]> git.ipfire.org Git - thirdparty/bugzilla.git/log
thirdparty/bugzilla.git
14 years agoBug 666781 - t/008filter.t should not require filterexceptions.pl when one does not...
David Lawrence [Tue, 28 Jun 2011 20:53:21 +0000 (16:53 -0400)] 
Bug 666781 - t/008filter.t should not require filterexceptions.pl when one does not exist especially with extensions
r/a=mkanat

14 years agoBug 658929 - User autocomplete is very slow when there are lots of users in the profi...
David Lawrence [Wed, 15 Jun 2011 19:33:22 +0000 (15:33 -0400)] 
Bug 658929 - User autocomplete is very slow when there are lots of users in the profiles table
r=glob, a=mkanat

14 years agoBug 656769: Fix bz_fireEvent for IE9
Byron Jones [Tue, 14 Jun 2011 09:58:22 +0000 (17:58 +0800)] 
Bug 656769: Fix bz_fireEvent for IE9
r=mkanat, a=mkanat

14 years agoBug 663696: Remove 'config' hook example from the Example extension
Tiago Mello [Mon, 13 Jun 2011 01:49:48 +0000 (22:49 -0300)] 
Bug 663696: Remove 'config' hook example from the Example extension
r/a=mkanat

14 years agoBug 663208: Recursive "Verify new product details" page when attempting to move multi...
Frédéric Buclin [Sat, 11 Jun 2011 01:31:58 +0000 (03:31 +0200)] 
Bug 663208: Recursive "Verify new product details" page when attempting to move multiple bugs to another product
r/a=mkanat

14 years agoBug 649281 - Add ircs:// to url protocols for external links in comment
Matt Selsky [Mon, 6 Jun 2011 20:20:28 +0000 (16:20 -0400)] 
Bug 649281 - Add ircs:// to url protocols for external links in comment
author=Matt Selsky, r=dkl, a=LpSolit

14 years agoBug 659816: Fix url_decoding of utf8 strings
Byron Jones [Mon, 30 May 2011 08:20:32 +0000 (16:20 +0800)] 
Bug 659816: Fix url_decoding of utf8 strings
r=mkanat, a=mkanat

14 years agoBug 659185: html_quote() escapes @ causing mailto links to not be processed
Frédéric Buclin [Tue, 24 May 2011 06:48:33 +0000 (08:48 +0200)] 
Bug 659185: html_quote() escapes @ causing mailto links to not be processed
r/a=mkanat

14 years agoBug 659124 - New template hook in bug/show-header.html.tmpl to allow manipulating...
David Lawrence [Mon, 23 May 2011 21:33:52 +0000 (17:33 -0400)] 
Bug 659124 - New template hook in bug/show-header.html.tmpl to allow manipulating header information for show_bug.cgi
r/a=mkanat

14 years agoBug 658905: flag_handler() gets arguments in the wrong order in importxml.pl
Frédéric Buclin [Mon, 23 May 2011 17:00:37 +0000 (19:00 +0200)] 
Bug 658905: flag_handler() gets arguments in the wrong order in importxml.pl
r=glob a=LpSolit

14 years agoBug 657707: importxml.pl crashes when importing keywords
Frédéric Buclin [Mon, 23 May 2011 16:57:14 +0000 (18:57 +0200)] 
Bug 657707: importxml.pl crashes when importing keywords
r=glob a=LpSolit

14 years agoBug 648096: UWinnipeg (theory PPM repo) instructions are not necessary with recent...
Frédéric Buclin [Sun, 22 May 2011 22:48:48 +0000 (00:48 +0200)] 
Bug 648096: UWinnipeg (theory PPM repo) instructions are not necessary with recent ActiveState releases
r=mkanat a=LpSolit

14 years agoBug 658056 - Improper HTML on show_bug.cgi page when user is logged out
David Lawrence [Wed, 18 May 2011 22:03:38 +0000 (18:03 -0400)] 
Bug 658056 - Improper HTML on show_bug.cgi page when user is logged out
r/a=LpSolit

