]>
git.ipfire.org Git - thirdparty/bugzilla.git/log
David Lawrence [Mon, 4 Apr 2016 16:37:25 +0000 (16:37 +0000)]
Bug
1197061 - don't create a new session for every authenticated XMLRPC/JSONRPC call
David Lawrence [Wed, 30 Mar 2016 20:34:30 +0000 (20:34 +0000)]
Bug
1260545 - Legal compliance / adding terms link to new BMO account flow
David Lawrence [Fri, 25 Mar 2016 20:21:00 +0000 (20:21 +0000)]
Bug
1253718 - CRM/Email request form
David Lawrence [Wed, 23 Mar 2016 23:05:01 +0000 (23:05 +0000)]
Bug
1259266 - Attachment of security issues when viewing a bug are indistinguishable from any other attachment.
Byron Jones [Wed, 23 Mar 2016 03:25:52 +0000 (11:25 +0800)]
Bug
1251236 - Please show the diff on the attachment details page when a patch has been reviewed in MozReview
Dylan Hardison [Tue, 22 Mar 2016 13:25:16 +0000 (09:25 -0400)]
Bug
1258547 - XSS through javascript: callback URLs in auth delegation
David Lawrence [Mon, 21 Mar 2016 15:53:10 +0000 (15:53 +0000)]
Bug
1252782 - can't add a "See Also" to a Chromium bug on bugs.chromium.org
David Lawrence [Tue, 15 Mar 2016 15:35:13 +0000 (15:35 +0000)]
Bug
1256954 - Multiple Selenium cases are failing after the commit of bug
1253914
David Lawrence [Tue, 15 Mar 2016 20:49:16 +0000 (20:49 +0000)]
Bug
1251442 - Update VP list in Recruiting Product
Dylan Hardison [Tue, 15 Mar 2016 03:03:49 +0000 (23:03 -0400)]
Bug
1229834 - extend information we [audit] log to the syslog
Dylan Hardison [Mon, 14 Mar 2016 16:49:41 +0000 (12:49 -0400)]
Bug
1255272 - Adding a flag via the MozReview batch-attachment API doesn't CC the user
Dylan Hardison [Thu, 10 Mar 2016 03:20:00 +0000 (22:20 -0500)]
Bug
1252578 - CSRF and SELECT-only SQL execution attack against query_database.html
Dylan Hardison [Thu, 10 Mar 2016 03:16:56 +0000 (22:16 -0500)]
Bug
1253914 - Cross domain referer leakage when resetting the user password
Dylan Hardison [Thu, 10 Mar 2016 03:12:31 +0000 (22:12 -0500)]
Bug
1254227 - MozReview auth delegation allows sending out phishing mails via Bugzilla
David Lawrence [Thu, 10 Mar 2016 03:11:41 +0000 (03:11 +0000)]
Bug
1254675 - bug_modal template fails to escape format parameter
Dylan Hardison [Thu, 10 Mar 2016 03:09:53 +0000 (22:09 -0500)]
Bug
1254542 - Reflected XSS in comment-remo-form-payment.txt page
Dylan Hardison [Wed, 9 Mar 2016 21:18:17 +0000 (16:18 -0500)]
Bug
1253483 - MozReview.attachments() doesn't create flags on new attachments
Dylan Hardison [Tue, 8 Mar 2016 14:32:41 +0000 (09:32 -0500)]
Bug
1252554 - Avoid possibility of XSS in release tracking report
David Lawrence [Tue, 8 Mar 2016 14:26:33 +0000 (14:26 +0000)]
Bug
1252445 - Tracking flags configuration is vulnerable to CSRF and causes persistent XSS
David Lawrence [Mon, 7 Mar 2016 23:06:26 +0000 (23:06 +0000)]
Bug
1251442 - Update VP list in Recruiting Product
Mark Côté [Fri, 4 Mar 2016 22:37:14 +0000 (17:37 -0500)]
Bug
1253691 - In issue-api-key.pl, set the MozReview API key if the description is 'mozreview'. r=dylan
David Lawrence [Mon, 7 Mar 2016 05:21:49 +0000 (05:21 +0000)]
Bug
1252084 - Warning when entering row into user_request_log when running commandline script
David Lawrence [Mon, 7 Mar 2016 05:16:25 +0000 (05:16 +0000)]
Bug
1252862 - Remove calls to delete_token() in several places where it is unnecessary
David Lawrence [Thu, 3 Mar 2016 22:29:06 +0000 (22:29 +0000)]
Bug
1252735 - test_email_preferences.t selenium test is intermittently failing
- Archiving the test caused test_qa_contact.t to fail due to a bug in
the test that relied on the archived test to set a preference to
enabled. An accidental side effect. Changing generate_test_data.pl to
always add preferences as enabled by default since BMO does not display
displayed preferences.
