aboutsummaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
* Bug 670868: (CVE-2011-2978) [SECURITY] Account preferences page trusts ↵Byron Jones2011-08-041-1/+1
| | | | | | user-modifiable field for obtaining current e-mail address r/a=LpSolit
* Bug 637981: (CVE-2011-2379) [SECURITY] "Raw Unified" patch diffs can cause ↵Byron Jones2011-08-043-30/+106
| | | | | | XSS on this domain in IE 6-8 and Safari r/a=LpSolit
* Bug 660502: (CVE-2011-2977) [SECURITY] Temporary files for uploaded ↵Frédéric Buclin2011-08-041-1/+4
| | | | | | attachments are not deleted on Windows r=glob a=LpSolit
* Bug 653477: (CVE-2011-2380) [SECURITY] Group names can be guessed when ↵Frédéric Buclin2011-08-046-68/+133
| | | | | | creating or editing a bug r=mkanat a=LpSolit
* Bug 657158 - (CVE-2011-2381) [SECURITY] Request email headers for attachment ↵Reed Loden2011-08-042-1/+4
| | | | | | containing newline are corrupt [r=LpSolit a=LpSolit]
* Fix bustage due to bug 660382Frédéric Buclin2011-08-041-4/+0
|
* Bug 676237: The traceback in code-error.html.tmpl is displayed on a single lineFrédéric Buclin2011-08-041-1/+1
| | | | r=glob a=LpSolit
* Bug 674554 - Add new template hook in request/email.txt.tmpl called ↵David Lawrence2011-08-031-0/+3
| | | | | | 'after_summary' r/a=mkanat
* Bug 676200: We shouldn't manually delete obsolete parameters in ↵Frédéric Buclin2011-08-041-17/+13
| | | | | | Bugzilla::Config::update_params(), else they are not saved in old-params.txt r/a=mkanat
* Bug 660382: Hide the complex features of custom search by defaultMax Kanat-Alexander2011-08-032-15/+43
| | | | r=dkl, a=mkanat
* Fix a warning thrown when running 011pod.tFrédéric Buclin2011-08-031-1/+1
|
* Bug 655910: When calling ./install-module.pl --all, install LWP before ↵Frédéric Buclin2011-08-031-6/+6
| | | | | | XML::Twig, else arguments passed to build XML::Twig are propagated to Net::HTTP which then fails r/a=mkanat
* Bug 675754: Release notes for Bugzilla 4.0.2Frédéric Buclin2011-08-031-0/+42
| | | | r/a=mkanat
* Bug 634812: Having a very large number of custom fields can make displaying ↵Frédéric Buclin2011-08-015-25/+31
| | | | | | show_bug.cgi slow r=glob a=LpSolit
* Bug 674574: When all components or versions are disabled, you cannot enter ↵Frédéric Buclin2011-08-012-11/+16
| | | | | | bugs into the product but it's listed in enter_bug.cgi anyway r=dkl a=LpSolit
* Bug 673702: Undefined get_add_fk_sql in Bugzilla/DB/Schema.pmBodo-Merle Sandor2011-07-311-2/+2
| | | | r/a=mkanat
* Bug 655912: install-module.pl is unable to install LWP::UserAgent on Perl ↵Frédéric Buclin2011-07-311-1/+13
| | | | | | <5.8.8, because LWP 6.0 now requires 5.8.8 as a minimum r/a=mkanat
* Bug 285466: Add documentation for --regenerate option to collectstats.plFrédéric Buclin2011-07-262-16/+48
| | | | r=gerv a=LpSolit
* Bug 673976: Style for #somebugs is duplicated in create-guided.html.tmplFrédéric Buclin2011-07-261-0/+2
| | | | r=glob a=LpSolit
* Bug 647158: The Error Console in Firefox reportsFrédéric Buclin2011-07-264-77/+60
| | | | | | "unbalanced tree was written using document.write()" when reporting a new bug or when visiting the "User Authentication" panel in the Parameters page r=glob a=LpSolit
* Bug 674089: Add a new hook 'end_object_name' in user-error.html.tmpl templateTiago Mello2011-07-251-0/+1
| | | | r/a=mkanat
* Bug 674117: Add a new hook 'auth_failure_object' in user-error.html.tmpl ↵Tiago Mello2011-07-251-0/+2
| | | | | | template r/a=mkanat
* Remove an extra comma which makes the W3C CSS validator to complain (+ some ↵Frédéric Buclin2011-07-251-2/+2
| | | | | | unrelated whitespace cleanup) r=wicked on IRC
* Bug 673956: Remove obsolete panel.css (it was only used by sidebar.cgi, ↵Frédéric Buclin2011-07-251-37/+0
| | | | | | which is gone) r=glob a=LpSolit
