| Commit message (Collapse) | Author | Age | Files | Lines |
|
|
|
| |
Notes:
svn path=/head/; revision=271305
|
|
|
|
|
|
|
|
|
| |
PR: 123604
Submitted by: TAOKA Fumiyoshi <fmysh@iijmio-mail.jp>
Approved by: maintainer timeout
Notes:
svn path=/head/; revision=214076
|
|
|
|
|
|
|
|
| |
PR: ports/110952
Submitted by: Yasushi Hayashi <yasi@yasi.to> (maintainer)
Notes:
svn path=/head/; revision=188636
|
|
|
|
|
|
|
|
| |
PR: ports/110808
Submitted by: Yasushi Hayashi <yasi@yasi.to> (maintainer)
Notes:
svn path=/head/; revision=188294
|
|
|
|
|
|
|
|
|
| |
PR: ports/110709
Submitted by: Yasushi Hayashi <yasi@yasi.to> (maintainer)
Security: http://www.zope.org/Products/Zope/Hotfix-2007-03-20/announcement/view
Notes:
svn path=/head/; revision=188126
|
|
|
|
|
|
|
|
| |
PR: ports/105718
Submitted by: HAYASHI Yasushi <yasi@yasi.to> (maintainer)
Notes:
svn path=/head/; revision=177748
|
|
|
|
|
|
|
|
| |
PR: ports/104007
Submitted by: HAYASHI Yasushi <yasi@yasi.to> (maintainer)
Notes:
svn path=/head/; revision=174661
|
|
|
|
|
|
|
|
| |
PR: ports/101236
Submitted by: HAYASHI Yasushi <yasi at yasi.to> (maintainer)
Notes:
svn path=/head/; revision=169567
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
of the docutils module to parse and render "restructured text". Sites which
allow untrusted users to create restructured text as through-the-web
content should apply this hotfix.
PR: ports/99952
Submitted by: maintainer
Security: http://www.zope.org/Products/Zope/Hotfix-2006-07-05/Hotfix-2006-07-05/
Notes:
svn path=/head/; revision=167265
|
|
|
|
|
|
|
|
| |
PR: ports/97340
Submitted by: maintainer
Notes:
svn path=/head/; revision=162596
|
|
|
|
|
|
|
|
| |
PR: 96804
Submitted by: maintainer
Notes:
svn path=/head/; revision=161453
|
|
|
|
|
|
|
|
| |
PR: ports/94776
Submitted by: maintainer
Notes:
svn path=/head/; revision=157901
|
|
|
|
|
|
|
|
|
| |
PR: ports/91824
Submitted by: HAYASHI Yasushi <yasi@yasi.to>
Repocopy by: marcus
Notes:
svn path=/head/; revision=154638
|
|
|
|
|
|
|
|
| |
PR: ports/91365
Submitted by: Denis Shaposhnikov <dsh@vlink.ru> (maintainer)
Notes:
svn path=/head/; revision=152845
|
|
|
|
|
|
|
|
|
|
| |
Changelog http://www.zope.org/Products/Zope/2.8.4/CHANGES.txt
PR: 88078
Submitted by: Denis Shaposhnikov <dsh@vlink.ru> (maintainer)
Notes:
svn path=/head/; revision=146521
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
2.8.3 release:
http://www.zope.org/Products/Zope/2.8.3/CHANGES.txt
==========
* ZSQLMethod.manage_main: Moved the error message that warns of a
non-existing or closed database connection next to the
Connection ID dropdown and present it using red to increase its
visibility.
* Update to Docutils 0.3.9 (forgotten in Zope 2.8.2)
==========
PR: ports/87650
Submitted by: maintainer
Notes:
svn path=/head/; revision=145860
|
|
|
|
|
|
|
|
| |
PR: 87428
Submitted by: Denis Shaposhnikov <dsh@vlink.ru> (maintainer)
Notes:
svn path=/head/; revision=145374
|
|
|
|
|
|
|
|
|
|
|
|
| |
This hotfix addresses an important security issue that affects users of Zope
versions 2.6 or higher.
