aboutsummaryrefslogtreecommitdiffstats
path: root/Bugzilla/WebService
Commit message (Collapse)AuthorAgeFilesLines
* Bug 1230932: Providing a condition as an ID to the webservice results in a ↵Frédéric Buclin2016-03-193-3/+15
| | | | | | taint error r/a=dkl
* Revert "Add missing use List::MoreUtils"David Lawrence2015-12-221-1/+0
| | | | This reverts commit d4470f34b627bb5a15a0af496db67185a922f4f5.
* Revert "Bug 1230932 - Providing a condition as an ID to the webservice ↵David Lawrence2015-12-223-13/+0
| | | | | | results in a taint error" This reverts commit 396ae88235ef68ed45978dfb36774c5fe9a2d699.
* Add missing use List::MoreUtilsDylan Hardison2015-12-221-0/+1
|
* Bug 1230932 - Providing a condition as an ID to the webservice results in a ↵Dylan Hardison2015-12-223-1/+14
| | | | | | taint error r=dkl,a=dkl
* Bug 1232190: FlagType.create should require the user to be logged inFrédéric Buclin2015-12-181-7/+3
| | | | r/a=dkl
* Bug 1232180 - Incorrect regexp used to filter bug IDs in ↵Dylan Hardison2015-12-151-2/+2
| | | | | | Bugzilla::WebService::BugUserLastVisit r=dkl,a=dkl
* Bug 1169181 - The bug_user_last_visit method returns an empty array for old bugsDylan Hardison2015-12-151-14/+10
| | | | r=dkl,a=dkl
* Bug 1160394 - Products.get_products is missing from PUBLIC_METHODS (for ↵Matt Tyson2015-12-161-12/+0
| | | | | | backwards compatibility) r=dkl,a=dkl
* Bug 708252: The XMLRPC API doesn't work with IISPat Thoyts2015-09-231-0/+8
| | | | r=LpSolit a=dkl
* Fix typo in PODFrédéric Buclin2015-07-281-1/+1
|
* Bug 1169395: BugUserLastVisit does not allow multiple bugs to be specifiedDylan William Hardison2015-06-101-2/+2
| | | | r=dkl,a=glob
* Bug 1162334: email_enabled value inverted in User.update RPC callJeff Fearn2015-05-181-2/+0
| | | | r=glob,a=glob
* Bug 1149055: flag requestees are unable to set an attachment flag via a the ↵Byron Jones2015-05-081-6/+27
| | | | | | update_attachment webservice if they do not have editbugs r=dkl,a=glob
* Bug 1159582: All api responses have unnecessary 'result'Byron Jones2015-04-291-2/+1
| | | | r=wicked,a=glob
* Fix POD, see bug 1154099Frédéric Buclin2015-04-261-6/+0
|
* Bug 1157405: Bugzilla.parameters is not accessible when requirelogin = 1 and ↵Frédéric Buclin2015-04-241-1/+1
| | | | | | the user is not logged in r=dkl a=glob
* Bug 1154099: Remove support for Bug.get_bugs and Bug.get_historyMatt Tyson2015-04-151-17/+0
| | | | r=LpSolit a=glob
* Bug 1031035: xmlrpc can be DoS'd with billion laughs attackByron Jones2015-04-151-1/+2
| | | | r=LpSolit,a=glob
* Bug 1031035: xmlrpc can be DoS'd with billion laughs attackByron Jones2015-04-131-0/+8
| | | | r=LpSolit,a=glob
* Bug 1152319: calling /rest/logout results in an internal error and a ↵David Lawrence2015-04-101-0/+10
| | | | | | malformed response to the caller r=glob,a=glob
* Bug.update_attachment returns 'attachments', not 'attachment'Frédéric Buclin2015-03-071-1/+1
|
* Bug 1124716: regression caused by bug 1090275 to whitelist webservice ↵David Lawrence2015-01-231-1/+1
| | | | | | methods causes test failures with t/012throwables.t r=dylan,a=glob
* Bug 1090275: WebServices modules should maintain a whitelist of methods that ↵David Lawrence2015-01-2111-0/+91
| | | | | | are allowed instead of allowing access to any function imported into its namespace r=dylan,a=glob
* Bug 1113147: Revert the hack from bug 1108809 and blacklist SOAP::Lite 1.12Frédéric Buclin2015-01-071-7/+0
| | | | r=dkl a=glob
* Bug 1098291: OPTION response for CORS requests to REST doesn't allow ↵David Lawrence2014-12-221-1/+1
