aboutsummaryrefslogtreecommitdiff
Commit message (Expand)AuthorAgeFilesLines
* Un-bump version temporarilyDave Lawrence2013-02-191-1/+1
* Bump version prior to releaseDave Lawrence2013-02-191-1/+1
* Bump version to 3.6.13Dave Lawrence2013-02-191-1/+1
* Bug 842038: (CVE-2013-0785) [SECURITY] XSS in show_bug.cgi when using an inva...Frédéric Buclin2013-02-191-0/+1
* Bug 824399: (CVE-2013-0786) [SECURITY] build_subselect() leaks the existence ...Simon Green2013-02-191-0/+8
* Bump version post-releaseDave Lawrence2012-11-131-1/+1
* Bump version to 3.6.12release-3.6.12bugzilla-3.6.12Dave Lawrence2012-11-131-1/+1
* Bug 802204 (CVE-2012-4197): [SECURITY] Marking an attachment you cannot see a...Frédéric Buclin2012-11-131-3/+0
* Fix typoFrédéric Buclin2012-11-021-1/+1
* Bug 807937: Fix PODKoosha Khajeh Moogahi2012-11-021-6/+7
* Fix typoFrédéric Buclin2012-10-131-1/+1
* Bumped version post-releaseDave Lawrence2012-08-301-1/+1
* Bump version to 3.6.11release-3.6.11bugzilla-3.6.11Dave Lawrence2012-08-301-1/+1
* Bug 785470: (CVE-2012-3981) [SECURITY] Missing escaping of the username can l...Reed Loden2012-08-301-0/+2
* Bug 682317 - Bug.create is incorrectly documented as ignoring invalid fields;...Koosha Khajeh Moogahi2012-08-031-2/+3
* Bumped version post releaseDave Lawrence2012-07-261-1/+1
* Bump version to 3.6.10release-3.6.10bugzilla-3.6.10Dave Lawrence2012-07-261-1/+1
* Bug 777586: (CVE-2012-1969) [SECURITY] The description of private attachments...Frédéric Buclin2012-07-261-1/+4
* Bug 776103 - Syntax error in Bugzilla::User::Setting API docKoosha Khajeh Moogahi2012-07-251-2/+2
* Bumping the version post-releaseDave Lawrence2012-04-181-1/+1
* Bump version to 3.6.9release-3.6.9bugzilla-3.6.9Dave Lawrence2012-04-181-1/+1
* Bug 728639: (CVE-2012-0465) [SECURITY] User lockout policy can be bypassed by...Frédéric Buclin2012-04-183-5/+117
* Bug 746547: SMALLSERIAL is of type INT2, not INT1Frédéric Buclin2012-04-181-1/+1
* Bug 727240: The POD for Bug.attachments is wrong about the format of the retu...Frédéric Buclin2012-02-141-16/+10
* Bump the version number post-releaseDave Lawrence2012-01-311-1/+1
* Bumped to version 3.6.8release-3.6.8bugzilla-3.6.8Dave Lawrence2012-01-311-1/+1
* Bug 718319: (CVE-2012-0440) [SECURITY] JSON-RPC permits to bypass token check...Frédéric Buclin2012-01-312-0/+20
* Bug 714472: (CVE-2012-0448) [SECURITY] utf8 homoglyphs are allowed in email a...Frédéric Buclin2012-01-311-1/+1
* Bug 706753: Bugzilla will not work with newest version of JSON::RPC 1.01 due ...Frédéric Buclin2012-01-051-1/+12
* Bump the version number post-releaseDave Lawrence2011-12-291-1/+1
* Bump version for 3.6.7release-3.6.7bugzilla-3.6.7Dave Lawrence2011-12-281-1/+1
* Bug 711714: (CVE-2011-3667) [SECURITY] The User.offer_account_by_email WebSer...Frédéric Buclin2011-12-283-18/+45
* Bug 697699 - (CVE-2011-3657) [SECURITY] XSS when viewing new charts or tabula...Byron Jones2011-12-281-1/+1
* Bug 692354: Incorrect parameter type in WebServices documentation for Bug.add...Matt Selsky2011-12-051-1/+1
* Bug 707594: Fix broken account lockout notificationsByron Jones2011-12-061-1/+2
* Bug 531257: Wrong error codes in WebServices documentationMatt Selsky2011-11-161-2/+2
* Bug 691243: Fix typoMatt Selsky2011-10-151-1/+1
* Bump the version number post-release.Max Kanat-Alexander2011-08-051-1/+1
* Bump version number for 3.6.6.release-3.6.6bugzilla-3.6.6Max Kanat-Alexander2011-08-041-1/+1
* Bug 637981: (CVE-2011-2379) [SECURITY] "Raw Unified" patch diffs can cause XS...Byron Jones2011-08-041-0/+2
* Bug 660502: (CVE-2011-2977) [SECURITY] Temporary files for uploaded attachmen...Frédéric Buclin2011-08-041-0/+1
* Bug 653477: (CVE-2011-2380) [SECURITY] Group names can be guessed when creati...Frédéric Buclin2011-08-041-1/+1
* Bug 657158 - (CVE-2011-2381) [SECURITY] Request email headers for attachment ...Frédéric Buclin2011-08-041-0/+3
* Bump the version number post-release.Max Kanat-Alexander2011-04-271-1/+1
* Bump version number for 3.6.5.release-3.6.5bugzilla-3.6.5Max Kanat-Alexander2011-04-271-1/+1
* Bug 646578: Make Math::Random::Secure fail to install if its dependenciesMax Kanat-Alexander2011-04-271-1/+24
* Bug 490322: Make "allwords" work with the keywords field, again.Max Kanat-Alexander2011-02-141-24/+17
* Bug 480044: Use dashes instead of colons to separate bug IDs in the BUGLIST c...Frédéric Buclin2011-02-141-1/+3
* Remove tabs and fix some formatting in Bugzilla::DB::Pg.Max Kanat-Alexander2011-02-141-4/+4
* Bug 633055: Make Bug.legal_values explicitly throw an error if you pass "undef"Max Kanat-Alexander2011-02-141-0/+4