Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | Bug 1230932: Providing a condition as an ID to the webservice results in a ↵ | Frédéric Buclin | 2016-03-19 | 3 | -3/+15 |
| | | | | | | taint error r/a=dkl | ||||
* | Revert "Add missing use List::MoreUtils" | David Lawrence | 2015-12-22 | 1 | -1/+0 |
| | | | | This reverts commit d4470f34b627bb5a15a0af496db67185a922f4f5. | ||||
* | Revert "Bug 1230932 - Providing a condition as an ID to the webservice ↵ | David Lawrence | 2015-12-22 | 3 | -13/+0 |
| | | | | | | results in a taint error" This reverts commit 396ae88235ef68ed45978dfb36774c5fe9a2d699. | ||||
* | Add missing use List::MoreUtils | Dylan Hardison | 2015-12-22 | 1 | -0/+1 |
| | |||||
* | Bug 1230932 - Providing a condition as an ID to the webservice results in a ↵ | Dylan Hardison | 2015-12-22 | 3 | -1/+14 |
| | | | | | | taint error r=dkl,a=dkl | ||||
* | Bug 1232190: FlagType.create should require the user to be logged in | Frédéric Buclin | 2015-12-18 | 1 | -7/+3 |
| | | | | r/a=dkl | ||||
* | Bug 1232180 - Incorrect regexp used to filter bug IDs in ↵ | Dylan Hardison | 2015-12-15 | 1 | -2/+2 |
| | | | | | | Bugzilla::WebService::BugUserLastVisit r=dkl,a=dkl | ||||
* | Bug 1169181 - The bug_user_last_visit method returns an empty array for old bugs | Dylan Hardison | 2015-12-15 | 1 | -14/+10 |
| | | | | r=dkl,a=dkl | ||||
* | Bug 1160394 - Products.get_products is missing from PUBLIC_METHODS (for ↵ | Matt Tyson | 2015-12-16 | 1 | -12/+0 |
| | | | | | | backwards compatibility) r=dkl,a=dkl | ||||
* | Bug 708252: The XMLRPC API doesn't work with IIS | Pat Thoyts | 2015-09-23 | 1 | -0/+8 |
| | | | | r=LpSolit a=dkl | ||||
* | Fix typo in POD | Frédéric Buclin | 2015-07-28 | 1 | -1/+1 |
| | |||||
* | Bug 1169395: BugUserLastVisit does not allow multiple bugs to be specified | Dylan William Hardison | 2015-06-10 | 1 | -2/+2 |
| | | | | r=dkl,a=glob | ||||
* | Bug 1162334: email_enabled value inverted in User.update RPC call | Jeff Fearn | 2015-05-18 | 1 | -2/+0 |
| | | | | r=glob,a=glob | ||||
* | Bug 1149055: flag requestees are unable to set an attachment flag via a the ↵ | Byron Jones | 2015-05-08 | 1 | -6/+27 |
| | | | | | | update_attachment webservice if they do not have editbugs r=dkl,a=glob | ||||
* | Bug 1159582: All api responses have unnecessary 'result' | Byron Jones | 2015-04-29 | 1 | -2/+1 |
| | | | | r=wicked,a=glob | ||||
* | Fix POD, see bug 1154099 | Frédéric Buclin | 2015-04-26 | 1 | -6/+0 |
| | |||||
* | Bug 1157405: Bugzilla.parameters is not accessible when requirelogin = 1 and ↵ | Frédéric Buclin | 2015-04-24 | 1 | -1/+1 |
| | | | | | | the user is not logged in r=dkl a=glob | ||||
* | Bug 1154099: Remove support for Bug.get_bugs and Bug.get_history | Matt Tyson | 2015-04-15 | 1 | -17/+0 |
| | | | | r=LpSolit a=glob | ||||
* | Bug 1031035: xmlrpc can be DoS'd with billion laughs attack | Byron Jones | 2015-04-15 | 1 | -1/+2 |
| | | | | r=LpSolit,a=glob | ||||
* | Bug 1031035: xmlrpc can be DoS'd with billion laughs attack | Byron Jones | 2015-04-13 | 1 | -0/+8 |
| | | | | r=LpSolit,a=glob | ||||
* | Bug 1152319: calling /rest/logout results in an internal error and a ↵ | David Lawrence | 2015-04-10 | 1 | -0/+10 |
| | | | | | | malformed response to the caller r=glob,a=glob | ||||
* | Bug.update_attachment returns 'attachments', not 'attachment' | Frédéric Buclin | 2015-03-07 | 1 | -1/+1 |
| | |||||
* | Bug 1124716: regression caused by bug 1090275 to whitelist webservice ↵ | David Lawrence | 2015-01-23 | 1 | -1/+1 |
| | | | | | | methods causes test failures with t/012throwables.t r=dylan,a=glob | ||||
* | Bug 1090275: WebServices modules should maintain a whitelist of methods that ↵ | David Lawrence | 2015-01-21 | 11 | -0/+91 |
| | | | | | | are allowed instead of allowing access to any function imported into its namespace r=dylan,a=glob | ||||
* | Bug 1113147: Revert the hack from bug 1108809 and blacklist SOAP::Lite 1.12 | Frédéric Buclin | 2015-01-07 | 1 | -7/+0 |
| | | | | r=dkl a=glob | ||||
* | Bug 1098291: OPTION response for CORS requests to REST doesn't allow ↵ | David Lawrence | 2014-12-22 | 1 | -1/+1 |