David Lawrence [Thu, 3 Mar 2016 18:52:17 +0000 (18:52 +0000)]
Bug
1252735 - selenium tests are failing
- Archiving test script for now til a future time it can be fixed
Dylan Hardison [Thu, 3 Mar 2016 15:43:37 +0000 (10:43 -0500)]
Bug
1253032 - Recent change to JSON::XS breaks some APIs
David Lawrence [Wed, 2 Mar 2016 02:35:16 +0000 (02:35 +0000)]
Bug
1252628 - 404 on https://www.mozilla.org/en-US/quality/bug-writing-guidelines.html
Dylan Hardison [Tue, 1 Mar 2016 15:25:31 +0000 (10:25 -0500)]
Bug
1252437 - XSS vulnerability through malicious bug aliases
Dylan Hardison [Tue, 1 Mar 2016 14:48:31 +0000 (09:48 -0500)]
Bug
1252437 - XSS vulnerability through malicious bug aliases
Dylan William Hardison [Tue, 1 Mar 2016 13:27:28 +0000 (08:27 -0500)]
Revert "Bug
1251208 - Bugzilla->request_cache() can be faster"
This reverts commit
1d3186c171465b173a42f8ecd168662eccccc4d1 .
Dylan Hardison [Tue, 1 Mar 2016 13:14:26 +0000 (08:14 -0500)]
Bug
1252210 - AntiSpam configuration is vulnerable to CSRF and persistent XSS
David Lawrence [Tue, 1 Mar 2016 13:13:53 +0000 (08:13 -0500)]
Bug
1252216 - Push extension configuration is vulnerable to CSRF and potentially code execution
Dylan Hardison [Tue, 1 Mar 2016 13:14:24 +0000 (08:14 -0500)]
Bug
1252219 - Attachment bounty form is vulnerable to CSRF and persistent XSS
Dylan Hardison [Mon, 29 Feb 2016 18:16:41 +0000 (13:16 -0500)]
Bug
1251208 - Bugzilla->request_cache() can be faster
r=dkl,a=dylan
Dylan William Hardison [Mon, 29 Feb 2016 19:02:29 +0000 (14:02 -0500)]
Bug
1251047 - cmp is remarkably different from eq
Dylan William Hardison [Mon, 29 Feb 2016 18:35:50 +0000 (13:35 -0500)]
Bug
1251047 - fix to work with right function
Dylan Hardison [Mon, 29 Feb 2016 17:58:40 +0000 (12:58 -0500)]
Bug
1251047 - /rest/bug/field takes 15-25 seconds to return
Dylan Hardison [Mon, 29 Feb 2016 13:23:34 +0000 (08:23 -0500)]
Bug
1251647 - XSS vulnerability in the remo-form-payment page
David Lawrence [Mon, 29 Feb 2016 13:25:31 +0000 (08:25 -0500)]
Bug
1251731 - XSS vulnerability through malicious attachment names
Dylan Hardison [Sat, 27 Feb 2016 15:17:34 +0000 (10:17 -0500)]
Bug
1223421 - Hide/Obfuscate MozReview API Keys
Dylan Hardison [Sat, 27 Feb 2016 01:31:38 +0000 (20:31 -0500)]
Bug
1251442 - Update VP list in Recruiting Product
Dylan Hardison [Fri, 26 Feb 2016 13:56:16 +0000 (08:56 -0500)]
Bug
1251221 - Pass cache => 1 to calls to Bugzilla::Product->new() called in Bugzilla::{Milestone,Version,Component}
r=dkl,a=dylan
David Lawrence [Wed, 24 Feb 2016 22:22:23 +0000 (22:22 +0000)]
Bug
1249196 - mass-resolve l10n fxos bugs
David Lawrence [Wed, 24 Feb 2016 17:29:46 +0000 (17:29 +0000)]
Bug
1250911 - document the count_only rest argument
David Lawrence [Tue, 23 Feb 2016 22:06:55 +0000 (22:06 +0000)]
Bug
1244718 - API documentation is missing error codes
David Lawrence [Mon, 22 Feb 2016 18:12:44 +0000 (13:12 -0500)]
- task.expires needs to be greater than artifacts.expires
David Lawrence [Mon, 22 Feb 2016 15:29:49 +0000 (15:29 +0000)]
- Update artifact expiration date
Dylan Hardison [Mon, 22 Feb 2016 13:53:02 +0000 (08:53 -0500)]
Bug
1250129 - tab links sometimes do not work
David Lawrence [Mon, 22 Feb 2016 05:04:10 +0000 (05:04 +0000)]
Bug
1249614 - Release Tracking Report missed bug
David Lawrence [Tue, 16 Feb 2016 19:13:04 +0000 (19:13 +0000)]
Bug
1245471 - Release Tracking Report should be able to have custom dates
Byron Jones [Thu, 11 Feb 2016 03:48:08 +0000 (11:48 +0800)]
Bug
1244602 - rewrite the bmo --> reviewboard connector to create a bug instead of updating reviewboard
Byron Jones [Thu, 11 Feb 2016 03:44:39 +0000 (11:44 +0800)]
Bug
1235182 - User Story should always be visible
Dylan Hardison [Wed, 10 Feb 2016 16:48:45 +0000 (11:48 -0500)]
Bug
1246413 - Email::Address caches all email addresses
Byron Jones [Tue, 9 Feb 2016 06:19:03 +0000 (14:19 +0800)]
Bug
1246864 - Unable to comment tickets with "WONTFIX" status without change the status on the experimental UI
David Lawrence [Tue, 2 Feb 2016 18:24:02 +0000 (18:24 +0000)]