12 years agoBug 653659 - Cannot shrink-back attachment description textarea on detailed edit
David Lawrence [Tue, 7 May 2013 21:08:55 +0000 (17:08 -0400)] 
Bug 653659 - Cannot shrink-back attachment description textarea on detailed edit
r/a=mkanat

14 years agoBug 653341: Bug.create() fails to error out if an invalid group is passed
Frédéric Buclin [Fri, 6 May 2011 20:44:53 +0000 (22:44 +0200)] 
Bug 653341: Bug.create() fails to error out if an invalid group is passed
r/a=mkanat

12 years agoBug 654833 - New hook to add additional attachment action links to the attachment...
David Lawrence [Sat, 4 May 2013 18:47:42 +0000 (14:47 -0400)] 
Bug 654833 - New hook to add additional attachment action links to the attachment details page
r/a=mkanat

12 years agoBug 652625 - Empty queries still get run because the list_id parameter is added to...
David Lawrence [Fri, 3 May 2013 23:16:58 +0000 (19:16 -0400)] 
Bug 652625 - Empty queries still get run because the list_id parameter is added to them
r/a=mkanat

14 years agoBug 653406: fix escaping of url vars in error messages
Byron Jones [Fri, 29 Apr 2011 05:43:11 +0000 (13:43 +0800)] 
Bug 653406: fix escaping of url vars in error messages
r=LpSolit, a=LpSolit

14 years agoBug 653404: Misleading error message when file to be attached is not readable by...
Frédéric Buclin [Thu, 28 Apr 2011 14:48:59 +0000 (16:48 +0200)] 
Bug 653404: Misleading error message when file to be attached is not readable by browser
r=glob a=LpSolit

14 years agoBump the version number post-release.
Max Kanat-Alexander [Thu, 28 Apr 2011 03:52:06 +0000 (20:52 -0700)] 
Bump the version number post-release.

14 years agoBump version number for 4.0.1. bugzilla-4.0.1 release-4.0.1
Max Kanat-Alexander [Thu, 28 Apr 2011 02:14:38 +0000 (19:14 -0700)] 
Bump version number for 4.0.1.

https://bugzilla.mozilla.org/show_bug.cgi?id=652474

14 years agoBug 538428: bugzilla.dtd is not valid
David Lawrence [Thu, 28 Apr 2011 01:40:21 +0000 (03:40 +0200)] 
Bug 538428: bugzilla.dtd is not valid
r/a=LpSolit

14 years agoBug 601524: Linkified bug summaries in buglists look weird
Byron Jones [Thu, 28 Apr 2011 01:16:34 +0000 (03:16 +0200)] 
Bug 601524: Linkified bug summaries in buglists look weird
r=pyrzak r=LpSolit a=LpSolit

14 years agoComment Bug 653273 - Release Notes for Bugzilla 4.0.1
Max Kanat-Alexander [Thu, 28 Apr 2011 00:22:09 +0000 (17:22 -0700)] 
Comment Bug 653273 - Release Notes for Bugzilla 4.0.1
r=LpSolit, a=mkanat

14 years agoBug 653263: XML bug files do not contain fields whose value evaluates to "false"
Frédéric Buclin [Wed, 27 Apr 2011 22:55:34 +0000 (00:55 +0200)] 
Bug 653263: XML bug files do not contain fields whose value evaluates to "false"
r/a=mkanat

14 years agoBug 581422: Improve the formatting of the attachment detail view.
Marc Schumann [Wed, 27 Apr 2011 22:24:26 +0000 (15:24 -0700)] 
Bug 581422: Improve the formatting of the attachment detail view.
r=pyrzak, r=mkanat, a=mkanat

14 years agoBug 646578: Make Math::Random::Secure fail to install if its dependencies
Max Kanat-Alexander [Wed, 27 Apr 2011 22:05:56 +0000 (15:05 -0700)] 
Bug 646578: Make Math::Random::Secure fail to install if its dependencies
don't install properly, when using install-module.pl.
r=glob, a=mkanat

