aboutsummaryrefslogtreecommitdiff
Commit message (Expand)AuthorAgeFilesLines
* Bump version for 3.6.7release-3.6.7bugzilla-3.6.7Dave Lawrence2011-12-282-3/+3
* Bug 711714: (CVE-2011-3667) [SECURITY] The User.offer_account_by_email WebSer...Frédéric Buclin2011-12-285-45/+51
* Bug 697699 - (CVE-2011-3657) [SECURITY] XSS when viewing new charts or tabula...Byron Jones2011-12-282-3/+3
* Bug 713344: Release notes for Bugzilla 3.6.7Frédéric Buclin2011-12-261-0/+10
* Bug 707170: Several features about custom fields are missing in the documenta...Frédéric Buclin2011-12-081-7/+40
* Bug 692354: Incorrect parameter type in WebServices documentation for Bug.add...Matt Selsky2011-12-051-1/+1
* Bug 707594: Fix broken account lockout notificationsByron Jones2011-12-061-1/+2
* Bug 591610: Custom field doc doesn't include 'Bug ID' typeFrédéric Buclin2011-12-021-0/+5
* Bug 531257: Wrong error codes in WebServices documentationMatt Selsky2011-11-161-2/+2
* Bug 691243: Fix typoMatt Selsky2011-10-151-1/+1
* Bug 620694: MySQL is not 'required' RDBMS for BugzillaMatt Selsky2011-10-151-1/+1
* Bug 445804: Suggested crontab configuration opens security holeMatt Selsky2011-10-151-3/+3
* Bump the version number post-release.Max Kanat-Alexander2011-08-051-1/+1
* Bump version number for 3.6.6.release-3.6.6bugzilla-3.6.6Max Kanat-Alexander2011-08-042-3/+3
* Bug 670868: (CVE-2011-2978) [SECURITY] Account preferences page trusts user-m...Byron Jones2011-08-041-1/+1
* Bug 637981: (CVE-2011-2379) [SECURITY] "Raw Unified" patch diffs can cause XS...Byron Jones2011-08-043-30/+106
* Bug 660502: (CVE-2011-2977) [SECURITY] Temporary files for uploaded attachmen...Frédéric Buclin2011-08-041-0/+1
* Bug 653477: (CVE-2011-2380) [SECURITY] Group names can be guessed when creati...Frédéric Buclin2011-08-042-3/+3
* Bug 657158 - (CVE-2011-2381) [SECURITY] Request email headers for attachment ...Frédéric Buclin2011-08-042-1/+4
* Bug 675752: Release notes for Bugzilla 3.6.6Frédéric Buclin2011-08-031-0/+6
* Bug 653406: fix escaping of url vars in error messagesByron Jones2011-04-291-8/+8
* Bump the version number post-release.Max Kanat-Alexander2011-04-271-1/+1
* Bump version number for 3.6.5.release-3.6.5bugzilla-3.6.5Max Kanat-Alexander2011-04-272-3/+3
* Bug 653274 - Release Notes for Bugzilla 3.6.5Max Kanat-Alexander2011-04-271-0/+35
* Bug 646578: Make Math::Random::Secure fail to install if its dependenciesMax Kanat-Alexander2011-04-271-1/+24
* Fix typo in PODFrédéric Buclin2011-04-221-1/+1
* Bug 311392 - Typos and proper name of Red Hat's stuffMatt Selsky2011-03-222-10/+10
* Bug 586011 - Change references to 'DarwinPorts' to 'MacPorts' (proper project...David Lawrence2011-03-181-3/+3
* Restore the missing link due to bug 490322 (thanks Selenium!)Frédéric Buclin2011-02-151-0/+4
* Bug 490322: Make "allwords" work with the keywords field, again.Max Kanat-Alexander2011-02-142-24/+19
* Bug 480044: Use dashes instead of colons to separate bug IDs in the BUGLIST c...Frédéric Buclin2011-02-143-4/+7
* Remove tabs and fix some formatting in Bugzilla::DB::Pg.Max Kanat-Alexander2011-02-141-4/+4
* Bug 633055: Make Bug.legal_values explicitly throw an error if you pass "undef"Max Kanat-Alexander2011-02-141-0/+4
* Bug 616981: Make whine.pl work with PostgreSQL 8.4+ by fixing sql_string_untilSam Morris2011-02-141-0/+12
* Bug 633422: Fix the documentation for User.get's include_disabled parameterMax Kanat-Alexander2011-02-131-0/+5
* Bug 630750: Don't let "." and "lib" get into @INC when running underMax Kanat-Alexander2011-02-031-0/+17
* Bug 629007: Example in quicksearch priority shortcut is incorrectGraeme Coates2011-01-311-1/+1
* Add missing documentation. r=mkanat.Gervase Markham2011-01-271-1/+3
* The "simple format" of the duplicates table was broken by an improper backportMax Kanat-Alexander2011-01-241-2/+2
* Bug 621597: Make mod_perl.pl automatically include the lib/ directory andMax Kanat-Alexander2011-01-242-2/+8
* Bump the version number post-release.Max Kanat-Alexander2011-01-241-1/+1
* Bump the version number for 3.6.4.release-3.6.4bugzilla-3.6.4Max Kanat-Alexander2011-01-242-4/+4
* Bug 619594: (CVE-2010-4568) [SECURITY] Improve the randomness ofMax Kanat-Alexander2011-01-245-5/+77
* Bug 621105 - [SECURITY] Voting lacks CSRF protectionDavid Lawrence2011-01-243-0/+6
* Bug 619588: (CVE-2010-4567) [SECURITY] Safety checks that disallow clicking f...Frédéric Buclin2011-01-243-8/+20
* Bug 621572: (CVE-2010-4572) [SECURITY] chart.cgi vulnerable to header-injecti...Reed Loden2011-01-241-3/+3
* Bug 621110: [SECURITY] Quips (adding/approving/deleting) lacks CSRF protectionFrédéric Buclin2011-01-242-2/+12
* Bug 621108: [SECURITY] Creating/editing charts lacks CSRF protectionFrédéric Buclin2011-01-243-2/+9
* Bug 627923 - Release Notes for Bugzilla 3.6.4Max Kanat-Alexander2011-01-231-2/+37
* Bug 627854: Add 'form' hook to create-guided.html.tmpl similar to create.html...David Lawrence2011-01-211-0/+2