PR: 87198
Submitted by: Denis Shaposhnikov <dsh@vlink.ru> (maintainer)
Security: http://www.vuxml.org/freebsd/d2b80c7c-3aae-11da-9484-00123ffe8333.html
Notes:
svn path=/head/; revision=145048
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
Here are some of the "headlines" mentioned in the features list.
Database Integration
SQL and HTML in Harmony
Multiple Data Sources
Publish Databases
Application Development
DTML Scripting
External Methods
Content Management
Builtin Objects
Document Templates
Web to Objects
Integrated Object Database
Managed Through the Web
Direct URL Access to Objects
PR: 85063
Submitted by: Denis Shaposhnikov <dsh@vlink.ru>
Notes:
svn path=/head/; revision=143107
|
|
|
|
|
|
|
|
|
| |
PR: ports/83377
Submitted by: HAYASHI Yasushi <yasi@yasi.to>
Approved by: Gerhard Schmidt <estartu@augusta.de> (maintainer)
Notes:
svn path=/head/; revision=139077
|
|
|
|
|
|
|
|
|
| |
PR: ports/80476
Submitted by: HAYASHI Yasushi <yasi@yasi.to>
Approved by: maintainer
Notes:
svn path=/head/; revision=134808
|
|
|
|
|
|
|
|
|
| |
PR: ports/79812
Submitted by: HAYASHI Yasushi <yasi@yasi.to>
Approved by: Gerhard Schmidt <estartu@augusta.de> (maintainer)
Notes:
svn path=/head/; revision=133217
|
|
|
|
|
|
|
|
| |
PR: ports/77633
Submitted by: Gerhard Schmidt <estartu@augusta.de> (maintainer)
Notes:
svn path=/head/; revision=129190
|
|
|
|
|
|
|
|
| |
PR: ports/73969
Submitted by: Gerhard Schmidt <estartu@augusta.de> (maintainer)
Notes:
svn path=/head/; revision=121728
|
|
|
|
|
|
|
|
|
|
|
| |
- Add special pkg-message to package to help with installation from package
PR: ports/69476
Submitted by: HAYASHI Yasushi <yasi@yasi.to>,
Gerhard Schmidt <estartu@augusta.de> (maintainer)
Notes:
svn path=/head/; revision=114562
|
|
|
|
|
|
|
|
|
| |
PR: ports/68408
Submitted by: HAYASHI Yasushi
Approved by: maintainer.
Notes:
svn path=/head/; revision=112801
|
|
|
|
|
|
|
|
|
| |
PR: ports/63265
Submitted by: Gerhard Schmidt <estartu@augusta.de>
Approved by: crowds on python@ via perky (in general)
Notes:
svn path=/head/; revision=105919
|
|
|
|
| |
Notes:
svn path=/head/; revision=105747
|
|
|
|
|
|
|
|
| |
PR: 59000
Submitted by: Osma Suominen <ozone@sange.fi>
Notes:
svn path=/head/; revision=94666
|
|
|
|
|
|
|
|
| |
PR: 52038
Submitted by: Miguel Mendez <flynn@energyhq.es.eu.org>
Notes:
svn path=/head/; revision=80729
|
|
|
|
|
|
|
|
|
|
| |
the plist ;)
PR: 46168
Submitted by: Simon 'corecode' Schubert <corecode@eikonww2.eikon.e-technik.tu-muenchen.de>
Notes:
svn path=/head/; revision=72978
|
|
|
|
|
|
|
|
| |
PR: ports/37763
Submitted by: HAYASHI Yasushi <yasi@yasi.to>
Notes:
svn path=/head/; revision=58725
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
http://www.zope.org/Products/Zope/Hotfix_2002-03-01/README.txt which
says:
``The issue involves the checking of security for objects with proxy
roles. The context of the owner user that created the object with
proxy roles was not being taken into account when determining access
to the object with proxy roles. This flaw could allow users defined
in subfolders of a site with sufficient privileges to access objects
at higher levels in the site that they would not normally be able to
access.''