14 years agoBug 640719: Allow creating bookmarkable templates without passing validation,
Max Kanat-Alexander [Wed, 27 Apr 2011 22:02:39 +0000 (15:02 -0700)] 
Bug 640719: Allow creating bookmarkable templates without passing validation,
on enter_bug.cgi
r=pyrzak, a=mkanat

14 years agoBug 643910: Email notifications from a blocked bug have the timestamp from its last...
Frédéric Buclin [Wed, 27 Apr 2011 21:47:50 +0000 (23:47 +0200)] 
Bug 643910: Email notifications from a blocked bug have the timestamp from its last change instead of the timestamp of the blocker
r=dkl a=LpSolit

14 years agoBug 652338: The "Component" multi-select field in the search page automatically scrol...
Frédéric Buclin [Tue, 26 Apr 2011 22:18:51 +0000 (00:18 +0200)] 
Bug 652338: The "Component" multi-select field in the search page automatically scrolls to the top of the list every time you select a component
r=mkanat a=LpSolit

14 years agoBug 562329: importxml.pl shouldn't set the resolution to INVALID when a closed bug...
Frédéric Buclin [Mon, 25 Apr 2011 19:03:14 +0000 (21:03 +0200)] 
Bug 562329: importxml.pl shouldn't set the resolution to INVALID when a closed bug has none
r/a=LpSolit

14 years agoBug 652405: All user fields (assignee, QA contact, Add CC) have the page title as...
Frédéric Buclin [Mon, 25 Apr 2011 16:43:58 +0000 (18:43 +0200)] 
Bug 652405: All user fields (assignee, QA contact, Add CC) have the page title as the "title" attribute
r=dkl a=LpSolit

14 years agoBug 650173: Make the Priority column on the buglist wide-enough to fit
Max Kanat-Alexander [Mon, 25 Apr 2011 00:12:59 +0000 (17:12 -0700)] 
Bug 650173: Make the Priority column on the buglist wide-enough to fit
the new default priority names
r=wicked, a=mkanat

14 years agoBug 652381: The "Show Votes" page is completely broken
Frédéric Buclin [Sun, 24 Apr 2011 23:14:31 +0000 (01:14 +0200)] 
Bug 652381: The "Show Votes" page is completely broken
r=mkanat a=LpSolit

14 years agoBug 652165: Flagmails have a wrong Date: value
Frédéric Buclin [Sat, 23 Apr 2011 17:21:04 +0000 (19:21 +0200)] 
Bug 652165: Flagmails have a wrong Date: value
r=wicked a=LpSolit

14 years agoFix typo in POD
Frédéric Buclin [Fri, 22 Apr 2011 15:35:45 +0000 (17:35 +0200)] 
Fix typo in POD

14 years agoBug 650593: Bugzilla crashes when the database is gone, even when shutdownhtml is set
Frédéric Buclin [Thu, 21 Apr 2011 01:23:40 +0000 (03:23 +0200)] 
Bug 650593: Bugzilla crashes when the database is gone, even when shutdownhtml is set
r=justdave a=LpSolit

14 years agoBug 641519: userAutocomplete is not compatible with Bugzilla configured to use "local...
Randy Reddekopp [Tue, 19 Apr 2011 13:27:54 +0000 (15:27 +0200)] 
Bug 641519: userAutocomplete is not compatible with Bugzilla configured to use "local" usernames
r/a=mkanat

14 years agoBug 646209: Offer "UTC" as a timezone option in General Preferences
Tom Dickson [Tue, 5 Apr 2011 00:07:54 +0000 (17:07 -0700)] 
Bug 646209: Offer "UTC" as a timezone option in General Preferences
r=mkanat, a=mkanat

14 years agoBug 468375: Add example code for hooks that were missing it.
rojanu [Mon, 4 Apr 2011 23:49:53 +0000 (16:49 -0700)] 
Bug 468375: Add example code for hooks that were missing it.
r=mkanat, a=mkanat

