BMO/Recent Changes: Difference between revisions

From MozillaWiki
< BMO
Jump to navigation Jump to search
 
(253 intermediate revisions by 2 users not shown)
Line 1: Line 1:
= Recent Changes =
= Recent Changes =


== 2019-04-18 ==
== 2026-02-04 ==


[https://github.com/mozilla-bteam/bmo/tree/release-20190418.1 release-20190418.1]
[https://github.com/mozilla-bteam/bmo/tree/release-20260204.1 release-20260204.1]
* {{bug|1541303}} Default component bug type is not set as expected; enhancement severity is still used for existing bugs
* {{bug|2009883}} [HackerOne] [Bugzilla] Account Takeover via Side-Channel Attack
* {{bug|1543760}} When cloning a bug, the bug is added to 'Regressed by' of the new bug
* {{bug|2012069}} [HackerOne] unauthenticated blind SQL injection in search feature
* {{bug|1543718}} Obsolete attachments should have a strikethrough
* {{bug|1764214}} add a warning that the BMO uplift request flow will soon be deprecated
* {{bug|1543798}} Do not treat email addresses with invalid.bugs as unassigned when displaying bugs
* {{bug|1544304}} Wrong escaping of quotes in attachment titles.
* {{bug|1541555}} Add facility for requiring an API Key to always come from the same IP address
* {{bug|1545295}} socorro lens chart for crash statistics blocked by CSP (Blocked by Content Security Policy)
* {{bug|1543163}} Make Toolkit :: Blocklist Policy Request component private by default
* {{bug|1545269}} Request for Bug Dependency Graphs return a 404


== 2019-04-10 ==
== 2026-01-20 ==


[https://github.com/mozilla-bteam/bmo/tree/release-20190410.3 release-20190410.3]
[https://github.com/mozilla-bteam/bmo/tree/release-20260120.1 release-20260120.1]
* {{bug|1539302}} Add "attachment is patch" field to bug
* {{bug|2009746}} Whine events allow newlines in subject line which can be used to inject email headers
* {{bug|1531757}} Allow to search only in bug description (comment 0) with both Quick and Advenced Search as well as API
* {{bug|1996136}} Create a new cron script (weekly) that accesses the Recorded Future API and looks for compromised BMO accounts
* {{bug|1539941}} Link keywords and flags in bug detail to searches (and later graphing)
* {{bug|2007378}} [HackerOne] Path traversal on bugzilla.mozilla.org via improper path canonicalization leads to arbitrary content loading
* {{bug|1541111}} Separate bugs on Triage Owners page by type
* {{bug|2009837}} After recent update sitemap extensions is including improperly formatted urls in the sitemap gz files
* {{bug|1281200}} New show_bug.cgi view should have an option to have fields editable by default.
* {{bug|1071066}} For bugs with aliases, inline history displays the bug number rather than the bug alias
* {{bug|1283392}} Query for history or comment containing private bug id should return no data for this bug
* {{bug|1344427}} Display "nn people including you" if current user is cc'ed on a bug.
* {{bug|1541582}} If an uplift request answers Yes to needing manual QA, the qe-verify flag should be set to '+', not '?'
* {{bug|1540860}} Add `$schema` key and descriptions to json schema output
* {{bug|1540857}} Change simple ping document id
* {{bug|1541918}} Allow report ping namespace to be changed
* {{bug|1541123}} "1 new change since last visit" shown for the change I just submitted
* {{bug|1541231}} Certain Phablicator requests are displayed as inline attachment
* {{bug|1152434}} Remove regressing bug ID field from uplift approval request once regressed-by field is added
* {{bug|1541555}} Add facility for requiring an API Key to always come from the same IP address
* {{bug|1541484}} Move the bug type from header to module and de-emphasize it so it’s not confused with bug status
* {{bug|1539908}} Replace no_break filter with CSS nowrap
* {{bug|1542882}} Don't do image preview on security bugs
* {{bug|1541133}} Bug type field should be a radio button
* {{bug|1527459}} Display dependency bugs by type, using the same colour/icon for each
* {{bug|1531481}} Add bug type labels to My Dashboard
* {{bug|1543155}} Observatory score dropped from an A+ to a D-


== 2025-12-16 ==


== 2019-04-01 ==
[https://github.com/mozilla-bteam/bmo/tree/release-20251216.1 release-20251216.1]
* {{bug|2005835}} Please add a markdown preview option to the description field of the Client Bug Bounty Form
* {{bug|1931686}} don't preselect a component in the form to file a new bug
* {{bug|2004722}} Cannot expand hidden comment any more, when not logged in


