This project is mirrored from https://github.com/sympa-community/sympa.git. Pull mirroring updated .
  1. 20 Jan, 2009 2 commits
  2. 19 Jan, 2009 1 commit
    • david.verdin's avatar
      [bug] HTML character escaping was made on reference on the main hash... · 755d226c
      david.verdin authored
      [bug] HTML character escaping was made on reference on the main hash containing all the data, including list config. as a result, after execution of the first action, all the data were HTML escaped, including possible double quotes in SQL queries. Though never saved in the config file, these data were responsible for synchronisation problems. Fixed by using a copy of the $param hash for XSS protection and TT2 parsing.
      
      
      git-svn-id: https://subversion.renater.fr/sympa/trunk@5443 05aa8bb8-cd2b-0410-b1d7-8918dfa770ce
      755d226c
  3. 16 Jan, 2009 2 commits
  4. 14 Jan, 2009 2 commits
  5. 13 Jan, 2009 1 commit
  6. 12 Jan, 2009 1 commit
  7. 09 Jan, 2009 2 commits
  8. 07 Jan, 2009 2 commits
  9. 06 Jan, 2009 2 commits
  10. 05 Jan, 2009 1 commit
  11. 19 Dec, 2008 3 commits
  12. 18 Dec, 2008 2 commits
  13. 17 Dec, 2008 1 commit
  14. 12 Dec, 2008 1 commit
  15. 09 Dec, 2008 1 commit
  16. 03 Dec, 2008 1 commit
    • david.verdin's avatar
      [bug][#4555] When a user connected to the Sympa web interface clicked on a... · 35c1d4ca
      david.verdin authored
      [bug][#4555] When a user connected to the Sympa web interface clicked on a ticket for the second time, she was issued an error message. As she was connected already, the normal evaluation of the authorization scenario should ensue, instead of simply refusing to execute it. This was fixed by evaluating the existence of the ticket. Now, Sympa behaves like this: If a non connected user clicks on a ticket link, if it is the first time the ticket is clicked, the user is connected using the email of the ticket context. If the ticket has been previously used, the user is not connected and an error is issued. If the user is connected already when she clicks the ticket, the action is executed, with the authorization being checked using the email the user was authentified with at the time she clicked the ticket.
      
      
      git-svn-id: https://subversion.renater.fr/sympa/trunk@5402 05aa8bb8-cd2b-0410-b1d7-8918dfa770ce
      35c1d4ca
  17. 28 Nov, 2008 2 commits
  18. 25 Nov, 2008 1 commit
  19. 18 Nov, 2008 3 commits
  20. 14 Nov, 2008 9 commits