14 years agoBug 644334 - Add hook to Bugzilla::Install::Filesystem to allow extensions to create...
David Lawrence [Fri, 1 Apr 2011 04:01:47 +0000 (00:01 -0400)] 
Bug 644334 - Add hook to Bugzilla::Install::Filesystem to allow extensions to create files/directories/htaccess
r/a=mkanat

14 years agoBug 644285: Fix javascript errors while creating data sets
Byron Jones [Thu, 24 Mar 2011 12:28:04 +0000 (20:28 +0800)] 
Bug 644285: Fix javascript errors while creating data sets
r=dkl, a=mkanat

14 years agoBug 311392 - Typos and proper name of Red Hat's stuff
Matt Selsky [Tue, 22 Mar 2011 20:14:23 +0000 (16:14 -0400)] 
Bug 311392 - Typos and proper name of Red Hat's stuff
author=Matt Selksy <selsky_at_columbia_dot_edu>, r=dkl, a=mkanat

14 years agoBug 586011 - Change references to 'DarwinPorts' to 'MacPorts' (proper project name)
David Lawrence [Fri, 18 Mar 2011 21:03:00 +0000 (17:03 -0400)] 
Bug 586011 - Change references to 'DarwinPorts' to 'MacPorts' (proper project name)
author=Matt Selsky <selsky_at_columbia_dot_edu>, r=dkl,a=mkanat

14 years agoBug 640184: Use CSS3 border radius styles
Bjoern Jacke [Thu, 10 Mar 2011 07:43:13 +0000 (15:43 +0800)] 
Bug 640184: Use CSS3 border radius styles
r=glob, a=mkanat

14 years agoBug 634144: Make possible_duplicates work on PostgreSQL
Sam Morris [Tue, 1 Mar 2011 13:43:24 +0000 (05:43 -0800)] 
Bug 634144: Make possible_duplicates work on PostgreSQL
r=mkanat, a=mkanat

14 years agoBug 621925: Avoid 'used only once' warning when loading extensions
Byron Jones [Fri, 25 Feb 2011 04:45:57 +0000 (12:45 +0800)] 
Bug 621925: Avoid 'used only once' warning when loading extensions
r=mkanat, a=mkanat

14 years agoBug 634826: .htaccess file permissions are not set by checksetup.pl
Frédéric Buclin [Thu, 17 Feb 2011 22:34:25 +0000 (23:34 +0100)] 
Bug 634826: .htaccess file permissions are not set by checksetup.pl
r/a=mkanat

14 years agoBump the version number post-release.
Max Kanat-Alexander [Tue, 15 Feb 2011 18:13:39 +0000 (10:13 -0800)] 
Bump the version number post-release.

14 years agoBump version number for 4.0. bugzilla-4.0 release-4.0
Max Kanat-Alexander [Tue, 15 Feb 2011 17:14:49 +0000 (09:14 -0800)] 
Bump version number for 4.0.

https://bugzilla.mozilla.org/show_bug.cgi?id=633902

14 years agoBug 634243: Stop confirm-match.html.tmpl from sending extra, empty values for
Max Kanat-Alexander [Tue, 15 Feb 2011 16:20:06 +0000 (08:20 -0800)] 
Bug 634243: Stop confirm-match.html.tmpl from sending extra, empty values for
each field being confirmed. This fixes a bug where confirming would fail,
displaying a value with an extra comma at the end.
r=LpSolit, a=LpSolit

14 years agoRemove the "unknown_keyword" error, which is no longer used.
Max Kanat-Alexander [Tue, 15 Feb 2011 05:59:07 +0000 (21:59 -0800)] 
Remove the "unknown_keyword" error, which is no longer used.

https://bugzilla.mozilla.org/show_bug.cgi?id=490322

14 years agoBug 490322: Make "allwords" work with the keywords field, again.
Max Kanat-Alexander [Tue, 15 Feb 2011 05:44:32 +0000 (21:44 -0800)] 
Bug 490322: Make "allwords" work with the keywords field, again.
r=glob, a=mkanat