[https://github.com/mozilla-bteam/bmo/tree/release-20190401.2 release-20190401.2]
== 2025-12-04 ==
* {{bug|1535075}} Change sort key for Priority so P1 will be first when sorting bugs
* {{bug|994896}} Add the ability to get comments, attachments, and history using Bug.get
* {{bug|1535376}} add support for upstream phabricator to the see-also fields
* {{bug|1286448}} Remove Splinter Review for GitHub PRs
* {{bug|1535498}} Go directly to the blocklisting form when selecting blocklist policy requests on the enter_bug page.
* {{bug|1513956}} The summary in the history contains additional white spaces
* {{bug|1537012}} Add creator_detail field to Get Attachment API
* {{bug|1535191}} Can't scroll attachments in lightbox view
* {{bug|1536279}} Sort suggested users by last seen date, not last login date
* {{bug|1538047}} Plain text attachment cut off due to wrong charset detection (UTF-8 as Windows-1252)
* {{bug|1538712}} Add notice to end of secbugs report concerning rare history changes
* {{bug|1538989}} Update blocklist form wording
* {{bug|1508695}} Incorrect or missing tracking flags on search results in REST API
* {{bug|1461492}} Add an optional regressed-by field in bugs
* {{bug|1522341}} Implement new field for indicating if a bug is a task, enhancement, or defect
* {{bug|1539442}} Fix secbugs event builder to get more than the lastest event.
* {{bug|1534084}} Hide Phablicator requests from Attachment list
* {{bug|1539849}} Multiple uplift request is not working as expected
* {{bug|1538957}} Add debugging information to emails for investigating in more detail later.
* {{bug|1481106}} Start logging bug_user_last_visit for all visited bugs even if the user is not involved
* {{bug|1453272}} Don't set specifically requestable flags, including needinfo, when it's empty
* {{bug|1535190}} Make sure inline attachments are displayed properly
* {{bug|1535723}} Don't show inline attachments for bugs that have the keywords "hang", "assertion", or "crash"
* {{bug|1522348}} Bulk assign open bugs to task, enhancement, defect field
* {{bug|1477931}} Show number of review/feedback/needinfo in user autocomplete and prevent person from being added if requests are blocked
* {{bug|1527053}} Can't search for "video" to find all relevant bugs
* {{bug|1538383}} Allow to hide inline preview when attaching a file, e.g. SVG crashtests.
* {{bug|1506144}} Access bugzilla security bug metadata via STMO


== 2019-03-12 ==
[https://github.com/mozilla-bteam/bmo/tree/release-20251204.1 release-20251204.1]
* {{bug|2004060}} Sometimes comment is posted twice due to mid-air collision for non editbugs users


[https://github.com/mozilla-bteam/bmo/tree/release-20190312.1 release-20190312.1]
== 2025-12-03 ==
* {{bug|989476}} A comment from a "new to bugzilla" user on a mentored [good-first-bug] should trip the needinfo flag.
* {{bug|1529985}} "Phabricator Revisions" section of bug is stuck at "Loading...." due to typo in phabricator.js
* {{bug|1496207}} Allow to request uplift of multiple patches at once by adding checkboxes for other patches
* {{bug|1527178}} If an uplift request answers Yes to needing manual QA, automatically set the qe-verify flag
* {{bug|1502500}} Adding the qe-verify flag as an editable field when using Bugzilla's "Change Several Bugs at Once" option
* {{bug|1463874}} Update Default Products and Remove Buglist Queries from triage_owners.html
* {{bug|1532406}} Removed useless trick_taint() and untaint() calls
* {{bug|1530010}} Drop support for dangerous 'utf8' characterset in favor of 'utf8mb4'
* {{bug|1527053}} Can't search for "video" to find all relevant bugs
* {{bug|1532482}} Improve “new changes since” indicator UX
* {{bug|1503483}} Convert redirects to absolute path
* {{bug|1472522}} Show image, video, audio, text attachments inline
* {{bug|1532409}} Introduce Bugzilla::Model (a DBIx::Class::Schema)
* {{bug|1532416}} Refactor move_flag_types to use Mojolicious and DBIx::Class
* {{bug|1477931}} Show number of review/feedback/needinfo in user autocomplete and prevent person from being added if requests are blocked
* {{bug|1276471}} Document that GET /rest/bug returns a maximum of $max_search_results bugs by default (default: 10000) even with limit=0
* {{bug|1391439}} Add ability to capture and attach a screenshot through the Bugzilla UI
* {{bug|1507812}} merge_user.pl should not continue if the old user id has an account in Phabricator
* {{bug|1532766}} Make the the application root a static, cache-friendly redirect to /home
* {{bug|1497721}} rest/bug/ API redirects when number of ids in query string is >= 900


