]>
git.ipfire.org Git - thirdparty/bugzilla.git/log
David Lawrence [Fri, 20 May 2016 17:17:18 +0000 (17:17 +0000)]
Bug
1149384 - implement time tracking interface
Dylan Hardison [Thu, 19 May 2016 23:45:45 +0000 (19:45 -0400)]
Bug
1225241 - Section titles should be highlighted
Dylan Hardison [Thu, 19 May 2016 23:39:45 +0000 (19:39 -0400)]
Bug
1272548 - bug link in header broken if format param specified
David Lawrence [Thu, 19 May 2016 20:21:36 +0000 (20:21 +0000)]
Bug
1262039 - typo in error message "Failed to retreive components..."
Dylan Hardison [Thu, 19 May 2016 05:55:24 +0000 (01:55 -0400)]
Bug
1274139 - QuickSearch: searching for text containing colons no longer works
David Lawrence [Mon, 16 May 2016 21:17:24 +0000 (21:17 +0000)]
Bug
1273245 - [SECURITY] Backport upstream bug
1253263 to bmo/4.2 to fix XSS vulnerability in dependency graphs via bug summary
David Lawrence [Mon, 16 May 2016 21:03:43 +0000 (21:03 +0000)]
Bug
1273185 - Add the "Has Regression Range" and "Has STR" flags to the Firefox Android and Firefox iOS components
David Lawrence [Sat, 14 May 2016 14:09:38 +0000 (14:09 +0000)]
Bug 232193 - bmo's systems (webheads, database, etc) should use UTC natively for o/s timezone and date storage
Dylan Hardison [Thu, 12 May 2016 21:06:25 +0000 (17:06 -0400)]
Bug
1270867 - confusing error message when I was just searching for a bug
David Lawrence [Thu, 12 May 2016 19:22:51 +0000 (19:22 +0000)]
Bug
1270295 - don't update timestamps when the tab is not active / in the background
David Lawrence [Tue, 10 May 2016 13:52:59 +0000 (13:52 +0000)]
Bug
1271635 - XSS when viewing image attachments
David Lawrence [Mon, 9 May 2016 15:52:33 +0000 (15:52 +0000)]
Bug
1271172 - When copying a flag that has a period in the version, the description is not incremented properly
David Lawrence [Thu, 5 May 2016 21:39:06 +0000 (21:39 +0000)]
Bug
1270479 - Unsetting the needinfo checks the needinfo checkbox
David Lawrence [Thu, 5 May 2016 15:55:32 +0000 (15:55 +0000)]
Bug
1270289 - REST API /bug/comment/render method is not documented
David Lawrence [Wed, 4 May 2016 22:06:53 +0000 (22:06 +0000)]
Bug
1263198 - Do not automatically set tracking flags status-firefoxXX affected for bugs filed under SeaMonkey
Dylan William Hardison [Wed, 4 May 2016 03:36:33 +0000 (03:36 +0000)]
Bug
1269795 - [BMO] ImageMagick Is On Fire (CVE-2016-3714)
Dylan Hardison [Tue, 3 May 2016 13:30:48 +0000 (09:30 -0400)]
Bug
1269236 - Incorrect checking of API tokens possibly leads to CSRF and data disclosure vulnerability for insecure accounts
David Lawrence [Mon, 2 May 2016 14:19:54 +0000 (10:19 -0400)]
Add build.platform = linux64, machine.platform = linux64 to taskgraph.json to remove b2gtest from Treeherder results
Dylan Hardison [Wed, 27 Apr 2016 23:40:01 +0000 (19:40 -0400)]
Bug
1256051 - Allow MozReview.attachments() to post mozreview-* tags without requiring editbugs
Nikhil Handa [Wed, 27 Apr 2016 15:41:20 +0000 (15:41 +0000)]
Bug
1235514 - Change color of note regarding changed votes
Dylan Hardison [Wed, 27 Apr 2016 15:14:06 +0000 (11:14 -0400)]
Bug
1225214 - Implement very simple request time logging
Dylan Hardison [Fri, 22 Apr 2016 15:56:44 +0000 (11:56 -0400)]
Bug
1195736 - intermittent internal error: "file error - nav_link: not found" (also manifests as fields_lhs: not found)
David Lawrence [Thu, 21 Apr 2016 22:21:38 +0000 (22:21 +0000)]
Bug
1266167 - clickjacking is possible on "view all" and "details" attachment pages
Byron Jones [Thu, 21 Apr 2016 04:50:14 +0000 (12:50 +0800)]
Bug
1239838 - Don't see a way to redirect a needinfo request (in Experimental UI)
David Lawrence [Wed, 20 Apr 2016 18:51:29 +0000 (18:51 +0000)]
Bug
1266117 - I have found a bug in the section 2.6.1 in the user guide(2.6) of BMO documentation. The bug identified is a grammatical error committed in one of the sentences.