14 years agoBug 480044: Use dashes instead of colons to separate bug IDs in the BUGLIST cookie...
Frédéric Buclin [Mon, 14 Feb 2011 21:55:29 +0000 (22:55 +0100)] 
Bug 480044: Use dashes instead of colons to separate bug IDs in the BUGLIST cookie, because colons are HTML-escaped, making the cookie bigger than the 4k limit
r=mkanat a=LpSolit

14 years agoRemove tabs and fix some formatting in Bugzilla::DB::Pg.
Max Kanat-Alexander [Mon, 14 Feb 2011 20:29:42 +0000 (12:29 -0800)] 
Remove tabs and fix some formatting in Bugzilla::DB::Pg.

https://bugzilla.mozilla.org/show_bug.cgi?id=616981

14 years agoBug 633055: Make Bug.legal_values explicitly throw an error if you pass "undef"
Max Kanat-Alexander [Mon, 14 Feb 2011 20:17:04 +0000 (12:17 -0800)] 
Bug 633055: Make Bug.legal_values explicitly throw an error if you pass "undef"
for the "field" parameter
r=dkl, a=mkanat

14 years agoBug 616981: Make whine.pl work with PostgreSQL 8.4+ by fixing sql_string_until
Sam Morris [Mon, 14 Feb 2011 20:11:29 +0000 (12:11 -0800)] 
Bug 616981: Make whine.pl work with PostgreSQL 8.4+ by fixing sql_string_until
r=mkanat, a=mkanat

14 years agoBug 609538: Make the JSON-RPC interface support UTF-8 when a recent version
Max Kanat-Alexander [Mon, 14 Feb 2011 20:07:52 +0000 (12:07 -0800)] 
Bug 609538: Make the JSON-RPC interface support UTF-8 when a recent version
of LWP is installed
r=dkl, a=mkanat

14 years agoBug 603127: Make checksetup.pl require DBD::Pg 2.17.2 when using Pg 9.0 or
Max Kanat-Alexander [Mon, 14 Feb 2011 20:01:56 +0000 (12:01 -0800)] 
Bug 603127: Make checksetup.pl require DBD::Pg 2.17.2 when using Pg 9.0 or
later.
r=dkl, a=mkanat

14 years agoBug 633422: Fix the documentation for User.get's include_disabled parameter
Max Kanat-Alexander [Mon, 14 Feb 2011 07:42:09 +0000 (23:42 -0800)] 
Bug 633422: Fix the documentation for User.get's include_disabled parameter
and make User.get check that its required parameters are passed.
r=LpSolit, a=mkanat

14 years agoBug 633298 - Please add a 'form' hook to attachment/create.html.tmpl and attachment...
David Lawrence [Fri, 11 Feb 2011 21:55:32 +0000 (16:55 -0500)] 
Bug 633298 - Please add a 'form' hook to attachment/create.html.tmpl and attachment/edit.html.tmpl
r/a=mkanat

14 years agoBug 606511 - Bug.search should allow use of include_fields and exclude_fields
David Lawrence [Fri, 11 Feb 2011 21:51:23 +0000 (16:51 -0500)] 
Bug 606511 - Bug.search should allow use of include_fields and exclude_fields
r/a=mkanat

14 years agoFix a POD compilation error.
Max Kanat-Alexander [Fri, 11 Feb 2011 00:57:40 +0000 (16:57 -0800)] 
Fix a POD compilation error.

https://bugzilla.mozilla.org/show_bug.cgi?id=633041

14 years agoFix the POD of Bug.add_attachment to reflect that it now automatically
Max Kanat-Alexander [Fri, 11 Feb 2011 00:47:06 +0000 (16:47 -0800)] 
Fix the POD of Bug.add_attachment to reflect that it now automatically
picks the content_type of text/plain when you set is_patch to true.