== 2019-02-21 ==
[https://github.com/mozilla-bteam/bmo/tree/release-20251203.1 release-20251203.1]
* {{bug|2003859}} Need info is not cleared after submitting a new comment


[https://github.com/mozilla-bteam/bmo/tree/release-20190221.1 release-20190221.1]
= Archive =
* {{bug|1523317}} Exclude Graveyard products from QuickSearch results
* {{bug|1512815}} Optimize Bugzilla->active_custom_fields() for CPU and memory usage
* {{bug|1524174}} Redirect to show_bug.cgi after creating bug or updating a bug
* {{bug|1524213}} phabricator revisions list on bug page has extra / in the revision link
* {{bug|1523404}} Cannot clear all scopes when editing an oauth2 client. Throws DB error
* {{bug|1525308}} Custom Bug Entry Form for Blocklist Policy Requests
* {{bug|1525451}} Update triage owner report defaults
* {{bug|1524158}} markdown generated by approval comment form could be improved
* {{bug|1525808}} Remove CC changes from activity stream
* {{bug|1476111}} Enable syntax highlighting in comment code blocks
* {{bug|1528334}} Adding image to main bugzilla screen for User Research
* {{bug|1047539}} Bugmails including "See Also" bug links do not include a "Referenced Bugs" section with the summary of the other bug
* {{bug|1402894}} Remove "Restrict this session to this IP" option from login page
* {{bug|1461492}} Add an optional regressed-by field in bugs
* {{bug|1528277}} Add "Has STR" and "Has Regression Range" fields for the 'External Software Affecting Firefox' product