David Lawrence [Tue, 19 Apr 2016 15:10:50 +0000 (15:10 +0000)]
Bug
1265432 - backport upstream bug
1263923 to bmo/4.2 - X-Bugzilla-Who header is not set for flag mails
Dylan William Hardison [Wed, 13 Apr 2016 19:55:50 +0000 (15:55 -0400)]
Revert "Bug
1195736 - intermittent internal error: "file error - nav_link: not found" (also manifests as fields_lhs: not found)"
Test failures result from this, we will need a different approach.
This reverts commit
33f61556746e1729746342d802ca7ea9cea18caf .
Byron Jones [Wed, 13 Apr 2016 15:57:50 +0000 (23:57 +0800)]
Bug
1264207 - add support for the hellosplat tracker to 'see also'
Dylan Hardison [Wed, 13 Apr 2016 14:46:30 +0000 (10:46 -0400)]
Bug
1195736 - intermittent internal error: "file error - nav_link: not found" (also manifests as fields_lhs: not found)
David Lawrence [Tue, 12 Apr 2016 13:22:20 +0000 (13:22 +0000)]
Bug
1263520 - Cannot set r+ back to r? directly
David Lawrence [Thu, 7 Apr 2016 20:20:47 +0000 (20:20 +0000)]
Bug
1260458 - search failing for users who are not members of the insider group (DBD::mysql::db selectcol_arrayref failed: You have an error in your SQL syntax)
David Lawrence [Mon, 4 Apr 2016 16:43:51 +0000 (16:43 +0000)]
Bug
1259322 - Legal compliance / adding link to footer
David Lawrence [Mon, 4 Apr 2016 16:39:14 +0000 (16:39 +0000)]
Bug
1257662 - Disallow clearing a flag if the flag is set to allow granting by specifc group and changer is not in group
David Lawrence [Mon, 4 Apr 2016 16:37:25 +0000 (16:37 +0000)]
Bug
1197061 - don't create a new session for every authenticated XMLRPC/JSONRPC call
David Lawrence [Wed, 30 Mar 2016 20:34:30 +0000 (20:34 +0000)]
Bug
1260545 - Legal compliance / adding terms link to new BMO account flow
David Lawrence [Fri, 25 Mar 2016 20:21:00 +0000 (20:21 +0000)]
Bug
1253718 - CRM/Email request form
David Lawrence [Wed, 23 Mar 2016 23:05:01 +0000 (23:05 +0000)]
Bug
1259266 - Attachment of security issues when viewing a bug are indistinguishable from any other attachment.
