cls%seawood.org
a9b19dd3f6
Use DBI placeholders to avoid SQL injection issues.
...
Bug #260894 r=timeless,justdave
2004-12-01 08:28:06 +00:00
cls%seawood.org
a9b503e476
Sanitize form inputs.
...
Bug 261616 r=timeless
2004-12-01 04:25:22 +00:00
cls%seawood.org
ab9602d88f
Verify that the given cvsroot is actually in our repository list.
...
Bug #261616 r=timeless
2004-12-01 00:22:53 +00:00
cls%seawood.org
3820500cbd
Add check routines to sanitize user input.
...
Rename sanitize_revision to SanitizeRevision and move it to globals.pl.
Bug #261616 r=timeless
2004-11-30 23:56:13 +00:00
cls%seawood.org
aab913d4e0
Remove 'use diagnostics' calls to speed up scripts.
...
Bug #204463 r=justdave
2004-09-18 05:02:17 +00:00
cls%seawood.org
c0d0213fc0
Fix security issue related to unsanitized rcs version strings:
...
* Added sanitize_revision()
* Do not install SourceChecker.*
* Add ~ & ` to shell_escape()
Bug #39284 r=timeless
2004-09-15 22:44:55 +00:00
tara%tequilarista.org
d5ccbacff6
Checking in slightly modified patch, originally submitted by
...
eperez@dei.inf.uc3m.es , for bug #133737 . Standardizes Bonsai
dates into international format, as it should be.
2004-03-22 18:04:17 +00:00
tara%tequilarista.org
bdf94e9190
Fixing (but still leaving commented out) the Log query field, a la bug 170395
2002-09-25 21:55:22 +00:00
caillon%returnzero.com
8da8212027
167242 - 'Modify Query' will choose the wrong value for 'Sort By'
...
r=justdave
2002-09-07 09:29:13 +00:00
myk%mozilla.org
8510d4d818
The rest of the fix for bug 163573: Escapes HTML in form data displayed to the user to secure Bonsai against cross-site scripting attacks.
2002-08-28 21:03:26 +00:00
jake%acutex.net
12bf361d91
Bug 122663 - Eliminate some undefined value warnings in cvsview2.cgi and cvsqueryform.cgi
...
Patch by Jody McIntyre <jodym@oeone.com>
r=jake
2002-03-27 14:52:04 +00:00
tara%tequilarista.org
a84ddb446f
Checking in patch for bug#36597, patch from miri@punknet.cz
2001-10-31 04:07:25 +00:00
timeless%mac.com
b28e18d445
Bugzilla Bug 90598 spelling and minor syntactic correctness [doeHs]
...
r=mpt a=terry. [C=WP, A=OED]
2001-07-13 17:45:52 +00:00
kestes%tradinglinx.com
bd5690d388
Fixed typo form.
...
maxdate field was not formatted in the same way as the
mindate field, this caused the value to not be loaded from the URL.
2001-02-08 22:53:34 +00:00
dmose%mozilla.org
18f71469a1
updated license boilerplate
1999-11-01 23:33:56 +00:00
terry%mozilla.org
b2df112085
Massive spank to put "use strict" in all Bonsai code.
1999-10-18 22:55:01 +00:00
terry%mozilla.org
7ff7cb6e09
Fixed a bunch of "undefined variable" warnings.
1999-10-15 23:16:32 +00:00
terry%mozilla.org
5ba179a29e
newer alphas of MySQL won't let use "when" as a column name, so let's change
...
our usage while it's still easy to do so.
1999-10-12 18:05:42 +00:00
terry%mozilla.org
50118c7bf8
Fix some Y2K issues! Now, don't freak out. The only real bug was
...
that lists of checkins would have started displaying the year as "100"
in the year 2000. I have changed to display 4-digit years throughout.
1999-08-05 22:43:45 +00:00
terry%mozilla.org
45d1045d17
The 'modules' list on the main query page was just all wrong.
1999-07-27 16:25:08 +00:00
terry%mozilla.org
d1360d1cc4
Massive patch (mostly from Dieter Weber <dieter@Compatible.COM>) -- ported all TCL code to Perl.
1999-07-23 18:39:31 +00:00
terry%netscape.com
c97aa8307f
Patch from Eric B. Mitchell <emitchell@altaira.com> -- Now uses
...
DBI::mysql instead of the mysql perl module that came with mysql. One
side effect of htis is that it now tries to log in as user "bonsai";
I'm actually not sure what username it was trying before. Also, fixes
a few minor bugs.
1999-04-09 14:22:53 +00:00
ltabb%netscape.com
ce4e3553ca
added doesn't match regular expression where regular expressions are handled.
1998-10-08 22:01:36 +00:00
terry
a5ab99df60
Bonsai and Tinderbox have been freed.
1998-06-16 21:43:24 +00:00