= Archive =
* [[BMO/Recent_Changes/2026-02|2026-02]]
* [[BMO/Recent_Changes/2026-01|2026-01]]
* [[BMO/Recent_Changes/2025-12|2025-12]]
* [[BMO/Recent_Changes/2025-11|2025-11]]
* [[BMO/Recent_Changes/2025-10|2025-10]]
* [[BMO/Recent_Changes/2025-09|2025-09]]
* [[BMO/Recent_Changes/2025-08|2025-08]]
* [[BMO/Recent_Changes/2025-07|2025-07]]
* [[BMO/Recent_Changes/2025-06|2025-06]]
* [[BMO/Recent_Changes/2025-05|2025-05]]
* [[BMO/Recent_Changes/2025-04|2025-04]]
* [[BMO/Recent_Changes/2025-03|2025-03]]
* [[BMO/Recent_Changes/2025-02|2025-02]]
* [[BMO/Recent_Changes/2025-01|2025-01]]
* [[BMO/Recent_Changes/2024-12|2024-12]]
* [[BMO/Recent_Changes/2024-11|2024-11]]
* [[BMO/Recent_Changes/2024-10|2024-10]]
* [[BMO/Recent_Changes/2024-09|2024-09]]
* [[BMO/Recent_Changes/2024-08|2024-08]]
* [[BMO/Recent_Changes/2024-07|2024-07]]
* [[BMO/Recent_Changes/2024-06|2024-06]]
* [[BMO/Recent_Changes/2024-05|2024-05]]
* [[BMO/Recent_Changes/2024-04|2024-04]]
* [[BMO/Recent_Changes/2024-03|2024-03]]
* [[BMO/Recent_Changes/2024-02|2024-02]]
* [[BMO/Recent_Changes/2023-12|2023-12]]
* [[BMO/Recent_Changes/2023-11|2023-11]]
* [[BMO/Recent_Changes/2023-10|2023-10]]
* [[BMO/Recent_Changes/2023-09|2023-09]]
* [[BMO/Recent_Changes/2023-08|2023-08]]
* [[BMO/Recent_Changes/2023-07|2023-07]]
* [[BMO/Recent_Changes/2023-06|2023-06]]
* [[BMO/Recent_Changes/2023-05|2023-05]]
* [[BMO/Recent_Changes/2023-03|2023-03]]
* [[BMO/Recent_Changes/2023-02|2023-02]]
* [[BMO/Recent_Changes/2023-01|2023-01]]
* [[BMO/Recent_Changes/2022-12|2022-12]]
* [[BMO/Recent_Changes/2022-11|2022-11]]
* [[BMO/Recent_Changes/2022-10|2022-10]]
* [[BMO/Recent_Changes/2022-09|2022-09]]
* [[BMO/Recent_Changes/2022-08|2022-08]]
* [[BMO/Recent_Changes/2022-07|2022-07]]
* [[BMO/Recent_Changes/2022-06|2022-06]]
* [[BMO/Recent_Changes/2022-05|2022-05]]
* [[BMO/Recent_Changes/2022-04|2022-04]]
* [[BMO/Recent_Changes/2022-03|2022-03]]
* [[BMO/Recent_Changes/2022-02|2022-02]]
* [[BMO/Recent_Changes/2022-01|2022-01]]
* [[BMO/Recent_Changes/2021-12|2021-12]]
* [[BMO/Recent_Changes/2021-11|2021-11]]
* [[BMO/Recent_Changes/2021-10|2021-10]]
* [[BMO/Recent_Changes/2021-09|2021-09]]
* [[BMO/Recent_Changes/2021-07|2021-07]]
* [[BMO/Recent_Changes/2021-06|2021-06]]
* [[BMO/Recent_Changes/2021-05|2021-05]]
* [[BMO/Recent_Changes/2021-03|2021-03]]
* [[BMO/Recent_Changes/2021-02|2021-02]]
* [[BMO/Recent_Changes/2021-01|2021-01]]
* [[BMO/Recent_Changes/2020-12|2020-12]]
* [[BMO/Recent_Changes/2020-11|2020-11]]
* [[BMO/Recent_Changes/2020-10|2020-10]]
* [[BMO/Recent_Changes/2020-09|2020-09]]
* [[BMO/Recent_Changes/2020-08|2020-08]]
* [[BMO/Recent_Changes/2020-07|2020-07]]
* [[BMO/Recent_Changes/2020-06|2020-06]]
* [[BMO/Recent_Changes/2020-05|2020-05]]
* [[BMO/Recent_Changes/2020-04|2020-04]]
* [[BMO/Recent_Changes/2020-03|2020-03]]
* [[BMO/Recent_Changes/2020-02|2020-02]]
* [[BMO/Recent_Changes/2020-01|2020-01]]
* [[BMO/Recent_Changes/2019-12|2019-12]]
* [[BMO/Recent_Changes/2019-11|2019-11]]
* [[BMO/Recent_Changes/2019-10|2019-10]]
* [[BMO/Recent_Changes/2019-09|2019-09]]
* [[BMO/Recent_Changes/2019-08|2019-08]]
* [[BMO/Recent_Changes/2019-07|2019-07]]
* [[BMO/Recent_Changes/2019-06|2019-06]]
* [[BMO/Recent_Changes/2019-05|2019-05]]
* [[BMO/Recent_Changes/2019-04|2019-04]]
* [[BMO/Recent_Changes/2019-04|2019-04]]
* [[BMO/Recent_Changes/2019-03|2019-03]]
* [[BMO/Recent_Changes/2019-03|2019-03]]

Latest revision as of 01:53, 5 February 2026

Recent Changes

2026-02-04

release-20260204.1

  • bug 2009883 [HackerOne] [Bugzilla] Account Takeover via Side-Channel Attack
  • bug 2012069 [HackerOne] unauthenticated blind SQL injection in search feature
  • bug 1764214 add a warning that the BMO uplift request flow will soon be deprecated

2026-01-20

release-20260120.1

  • bug 2009746 Whine events allow newlines in subject line which can be used to inject email headers
  • bug 1996136 Create a new cron script (weekly) that accesses the Recorded Future API and looks for compromised BMO accounts
  • bug 2007378 [HackerOne] Path traversal on bugzilla.mozilla.org via improper path canonicalization leads to arbitrary content loading
  • bug 2009837 After recent update sitemap extensions is including improperly formatted urls in the sitemap gz files

2025-12-16

release-20251216.1

  • bug 2005835 Please add a markdown preview option to the description field of the Client Bug Bounty Form
  • bug 1931686 don't preselect a component in the form to file a new bug
  • bug 2004722 Cannot expand hidden comment any more, when not logged in

2025-12-04

release-20251204.1

  • bug 2004060 Sometimes comment is posted twice due to mid-air collision for non editbugs users

2025-12-03

release-20251203.1

  • bug 2003859 Need info is not cleared after submitting a new comment

Archive