PR: 36103
Submitted by: HAYASHI Yasushi <yasi@yasi.to>
Notes:
svn path=/head/; revision=56470
|
|
|
|
|
|
|
|
| |
PR: ports/34430
Submitted by: HAYASHI Yasushi <yasi@yasi.to>
Notes:
svn path=/head/; revision=54249
|
|
|
|
| |
Notes:
svn path=/head/; revision=48965
|
|
|
|
| |
Notes:
svn path=/head/; revision=47599
|
|
|
|
|
|
|
|
|
|
|
|
| |
``The issue involves an error in the '_check_context' method of the
AccessControl.User.BasicUser class. The bug made it possible to access
Zope objects via acquisition that a user would not otherwise have access
to. This issue could allow users with enough internal knowledge of Zope
to perform actions higher in the object hierarchy than they should be
able to.''
Notes:
svn path=/head/; revision=45808
|
|
|
|
|
|
|
| |
Approved by: nbm
Notes:
svn path=/head/; revision=45493
|
|
|
|
|
|
|
| |
Approved by: nbm
Notes:
svn path=/head/; revision=44764
|
|
|
|
| |
Notes:
svn path=/head/; revision=42207
|
|
|
|
| |
Notes:
svn path=/head/; revision=40657
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
From the Zope site:
The issue involves an error in the 'aq_inContextOf' method of objects that
support acquisition. A recent change to the access validation machinery
made this bug begin to affect security restrictions. The bug, with the
change to validation, made it possible to access Zope objects via
acquisition that a user would not otherwise have access to. This issue
could allow users with enough internal knowledge of Zope to perform actions
higher in the object hierarchy than they should be able to.
Notes:
svn path=/head/; revision=39416
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
From the Zope hotfix:
This hotfix addresses and important security issue that affects Zope
versions up to and including Zope 2.3.1 b1.
The issue is related to ZClasses in that a user with through-the-web
scripting capabilities on a Zope site can view and assign class
attributes to ZClasses, possibly allowing them to make inappropriate
changes to ZClass instances.
This patch also fixes problems in the ObjectManager, PropertyManager,
and PropertySheet classes related to mutability of method return values
which could be perceived as a security problem.
We *highly* recommend that any Zope site running versions of Zope up to
and including 2.3.1 b1 have this hotfix product installed to mitigate
these issues if the site is accessible by untrusted users who have
through-the-web scripting privileges.
Notes:
svn path=/head/; revision=39027
|
|
|
|
|
|
|
| |
the 'new' module.
Notes:
svn path=/head/; revision=37748
|
|
|
|
| |
Notes:
svn path=/head/; revision=37293
|
|
|
|
|
|
|
|
|
|
| |
security hotfixes.
All Zope users are encouraged to upgrade, or apply the hotfixes
themselves.
Notes:
svn path=/head/; revision=36150
|
|
|
|
|
|
|
|
|
|
| |
after testing.
PR: 22050
Submitted by: Taoka Fumiyoshi <fmysh@ga2.so-net.ne.jp>
Notes:
svn path=/head/; revision=33950
|
|
|
|
|
|
|
|
|
| |
which allows people who may edit DTML to gain higher privilege, and
those who have higher privilege in some areas of the Zope tree to gain
it in other areas.
Notes:
svn path=/head/; revision=33844
|
|
|
|
|
|
|
| |
Also allow zope to be installed by non-root.
Notes:
svn path=/head/; revision=32844
|
|
|
|
|
|
|
|
|
|
|
| |
Zope shutdown bug fixed.
Reported by: Marc Rassbach <marc@milestonerdl.com>
Reported by: Jimmy Olgeni <olgeni@uli.it>
Zope startup bug fixed (I think).
Notes:
svn path=/head/; revision=32350
|