https://bugzilla.mozilla.org/show_bug.cgi?id=633041

14 years agoBug 633041: Add an error code for zero_length_file and fill in content_type
Max Kanat-Alexander [Fri, 11 Feb 2011 00:28:31 +0000 (16:28 -0800)] 
Bug 633041: Add an error code for zero_length_file and fill in content_type
for patches when content_type is missing in Bug.add_attachment in the
WebService
r=LpSolit, a=LpSolit

14 years agoBug 630750: Don't let "." and "lib" get into @INC when running under
Max Kanat-Alexander [Thu, 3 Feb 2011 21:37:47 +0000 (13:37 -0800)] 
Bug 630750: Don't let "." and "lib" get into @INC when running under
mod_perl
r=dkl, a=mkanat

14 years agoBug 461014 - How to create a private attachment in enter_bug.cgi not obvious
David Lawrence [Tue, 1 Feb 2011 16:02:42 +0000 (11:02 -0500)] 
Bug 461014 - How to create a private attachment in enter_bug.cgi not obvious
r=reed,a=LpSolit

https://bugzilla.mozilla.org/show_bug.cgi?id=507211

14 years agoBug 629007: Example in quicksearch priority shortcut is incorrect
Graeme Coates [Mon, 31 Jan 2011 22:48:21 +0000 (23:48 +0100)] 
Bug 629007: Example in quicksearch priority shortcut is incorrect
r/a=mkanat

14 years agoBug 622679 - Autocomplete suggests inactive/disabled accounts as matches
David Lawrence [Thu, 27 Jan 2011 22:09:29 +0000 (17:09 -0500)] 
Bug 622679 - Autocomplete suggests inactive/disabled accounts as matches
r/a=mkanat

14 years agoAllow extensions to alter quicksearch terms and search format. r=mkanat.
Gervase Markham [Thu, 27 Jan 2011 12:57:15 +0000 (12:57 +0000)] 
Allow extensions to alter quicksearch terms and search format. r=mkanat.

https://bugzilla.mozilla.org/show_bug.cgi?id=621878

14 years agoFix missing documentation. r=mkanat.
Gervase Markham [Thu, 27 Jan 2011 12:00:21 +0000 (12:00 +0000)] 
Fix missing documentation. r=mkanat.

https://bugzilla.mozilla.org/show_bug.cgi?id=629321

14 years agoAdd diffs parameter to bugmail_recipients hook. r=mkanat.
Gervase Markham [Thu, 27 Jan 2011 10:38:04 +0000 (10:38 +0000)] 
Add diffs parameter to bugmail_recipients hook. r=mkanat.

https://bugzilla.mozilla.org/show_bug.cgi?id=616422

14 years agoBump the version number post-release.
Max Kanat-Alexander [Tue, 25 Jan 2011 01:48:09 +0000 (17:48 -0800)] 
Bump the version number post-release.

14 years agoBump the version number for 4.0rc2. bugzilla-4.0rc2 release-4.0rc2
Max Kanat-Alexander [Mon, 24 Jan 2011 23:30:54 +0000 (15:30 -0800)] 
Bump the version number for 4.0rc2.

14 years agoBug 619594: (CVE-2010-4568) [SECURITY] Improve the randomness of
Max Kanat-Alexander [Mon, 24 Jan 2011 21:47:25 +0000 (13:47 -0800)] 
Bug 619594: (CVE-2010-4568) [SECURITY] Improve the randomness of
generate_random_password, to protect against an account compromise issue
and other critical vulnerabilities.
r=LpSolit, a=LpSolit

https://bugzilla.mozilla.org/show_bug.cgi?id=621591

14 years agoBug 621105 - [SECURITY] Voting lacks CSRF protection
David Lawrence [Mon, 24 Jan 2011 19:33:04 +0000 (14:33 -0500)] 
Bug 621105 - [SECURITY] Voting lacks CSRF protection
r=mkanat,a=LpSolit

