aboutsummaryrefslogtreecommitdiffstats
path: root/Mailman/Cgi/private.py (follow)
Commit message (Expand)AuthorAgeFilesLines
* Fixed content injection vulnerability via the private login page.Mark Sapiro2020-05-071-7/+3
* Strip leading/trailing spaces from login email for private and options login.Mark Sapiro2019-03-061-1/+1
* Bump copyright dates.Mark Sapiro2018-06-171-1/+1
* Implement security log.Mark Sapiro2018-06-111-0/+7
|\
| * Changes based on feedback from Mark.Jim Popovitch2018-06-101-1/+2
| * Improved logging of security related eventsJim Popovitch2018-06-061-0/+5
|/
* Bumped Copyrights and fixed a bug in prior commit.Mark Sapiro2017-06-051-1/+1
* Defend against CGI requests with multiple values for the same parameter.Mark Sapiro2017-06-051-2/+2
* Catch TypeError from certain defective crafted POST requests.Mark Sapiro2016-07-141-2/+11
* - Added the list name to the vette log "held message approved" entry.Mark Sapiro2014-03-211-2/+2
* Fixed a typo in the UPGRADING doc - bin/upgrade -> bin/update.Mark Sapiro2012-06-201-0/+0
* Backported the password reminder from private archive login feature from theMark Sapiro2012-03-251-1/+22
* Updated copyright year for previous change.Mark Sapiro2011-02-051-1/+1
* Issue an HTTP 404 status for private archive file not found.Mark Sapiro2011-02-051-0/+1
* Added roster to the CGIs that return HTTP 401 status for an authenticationMark Sapiro2010-03-291-0/+2
* We now give an HTTP 401 status for authentication failures from admin,Mark Sapiro2010-02-041-0/+2
* - Fixed a bug where going to an archives/private/list.mbox/list.mbox URLMark Sapiro2010-01-211-1/+3
* Fix XSS bug: Thanks Moritz Naumann. (CVE-2006-1512)tkikuchi2006-04-041-2/+3
* A cleansing pass, almost entirely cosmetic. Such things as whitespacebwarsaw2005-12-301-12/+10
* Log hostile path to mischief, not errormsapiro2005-12-121-1/+1
* Fixes for bug 1080943.msapiro2005-12-121-6/+27
* FSF office has moved to 51 Franklin Street.tkikuchi2005-08-271-1/+1
* Spelling and copyright years updates.bwarsaw2005-02-101-3/+3
* Checkin for initial workaround for directry traverse flaw in private.py.tkikuchi2005-02-101-3/+6
* Backporting from the trunk.bwarsaw2003-02-081-13/+15
* This commit was manufactured by cvs2svn to create branch2003-01-021-0/+162