Bug
1245003 - increase the apache sizelimit used by the taskcluster image
Byron Jones [Tue, 2 Feb 2016 05:03:40 +0000 (13:03 +0800)]
Bug
1244996 - (remove unused import)
Byron Jones [Tue, 2 Feb 2016 05:02:07 +0000 (13:02 +0800)]
Bug
1244996 - add a script to manage a user's settings
Byron Jones [Mon, 1 Feb 2016 16:14:41 +0000 (00:14 +0800)]
Bug
1244604 - configure nagios alerting for the bmo/reviewboard connector
David Lawrence [Sat, 30 Jan 2016 00:02:45 +0000 (00:02 +0000)]
Bug
1243051 - Create one off script to output cpanfile with all modules and their current versions to be used for version pinning
David Lawrence [Fri, 29 Jan 2016 02:39:28 +0000 (02:39 +0000)]
Bug
1188236 - "Congratulations on having your first patch approved" email should be clearer about how to get the patch landed.
- Fixed t/009bugwords.t failure
Mike Hoye [Thu, 28 Jan 2016 22:43:29 +0000 (14:43 -0800)]
Bug
1188236 - "Congratulations on having your first patch approved" email should be clearer about how to get the patch landed.
David Lawrence [Thu, 28 Jan 2016 14:23:14 +0000 (06:23 -0800)]
Bug
1241667 - Trying to report a bug traps the user in an infinite loop
Birunthan Mohanathas [Thu, 28 Jan 2016 05:12:06 +0000 (13:12 +0800)]
Bug
1213424 - The Bugzilla autocomplete dropdown should expand the width to show the full text of a match
David Lawrence [Wed, 27 Jan 2016 04:12:26 +0000 (04:12 +0000)]
Bug
1243246 - Attachment data submitted via REST API must always be base64 encoded
Dylan Hardison [Sat, 23 Jan 2016 22:37:19 +0000 (17:37 -0500)]
Bug
1226028 - API for batching MozReview requests
David Lawrence [Fri, 22 Jan 2016 16:15:32 +0000 (16:15 +0000)]
Bug
1240575 - Update form.reps.budget
Dylan William Hardison [Wed, 20 Jan 2016 07:07:18 +0000 (15:07 +0800)]
Bug
1231918 - error handler doesn't close multi-part responses
Dylan Hardison [Wed, 20 Jan 2016 03:57:54 +0000 (22:57 -0500)]
Bug
1236161 - when converting a BMP attachment to PNG fails a zero byte attachment is created
Dylan Hardison [Sat, 16 Jan 2016 00:34:04 +0000 (19:34 -0500)]
Bug
1236461 - Mass update mozilla-reps group
Wes Kocher [Fri, 15 Jan 2016 20:44:58 +0000 (15:44 -0500)]
Bug
1240157 - Fix a typo in bug.rst
David Lawrence [Wed, 13 Jan 2016 21:03:01 +0000 (21:03 +0000)]
Bug
1239065 - Project Kickoff Form: Adjustments needed to Mozilla Infosec review portion
David Lawrence [Mon, 11 Jan 2016 16:37:34 +0000 (16:37 +0000)]
Bug
1238573 - Change label of "New Bug" menu to "New/Clone Bug"
Byron Jones [Mon, 11 Jan 2016 15:00:14 +0000 (23:00 +0800)]
Bug
1237185 - fix broken js in old ui
Byron Jones [Mon, 11 Jan 2016 04:27:18 +0000 (12:27 +0800)]
Bug
1237185 - hide 'cab review' custom field behind a "click through" to direct people to servicenow
Byron Jones [Thu, 7 Jan 2016 03:32:55 +0000 (11:32 +0800)]
Bug
1232913 - The attachment links don't look like links
David Lawrence [Wed, 6 Jan 2016 20:09:23 +0000 (20:09 +0000)]
Bug
1236955 - [form.mdn] Please add component drop-down to custom form
Byron Jones [Wed, 6 Jan 2016 15:13:27 +0000 (23:13 +0800)]
Bug
1237188 - add support for servicenow to the 'see also' field
Dylan Hardison [Tue, 5 Jan 2016 22:55:24 +0000 (17:55 -0500)]
Bug
1224001 - Add push connector for Aha.io
Dylan Hardison [Mon, 4 Jan 2016 21:11:38 +0000 (16:11 -0500)]
Bug
1233878 - tracking flags don't show up in the view of the bug right after filing
David Lawrence [Wed, 23 Dec 2015 03:27:08 +0000 (03:27 +0000)]
Bug
1234237 - Backport upstream bug
1232785 to bmo/4.2 [SECURITY] Buglists in CSV format can be parsed as valid javascript in some browsers
David Lawrence [Wed, 23 Dec 2015 03:23:34 +0000 (03:23 +0000)]
Bug
1229894 - Backport bug upstream
1221518 to bmo/4.2 [SECURITY] XSS in dependency graphs when displaying the bug summary
David Lawrence [Tue, 22 Dec 2015 20:53:19 +0000 (20:53 +0000)]
Revert "Bug
1234325 - Backport upstream bug
1230932 to bmo/4.2 to fix providing a condition as an ID to the webservice results in a taint error"
This reverts commit
1e7b4002794930fad702718714b5d1c291bf816c .
