and </kbd> tags in templates
...
r/a=mkanat
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261697 18797224-902f-48f8-a5cc-f745e15eee43
2010-12-27 22:50:19 +00:00
mkanat%bugzilla.org
ebe08de9c3
Bug 599539: Update the mod_perl.pl code for Apache2::SizeLimit 0.93
...
r=glob, a=mkanat
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261696 18797224-902f-48f8-a5cc-f745e15eee43
2010-12-27 22:33:31 +00:00
mkanat%bugzilla.org
da79192243
Bug 615574: Make every search done by buglist.cgi create a list_id, so that
...
even Saved Searches get "last list" support.
r=LpSolit, a=LpSolit
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261694 18797224-902f-48f8-a5cc-f745e15eee43
2010-12-27 22:21:47 +00:00
mkanat%bugzilla.org
f935696458
Bug 603762: Vertical margins between header, footer, and content are not consistent
...
r=pyrzak a=mkanat
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261693 18797224-902f-48f8-a5cc-f745e15eee43
2010-12-27 22:20:12 +00:00
mkanat%bugzilla.org
cb16644b08
Bug 588013: Fix typo
...
r/a=mkanat
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261692 18797224-902f-48f8-a5cc-f745e15eee43
2010-12-27 22:05:20 +00:00
mkanat%bugzilla.org
30a7327010
Bug 620796: Make Bugzilla::Migrate skip abnormal fields when doing
...
create_legal_values (otherwise it tried to create Components there, when
it should not have).
r=mkanat, a=mkanat (module owner)
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261683 18797224-902f-48f8-a5cc-f745e15eee43
2010-12-22 00:03:24 +00:00
mkanat%bugzilla.org
edf9ec9bc0
Bug 475894 - Send the 'X-Frame-Options: SAMEORIGIN' header to help protect against clickjacking.
...
[r=mkanat a=mkanat]
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261679 18797224-902f-48f8-a5cc-f745e15eee43
2010-12-18 08:48:34 +00:00
mkanat%bugzilla.org
7d5f45fe22
Bug 313583: Relnote that long_list.cgi, showattachment.cgi and xml.cgi will be removed from Bugzilla 4.2.
...
They are all deprecated since Bugzilla 2.19.
r/a=mkanat
git-svn-id: svn://10.0.0.236/branches/BUGZILLA-4_0-BRANCH@261664 18797224-902f-48f8-a5cc-f745e15eee43
2010-12-15 23:19:08 +00:00