| | | | | | | X-Requested-With r=glob,a=glob | ||||
* | Bug 1108809: SOAP::Lite 1.12 causes error when using XMLRPC API | David Lawrence | 2014-12-18 | 1 | -0/+7 |
| | | | | r=glob,a=glob | ||||
* | Bug 1111043: Bug.add_comment returns the wrong comment ID | Frédéric Buclin | 2014-12-17 | 1 | -12/+3 |
| | | | | r/a=dkl | ||||
* | Bug 1001462: Bug.search causes error when using simple token auth and ↵ | David Lawrence | 2014-11-12 | 3 | -19/+28 |
| | | | | | | specifying 'token' instead of 'Bugzilla_token' r=glob,a=glob | ||||
* | Bug 1094858: Create hook in Bugzilla::WebService::Constants to allow ↵ | Byron Jones | 2014-11-11 | 1 | -0/+1 |
| | | | | | | overrriding of standard status codes by extensions (fix broken POD) | ||||
* | Bug 1093600: REST shouldn't support multiple instances of parameters for ↵ | David Lawrence | 2014-11-10 | 1 | -12/+24 |
| | | | | | | resources which only support a single params (eg. POST bug/comment) r=glob,a=glob | ||||
* | Bug 1094858: Create hook in Bugzilla::WebService::Constants to allow ↵ | David Lawrence | 2014-11-10 | 1 | -20/+28 |
| | | | | | | overrriding of standard status codes by extensions r=gerv,a=glob | ||||
* | Revert Bug 330707 - Add optional support for MarkDown | David Lawrence | 2014-11-04 | 2 | -112/+19 |
| | |||||
* | Bug 1088253: GET REST calls should allow arbitrary URL parameters to be ↵ | David Lawrence | 2014-10-29 | 2 | -12/+26 |
| | | | | | | passed in addition the values in the path r=glob,a=glob | ||||
* | Bug 1084490 - Fix Bugzilla::WebService::BugUserLastVisit->get & correct POD | Dylan William Hardison | 2014-10-21 | 1 | -11/+4 |
| | | | | r=dkl a=glob | ||||
* | Bug 1080840: Update WebServices to include Markdown feature | Koosha KM | 2014-10-16 | 2 | -18/+109 |
| | | | | r=dkl,a=glob | ||||
* | Bug 1039940: serialisation of objects for webservice responses is extremely slow | Byron Jones | 2014-09-16 | 1 | -5/+8 |
| | | | | r=dylan,a=sgreen | ||||
* | Bug 1009013 - Require a user to change their password if they log in and ↵ | Simon Green | 2014-09-11 | 1 | -1/+2 |
| | | | | | | their current password does not meet the password complexity rules r=glob, a=sgreen | ||||
* | Bug 330707: Add optional support for MarkDown | Koosha KM | 2014-08-28 | 1 | -1/+3 |
| | | | | r=dkl,a=sgreen | ||||
* | Bug 1014337 - Update Bug.fields documentation | Simon Green | 2014-08-19 | 1 | -0/+6 |
| | | | | r=glob, a=glob | ||||
* | Bug 1048712: comment tagging suggestions always returns a single result | Byron Jones | 2014-08-14 | 1 | -1/+5 |
| | | | | r=sgreen,a=glob | ||||
* | Bug 1012506 - Allow a bug to have multiple aliases | Simon Green | 2014-08-14 | 1 | -12/+48 |
| | | | | r=dkl, a=sgreen | ||||
* | Bug 996893: Perl 5.18 and newer throw tons of warnings about deprecated modules | Frédéric Buclin | 2014-08-13 | 23 | -1/+27 |
| | | | | r=dkl a=sgreen | ||||
* | Bug 419568 - Web Service module to create a component | Simon Green | 2014-08-12 | 4 | -0/+202 |
| | | | | r=dkl, a=sgreen | ||||
* | Bug 726696 - All authenticated WebServices methods should require ↵ | Simon Green | 2014-07-27 | 3 | -4/+20 |
| | | | | | | username/pass, token or a valid API key for authentication r=dkl, a=sgreen | ||||
* | Bug 1036213 - (CVE-2014-1546) add '/**/' before jsonrpc.cgi callback to ↵ | Reed Loden | 2014-07-24 | 1 | -1/+3 |
| | | | | | | avoid swf content type sniff vulnerability r=glob,a=sgreen | ||||
* | Bug 1014345: Add Group.get RPC call | David Lawrence | 2014-07-24 | 1 | -2/+2 |
| | | | | - Fixed typo in editusers group name and used $user->can_bless. | ||||
* | Bug 1036225: Return a link to the REST documentation in "method not found" ↵ | David Lawrence | 2014-07-10 | 1 | -0/+1 |
| | | | | | | errors r=glob,a=glob | ||||
* | Bug 1036268: REST webservice should return http/404 for invalid methods | David Lawrence | 2014-07-10 | 1 | -0/+1 |
| | | | | r=glob,a=glob | ||||
* | Bug 1033445 - Certain webservice methods such as Bug.get and Bug.attachments ↵ | David Lawrence | 2014-07-03 | 1 | -2/+2 |
| | | | | | | should not use shadow db if user is logged in r=sgreen,a=glob |