14 years agoBug 619588: (CVE-2010-4567) [SECURITY] Safety checks that disallow clicking for javas...
Frédéric Buclin [Mon, 24 Jan 2011 18:34:08 +0000 (19:34 +0100)] 
Bug 619588: (CVE-2010-4567) [SECURITY] Safety checks that disallow clicking for javascript: or data: URLs in the URL field can be evaded with prefixed whitespace

and

Bug 628034: (CVE-2011-0048) [SECURITY] For not-logged-in users, the URL field doesn't safeguard against javascript: or data: URLs

r=dkl a=LpSolit

14 years agoBug 621572: (CVE-2010-4572) [SECURITY] chart.cgi vulnerable to header-injection due...
Reed Loden [Mon, 24 Jan 2011 18:13:02 +0000 (10:13 -0800)] 
Bug 621572: (CVE-2010-4572) [SECURITY] chart.cgi vulnerable to header-injection due to use of |print "Location:"| instead of $cgi->redirect
[r=mkanat a=LpSolit]

14 years agoBug 619648: (CVE-2010-4570) [SECURITY] XSS via summary in "possible duplicates" table...
Reed Loden [Mon, 24 Jan 2011 18:09:19 +0000 (10:09 -0800)] 
Bug 619648: (CVE-2010-4570) [SECURITY] XSS via summary in "possible duplicates" table due to lack of encoding by YUI
[r=mkanat a=LpSolit]

14 years agoBug 619637: (CVE-2010-4569) [SECURITY] XSS in user autocomplete due to lack of encodi...
Reed Loden [Mon, 24 Jan 2011 18:06:25 +0000 (10:06 -0800)] 
Bug 619637: (CVE-2010-4569) [SECURITY] XSS in user autocomplete due to lack of encoding by YUI
[r=mkanat r=dkl a=LpSolit]

14 years agoBug 621110: [SECURITY] Quips (adding/approving/deleting) lacks CSRF protection
Frédéric Buclin [Mon, 24 Jan 2011 17:26:25 +0000 (18:26 +0100)] 
Bug 621110: [SECURITY] Quips (adding/approving/deleting) lacks CSRF protection
r=dkl a=LpSolit

14 years agoBug 621108: [SECURITY] Creating/editing charts lacks CSRF protection
Frédéric Buclin [Mon, 24 Jan 2011 17:14:08 +0000 (18:14 +0100)] 
Bug 621108: [SECURITY] Creating/editing charts lacks CSRF protection
r=dkl a=LpSolit

14 years agoBug 621107: [SECURITY] Sanity checking lacks CSRF protection
Frédéric Buclin [Mon, 24 Jan 2011 17:07:31 +0000 (18:07 +0100)] 
Bug 621107: [SECURITY] Sanity checking lacks CSRF protection
r=dkl a=LpSolit

14 years agoBug 621090: [SECURITY] Adding saved searches lacks CSRF protection
David Lawrence [Mon, 24 Jan 2011 16:58:48 +0000 (17:58 +0100)] 
Bug 621090: [SECURITY] Adding saved searches lacks CSRF protection
r=mkanat a=justdave

14 years agoAn optional module was accidentally listed in the "required" section of the
Max Kanat-Alexander [Mon, 24 Jan 2011 04:10:08 +0000 (20:10 -0800)] 
An optional module was accidentally listed in the "required" section of the
release notes.

https://bugzilla.mozilla.org/show_bug.cgi?id=627910

14 years agoBug 627910: Update Release Notes for Bugzilla 4.0rc2
Max Kanat-Alexander [Mon, 24 Jan 2011 04:03:52 +0000 (20:03 -0800)] 
Bug 627910: Update Release Notes for Bugzilla 4.0rc2
r=reed

14 years agoBug 621128 - Remove trailing whitespace from '<div id="view_disabled" >'
timeless [Sat, 22 Jan 2011 21:24:28 +0000 (13:24 -0800)] 
Bug 621128 - Remove trailing whitespace from '<div id="view_disabled" >'
[r=reed a=LpSolit]