Byron Jones [Wed, 23 Mar 2016 03:25:52 +0000 (11:25 +0800)]
Bug
1251236 - Please show the diff on the attachment details page when a patch has been reviewed in MozReview
Dylan Hardison [Tue, 22 Mar 2016 13:25:16 +0000 (09:25 -0400)]
Bug
1258547 - XSS through javascript: callback URLs in auth delegation
David Lawrence [Mon, 21 Mar 2016 15:53:10 +0000 (15:53 +0000)]
Bug
1252782 - can't add a "See Also" to a Chromium bug on bugs.chromium.org
David Lawrence [Tue, 15 Mar 2016 15:35:13 +0000 (15:35 +0000)]
Bug
1256954 - Multiple Selenium cases are failing after the commit of bug
1253914
David Lawrence [Tue, 15 Mar 2016 20:49:16 +0000 (20:49 +0000)]
Bug
1251442 - Update VP list in Recruiting Product
Dylan Hardison [Tue, 15 Mar 2016 03:03:49 +0000 (23:03 -0400)]
Bug
1229834 - extend information we [audit] log to the syslog
Dylan Hardison [Mon, 14 Mar 2016 16:49:41 +0000 (12:49 -0400)]
Bug
1255272 - Adding a flag via the MozReview batch-attachment API doesn't CC the user
Dylan Hardison [Thu, 10 Mar 2016 03:20:00 +0000 (22:20 -0500)]
Bug
1252578 - CSRF and SELECT-only SQL execution attack against query_database.html
Dylan Hardison [Thu, 10 Mar 2016 03:16:56 +0000 (22:16 -0500)]
Bug
1253914 - Cross domain referer leakage when resetting the user password
Dylan Hardison [Thu, 10 Mar 2016 03:12:31 +0000 (22:12 -0500)]
Bug
1254227 - MozReview auth delegation allows sending out phishing mails via Bugzilla
David Lawrence [Thu, 10 Mar 2016 03:11:41 +0000 (03:11 +0000)]
Bug
1254675 - bug_modal template fails to escape format parameter
Dylan Hardison [Thu, 10 Mar 2016 03:09:53 +0000 (22:09 -0500)]
Bug
1254542 - Reflected XSS in comment-remo-form-payment.txt page
Dylan Hardison [Wed, 9 Mar 2016 21:18:17 +0000 (16:18 -0500)]
Bug
1253483 - MozReview.attachments() doesn't create flags on new attachments
Dylan Hardison [Tue, 8 Mar 2016 14:32:41 +0000 (09:32 -0500)]
Bug
1252554 - Avoid possibility of XSS in release tracking report
David Lawrence [Tue, 8 Mar 2016 14:26:33 +0000 (14:26 +0000)]
Bug
1252445 - Tracking flags configuration is vulnerable to CSRF and causes persistent XSS
David Lawrence [Mon, 7 Mar 2016 23:06:26 +0000 (23:06 +0000)]
Bug
1251442 - Update VP list in Recruiting Product
Mark Côté [Fri, 4 Mar 2016 22:37:14 +0000 (17:37 -0500)]
Bug
1253691 - In issue-api-key.pl, set the MozReview API key if the description is 'mozreview'. r=dylan
David Lawrence [Mon, 7 Mar 2016 05:21:49 +0000 (05:21 +0000)]
Bug
1252084 - Warning when entering row into user_request_log when running commandline script
David Lawrence [Mon, 7 Mar 2016 05:16:25 +0000 (05:16 +0000)]
Bug
1252862 - Remove calls to delete_token() in several places where it is unnecessary
David Lawrence [Thu, 3 Mar 2016 22:29:06 +0000 (22:29 +0000)]
Bug
1252735 - test_email_preferences.t selenium test is intermittently failing
- Archiving the test caused test_qa_contact.t to fail due to a bug in
the test that relied on the archived test to set a preference to
enabled. An accidental side effect. Changing generate_test_data.pl to
always add preferences as enabled by default since BMO does not display
displayed preferences.