| | | | | | X-Requested-With r=glob,a=glob
* Bug 1108809: SOAP::Lite 1.12 causes error when using XMLRPC APIDavid Lawrence2014-12-181-0/+7
| | | | r=glob,a=glob
* Bug 1111043: Bug.add_comment returns the wrong comment IDFrédéric Buclin2014-12-171-12/+3
| | | | r/a=dkl
* Bug 1001462: Bug.search causes error when using simple token auth and ↵David Lawrence2014-11-123-19/+28
| | | | | | specifying 'token' instead of 'Bugzilla_token' r=glob,a=glob
* Bug 1094858: Create hook in Bugzilla::WebService::Constants to allow ↵Byron Jones2014-11-111-0/+1
| | | | | | overrriding of standard status codes by extensions (fix broken POD)
* Bug 1093600: REST shouldn't support multiple instances of parameters for ↵David Lawrence2014-11-101-12/+24
| | | | | | resources which only support a single params (eg. POST bug/comment) r=glob,a=glob
* Bug 1094858: Create hook in Bugzilla::WebService::Constants to allow ↵David Lawrence2014-11-101-20/+28
| | | | | | overrriding of standard status codes by extensions r=gerv,a=glob
* Revert Bug 330707 - Add optional support for MarkDownDavid Lawrence2014-11-042-112/+19
|
* Bug 1088253: GET REST calls should allow arbitrary URL parameters to be ↵David Lawrence2014-10-292-12/+26
| | | | | | passed in addition the values in the path r=glob,a=glob
* Bug 1084490 - Fix Bugzilla::WebService::BugUserLastVisit->get & correct PODDylan William Hardison2014-10-211-11/+4
| | | | r=dkl a=glob
* Bug 1080840: Update WebServices to include Markdown featureKoosha KM2014-10-162-18/+109
| | | | r=dkl,a=glob
* Bug 1039940: serialisation of objects for webservice responses is extremely slowByron Jones2014-09-161-5/+8
| | | | r=dylan,a=sgreen
* Bug 1009013 - Require a user to change their password if they log in and ↵Simon Green2014-09-111-1/+2
| | | | | | their current password does not meet the password complexity rules r=glob, a=sgreen
* Bug 330707: Add optional support for MarkDownKoosha KM2014-08-281-1/+3
| | | | r=dkl,a=sgreen
* Bug 1014337 - Update Bug.fields documentationSimon Green2014-08-191-0/+6
| | | | r=glob, a=glob
* Bug 1048712: comment tagging suggestions always returns a single resultByron Jones2014-08-141-1/+5
| | | | r=sgreen,a=glob
* Bug 1012506 - Allow a bug to have multiple aliasesSimon Green2014-08-141-12/+48
| | | | r=dkl, a=sgreen
* Bug 996893: Perl 5.18 and newer throw tons of warnings about deprecated modulesFrédéric Buclin2014-08-1323-1/+27
| | | | r=dkl a=sgreen
* Bug 419568 - Web Service module to create a componentSimon Green2014-08-124-0/+202
| | | | r=dkl, a=sgreen
* Bug 726696 - All authenticated WebServices methods should require ↵Simon Green2014-07-273-4/+20
| | | | | | username/pass, token or a valid API key for authentication r=dkl, a=sgreen
* Bug 1036213 - (CVE-2014-1546) add '/**/' before jsonrpc.cgi callback to ↵Reed Loden2014-07-241-1/+3
| | | | | | avoid swf content type sniff vulnerability r=glob,a=sgreen
* Bug 1014345: Add Group.get RPC callDavid Lawrence2014-07-241-2/+2
| | | | - Fixed typo in editusers group name and used $user->can_bless.
* Bug 1036225: Return a link to the REST documentation in "method not found" ↵David Lawrence2014-07-101-0/+1
| | | | | | errors r=glob,a=glob
* Bug 1036268: REST webservice should return http/404 for invalid methodsDavid Lawrence2014-07-101-0/+1
| | | | r=glob,a=glob
* Bug 1033445 - Certain webservice methods such as Bug.get and Bug.attachments ↵David Lawrence2014-07-031-2/+2
| | | | | | should not use shadow db if user is logged in r=sgreen,a=glob