14 years agoBug 621109: Column changing lacks CSRF protection
Frédéric Buclin [Sat, 22 Jan 2011 17:17:58 +0000 (18:17 +0100)] 
Bug 621109: Column changing lacks CSRF protection
r=dkl a=mkanat

14 years agoBug 627854: Add 'form' hook to create-guided.html.tmpl similar to create.html.tmpl
David Lawrence [Fri, 21 Jan 2011 21:42:47 +0000 (16:42 -0500)] 
Bug 627854: Add 'form' hook to create-guided.html.tmpl similar to create.html.tmpl
r/a=mkanat

14 years agoBug 591165: (CVE-2010-4411) [SECURITY] Bump minimum required version of CGI.pm to...
Reed Loden [Fri, 21 Jan 2011 21:15:53 +0000 (13:15 -0800)] 
Bug 591165: (CVE-2010-4411) [SECURITY] Bump minimum required version of CGI.pm to v3.51 in order to address header injection vulnerability.
[r=mkanat a=mkanat]

14 years agoBug 627660 - Rename "Send" button on final create account page to "Create", as nothin...
Reed Loden [Fri, 21 Jan 2011 20:55:07 +0000 (12:55 -0800)] 
Bug 627660 - Rename "Send" button on final create account page to "Create", as nothing is actually sent.
[r=mkanat a=mkanat]

14 years agoBug 626292 - "Make description private" checkbox should set bz_private class on the...
David Lawrence [Fri, 21 Jan 2011 06:39:56 +0000 (01:39 -0500)] 
Bug 626292 - "Make description private" checkbox should set bz_private class on the comment box
r/a=mkanat

14 years agoBug 623608 - Add intro/outro extension hooks to footer.html.tmpl
David Lawrence [Fri, 21 Jan 2011 05:08:16 +0000 (00:08 -0500)] 
Bug 623608 - Add intro/outro extension hooks to footer.html.tmpl
r/a=mkanat

14 years agoBug 625190: Typo and Missing FK in Bugzilla::DB::Schema
David Marshall [Sat, 15 Jan 2011 00:15:26 +0000 (01:15 +0100)] 
Bug 625190: Typo and Missing FK in Bugzilla::DB::Schema
r/a=mkanat

14 years agoBug 618841: Bare word "bug" in release notes
A. Shimono [Sun, 9 Jan 2011 14:26:46 +0000 (15:26 +0100)] 
Bug 618841: Bare word "bug" in release notes
r=dkl a=LpSolit

14 years agoBug 622204: Bugzilla::Migrate crashes trying to create bugs with resolutions
<Alex> [Sun, 9 Jan 2011 14:18:27 +0000 (15:18 +0100)] 
Bug 622204: Bugzilla::Migrate crashes trying to create bugs with resolutions
r/a=mkanat

14 years agoBug 255524: The duplicates table inherits no CSS classes when viewed in simple format
Frédéric Buclin [Fri, 7 Jan 2011 12:34:26 +0000 (13:34 +0100)] 
Bug 255524: The duplicates table inherits no CSS classes when viewed in simple format
r=dkl a=LpSolit

14 years agoDocument how to add user settings. r,a=mkanat.
Gervase Markham [Wed, 5 Jan 2011 16:59:59 +0000 (16:59 +0000)] 
Document how to add user settings. r,a=mkanat.

https://bugzilla.mozilla.org/show_bug.cgi?id=616427

14 years agoBug 622822 - add additional_links hook to front page. r,a=mkanat.
Gervase Markham [Wed, 5 Jan 2011 10:37:17 +0000 (10:37 +0000)] 
Bug 622822 - add additional_links hook to front page. r,a=mkanat.

14 years agoBug 622437: Remove 'colchange_columns' hook from the Example extension
Tiago Mello [Sun, 2 Jan 2011 19:56:19 +0000 (17:56 -0200)] 
Bug 622437: Remove 'colchange_columns' hook from the Example extension
r/a=LpSolit