David Lawrence [Thu, 3 Mar 2016 18:52:17 +0000 (18:52 +0000)]
Bug
1252735 - selenium tests are failing
- Archiving test script for now til a future time it can be fixed
Dylan Hardison [Thu, 3 Mar 2016 15:43:37 +0000 (10:43 -0500)]
Bug
1253032 - Recent change to JSON::XS breaks some APIs
David Lawrence [Wed, 2 Mar 2016 02:35:16 +0000 (02:35 +0000)]
Bug
1252628 - 404 on https://www.mozilla.org/en-US/quality/bug-writing-guidelines.html
Dylan Hardison [Tue, 1 Mar 2016 15:25:31 +0000 (10:25 -0500)]
Bug
1252437 - XSS vulnerability through malicious bug aliases
Dylan Hardison [Tue, 1 Mar 2016 14:48:31 +0000 (09:48 -0500)]
Bug
1252437 - XSS vulnerability through malicious bug aliases
Dylan William Hardison [Tue, 1 Mar 2016 13:27:28 +0000 (08:27 -0500)]
Revert "Bug
1251208 - Bugzilla->request_cache() can be faster"
This reverts commit
1d3186c171465b173a42f8ecd168662eccccc4d1 .
Dylan Hardison [Tue, 1 Mar 2016 13:14:26 +0000 (08:14 -0500)]
Bug
1252210 - AntiSpam configuration is vulnerable to CSRF and persistent XSS
David Lawrence [Tue, 1 Mar 2016 13:13:53 +0000 (08:13 -0500)]
Bug
1252216 - Push extension configuration is vulnerable to CSRF and potentially code execution
Dylan Hardison [Tue, 1 Mar 2016 13:14:24 +0000 (08:14 -0500)]
Bug
1252219 - Attachment bounty form is vulnerable to CSRF and persistent XSS
Dylan Hardison [Mon, 29 Feb 2016 18:16:41 +0000 (13:16 -0500)]
Bug
1251208 - Bugzilla->request_cache() can be faster
r=dkl,a=dylan
Dylan William Hardison [Mon, 29 Feb 2016 19:02:29 +0000 (14:02 -0500)]
Bug
1251047 - cmp is remarkably different from eq
Dylan William Hardison [Mon, 29 Feb 2016 18:35:50 +0000 (13:35 -0500)]
Bug
1251047 - fix to work with right function
Dylan Hardison [Mon, 29 Feb 2016 17:58:40 +0000 (12:58 -0500)]
Bug
1251047 - /rest/bug/field takes 15-25 seconds to return
Dylan Hardison [Mon, 29 Feb 2016 13:23:34 +0000 (08:23 -0500)]
Bug
1251647 - XSS vulnerability in the remo-form-payment page
David Lawrence [Mon, 29 Feb 2016 13:25:31 +0000 (08:25 -0500)]
Bug
1251731 - XSS vulnerability through malicious attachment names
Dylan Hardison [Sat, 27 Feb 2016 15:17:34 +0000 (10:17 -0500)]
Bug
1223421 - Hide/Obfuscate MozReview API Keys
Dylan Hardison [Sat, 27 Feb 2016 01:31:38 +0000 (20:31 -0500)]
Bug
1251442 - Update VP list in Recruiting Product
Dylan Hardison [Fri, 26 Feb 2016 13:56:16 +0000 (08:56 -0500)]
Bug
1251221 - Pass cache => 1 to calls to Bugzilla::Product->new() called in Bugzilla::{Milestone,Version,Component}
r=dkl,a=dylan
David Lawrence [Wed, 24 Feb 2016 22:22:23 +0000 (22:22 +0000)]
Bug
1249196 - mass-resolve l10n fxos bugs
David Lawrence [Wed, 24 Feb 2016 17:29:46 +0000 (17:29 +0000)]
Bug
1250911 - document the count_only rest argument
David Lawrence [Tue, 23 Feb 2016 22:06:55 +0000 (22:06 +0000)]
Bug
1244718 - API documentation is missing error codes
David Lawrence [Mon, 22 Feb 2016 18:12:44 +0000 (13:12 -0500)]
- task.expires needs to be greater than artifacts.expires