David Lawrence [Mon, 21 Dec 2015 22:27:52 +0000 (22:27 +0000)]
Bug
1234325 - Backport upstream bug
1230932 to bmo/4.2 to fix providing a condition as an ID to the webservice results in a taint error
David Lawrence [Thu, 17 Dec 2015 16:24:52 +0000 (16:24 +0000)]
Bug
1231346 - UI tweaks to make 2FA setup/changes more intuitive
Dylan Hardison [Mon, 14 Dec 2015 16:27:30 +0000 (11:27 -0500)]
Bug
1232324 - BMO: Incorrect regexp used to filter bug IDs in Bugzilla::WebService::BugUserLastVisit
Dylan Hardison [Fri, 11 Dec 2015 19:14:45 +0000 (14:14 -0500)]
Bug
1226287 - A few more Data & BI Services Team product tweaks
Byron Jones [Wed, 9 Dec 2015 02:52:11 +0000 (21:52 -0500)]
Bug
1231248 - Add hint that DuoSec login is probably your LDAP username
Dylan William Hardison [Wed, 2 Dec 2015 20:51:54 +0000 (20:51 +0000)]
Bug
1227998 - B2G Droid product missing some fields that are on FxOS bugs
Byron Jones [Tue, 1 Dec 2015 07:30:40 +0000 (15:30 +0800)]
Bug
1229198 - When saving a buglist from a saved search as a CSV file, set the filename to <saved-query-name>.csv
Byron Jones [Tue, 1 Dec 2015 05:11:41 +0000 (13:11 +0800)]
Bug
1149952 - Can't change bug status to ASSIGNED in one click
David Lawrence [Mon, 30 Nov 2015 21:06:51 +0000 (21:06 +0000)]
Bug
1214197 - missing API documentation for 'keywords', 'blocks', and 'depends_on' during bug creation
Byron Jones [Mon, 30 Nov 2015 08:15:50 +0000 (16:15 +0800)]
Bug
1225247 - Bug assignee should be displayed in a more prominent way
Byron Jones [Mon, 30 Nov 2015 08:00:08 +0000 (16:00 +0800)]
Bug
1217890 - Ctrl+Click/Shift+Click on image attachments does not open them in new tabs, with bugzilla's experimental UI
Byron Jones [Mon, 30 Nov 2015 05:40:37 +0000 (13:40 +0800)]
Bug
1228910 - sentry.pl doesn't use the dc-proxy
Byron Jones [Thu, 26 Nov 2015 05:17:19 +0000 (13:17 +0800)]
Bug
1228101 - The "Add" button for CC is oddly placed
David Lawrence [Wed, 25 Nov 2015 16:34:40 +0000 (16:34 +0000)]
Bug
1226420 - Add a message about using github to file addons.mozilla.org bugs
Byron Jones ‹:glob› [Wed, 25 Nov 2015 14:22:06 +0000 (09:22 -0500)]
Bug
1227866 - infinite loop consuming resources when PATH_INFO set
Dylan Hardison [Mon, 23 Nov 2015 14:34:20 +0000 (09:34 -0500)]
Bug
1227031 - mod_perl workers are being terminated after 0 seconds
Byron Jones [Mon, 23 Nov 2015 06:46:59 +0000 (14:46 +0800)]
Bug
1225366 - allow duo authentication for users already enrolled with duo
Byron Jones [Thu, 19 Nov 2015 06:20:10 +0000 (14:20 +0800)]
Bug
1225831 - generate_bmo_data.pl should accept the admin email address as an optional argument