* Bug 642388: Description of field days_elapsed missing from ↵Frédéric Buclin2011-07-252-0/+2
| | | | | | global/field-descs.none.tmpl r=wurblzap a=LpSolit
* Bug 673819: Remove browser-specific values for the white-space CSS elementFrédéric Buclin2011-07-251-6/+1
| | | | r=glob a=LpSolit
* Bug 589128: Adds a preference allowing users to choose between text or htmlByron Jones2011-07-2514-23/+44
| | | | | for bugmail. r=LpSolit, a=LpSolit
* Bug 652663 - When using bug_format_comment hook some replacements can happen ↵David Lawrence2011-07-251-2/+4
| | | | | | more than once causing broken links r/a=LpSolit
* Bug 670670 - New hook for requests.cgi that allows for additional links ↵David Lawrence2011-07-221-1/+4
| | | | | | after attachment descriptions. r/a=mkanat
* Bug 600810: Use XMLRPC::Transport::HTTP:Apache as base class under mod_perlTeemu Mannermaa2011-07-201-1/+5
| | | | r/a=mkanat
* Bug 669223: Add a new hook 'before_table' in list-classifications.html.tmpl ↵Tiago Mello2011-07-201-0/+2
| | | | | | template r/a=mkanat
* Bug 643890: Use Apache's ErrorLog when using mod_perl/vhostsChristian Ruppert2011-07-191-0/+5
| | | | r=mkanat, a=mkanat
* Bug 671964: Move old field names conversion from do_search_functionTiago Mello2011-07-181-7/+6
| | | | | to _handle_chart(). r/a=mkanat
* Bug 672173: Calling collectstats.pl with arguments passes the first argument ↵Frédéric Buclin2011-07-181-1/+1
| | | | | | to some SQL statements r=gerv a=LpSolit
* Bug 670906 - Make it so delta_ts is only updated when there are changes. Fix ↵Gervase Markham2011-07-181-1/+1
| | | | regression from bug 620827. r=timello, a=lpsolit.
* Bug 561170: Date validations are done in the wrong order, generating ↵Frédéric Buclin2011-07-181-6/+6
| | | | | | unwanted warnings r=dkl a=LpSolit
* Bug 670128: Missing explicit exit after calls to $cgi->redirect(), making ↵Frédéric Buclin2011-07-182-1/+5
| | | | | | the rest of the scripts to be executed r=dkl a=LpSolit
* Bug 662883: email_in.pl should ignore "out of the office" auto-reply emailsFrédéric Buclin2011-07-181-0/+8
| | | | r/a=mkanat
* Bug 670169 - Escape '>' in js filterReed Loden2011-07-081-0/+1
| | | | [r=LpSolit a=LpSolit]
* Bug 652410 - 500+ consecutive lines of markup whitespace in show_bug.cgi ↵David Lawrence2011-07-061-6/+6
| | | | | | flags table, depending on flag states r/a=LpSolit
* Bug 658929 - User autocomplete is very slow when there are lots of users in ↵David Lawrence2011-07-059-14/+54
| | | | | | the profiles table r/a=mkanat
* Bug 666695 - Voting Extension templates have unfiltered directivesDavid Lawrence2011-07-053-12/+12
| | | | r/a=mkanat
* Bug 666699 - Example extension templates have unfiltered directivesDavid Lawrence2011-07-042-2/+2
| | | | r/a=mkanat
* Bug 616679: A user with local editcomponents privs should be able to set the ↵Frédéric Buclin2011-07-042-5/+20
| | | | | | grant and request groups to groups the user belongs to only a=LpSolit
* Revert wrong indentation, see bug 652427Frédéric Buclin2011-07-011-1/+1
|
* Bug 652427: Going back to the new bug page loses the description if possible ↵Guy Pyrzak2011-06-284-5/+8
| | | | | | duplicates have been searched for r=mkanat, r=mkanat
* Bug 666781 - t/008filter.t should not require filterexceptions.pl when one ↵David Lawrence2011-06-281-9/+7
| | | | | | does not exist especially with extensions r/a=mkanat
* Bug 652444 - Voting for bugs where the product allows only one vote per bug ↵David Lawrence2011-06-241-2/+9
| | | | | | but that isn't clear in the voting form or help r/a=LpSolit
* Bug 658547 - The link for new attachments in bugmail should point to the ↵David Lawrence2011-06-231-1/+1
| | | | | | "Edit" page rather than to the attachment content itself r/a=LpSolit
* Bug 663835 - Extensions templates are not tested by the normal sanity test ↵David Lawrence2011-06-232-34/+12
| | | | | | scripts r/a=mkanat