David Lawrence [Mon, 22 Feb 2016 15:29:49 +0000 (15:29 +0000)]
- Update artifact expiration date
Dylan Hardison [Mon, 22 Feb 2016 13:53:02 +0000 (08:53 -0500)]
Bug
1250129 - tab links sometimes do not work
David Lawrence [Mon, 22 Feb 2016 05:04:10 +0000 (05:04 +0000)]
Bug
1249614 - Release Tracking Report missed bug
David Lawrence [Tue, 16 Feb 2016 19:13:04 +0000 (19:13 +0000)]
Bug
1245471 - Release Tracking Report should be able to have custom dates
Byron Jones [Thu, 11 Feb 2016 03:48:08 +0000 (11:48 +0800)]
Bug
1244602 - rewrite the bmo --> reviewboard connector to create a bug instead of updating reviewboard
Byron Jones [Thu, 11 Feb 2016 03:44:39 +0000 (11:44 +0800)]
Bug
1235182 - User Story should always be visible
Dylan Hardison [Wed, 10 Feb 2016 16:48:45 +0000 (11:48 -0500)]
Bug
1246413 - Email::Address caches all email addresses
Byron Jones [Tue, 9 Feb 2016 06:19:03 +0000 (14:19 +0800)]
Bug
1246864 - Unable to comment tickets with "WONTFIX" status without change the status on the experimental UI
David Lawrence [Tue, 2 Feb 2016 18:24:02 +0000 (18:24 +0000)]
Bug
1245003 - increase the apache sizelimit used by the taskcluster image
Byron Jones [Tue, 2 Feb 2016 05:03:40 +0000 (13:03 +0800)]
Bug
1244996 - (remove unused import)
Byron Jones [Tue, 2 Feb 2016 05:02:07 +0000 (13:02 +0800)]
Bug
1244996 - add a script to manage a user's settings
Byron Jones [Mon, 1 Feb 2016 16:14:41 +0000 (00:14 +0800)]
Bug
1244604 - configure nagios alerting for the bmo/reviewboard connector
David Lawrence [Sat, 30 Jan 2016 00:02:45 +0000 (00:02 +0000)]
Bug
1243051 - Create one off script to output cpanfile with all modules and their current versions to be used for version pinning
David Lawrence [Fri, 29 Jan 2016 02:39:28 +0000 (02:39 +0000)]
Bug
1188236 - "Congratulations on having your first patch approved" email should be clearer about how to get the patch landed.
- Fixed t/009bugwords.t failure
Mike Hoye [Thu, 28 Jan 2016 22:43:29 +0000 (14:43 -0800)]
Bug
1188236 - "Congratulations on having your first patch approved" email should be clearer about how to get the patch landed.
David Lawrence [Thu, 28 Jan 2016 14:23:14 +0000 (06:23 -0800)]
Bug
1241667 - Trying to report a bug traps the user in an infinite loop
Birunthan Mohanathas [Thu, 28 Jan 2016 05:12:06 +0000 (13:12 +0800)]
Bug
1213424 - The Bugzilla autocomplete dropdown should expand the width to show the full text of a match
David Lawrence [Wed, 27 Jan 2016 04:12:26 +0000 (04:12 +0000)]
Bug
1243246 - Attachment data submitted via REST API must always be base64 encoded
Dylan Hardison [Sat, 23 Jan 2016 22:37:19 +0000 (17:37 -0500)]
Bug
1226028 - API for batching MozReview requests
David Lawrence [Fri, 22 Jan 2016 16:15:32 +0000 (16:15 +0000)]
Bug
1240575 - Update form.reps.budget
Dylan William Hardison [Wed, 20 Jan 2016 07:07:18 +0000 (15:07 +0800)]
Bug
1231918 - error handler doesn't close multi-part responses