aboutsummaryrefslogtreecommitdiffstats
path: root/Mailman/Utils.py (unfollow)
Commit message (Expand)AuthorFilesLines
2011-05-01Made the web escaping of additional characters a configuration setting.Mark Sapiro1-12/+6
2011-04-26Yet another change to the broken browser HTML escaping.Mark Sapiro1-1/+2
2011-04-26Don't try converting non-ascii to HTML entities in unicode.Mark Sapiro1-2/+5
2011-04-25Strengthened escaping of user web data by including some characters thatMark Sapiro1-0/+8
2011-03-21Changed the maximum number of arguments for the who command to beMark Sapiro1-2/+2
2010-09-09Two potential XSS vulnerabilities have been identified and fixed.Mark Sapiro1-93/+94
2009-08-01XSS protection in the web interface went too far in escaping HTMLMark Sapiro1-1/+3
2009-07-31Backported several bug fixes from the 2.2 branch.Mark Sapiro1-20/+21
2009-01-02Mailman/Utils.pyMark Sapiro1-2/+2
2008-12-05Changed the regexp for Utils.suspiciousHTML to exempt theMark Sapiro1-1/+2
2008-11-12Apply Heiko Rommel's patch for hashlib deprecation warnings for bug 293178.Barry Warsaw1-3/+14
2008-05-07Changed Utils.ValidateEmail to not allow specials (particularly ':')Mark Sapiro1-2/+9
2007-12-04Mailman/Cgi/edithtml.pyMark Sapiro1-0/+151
2007-11-25Mailman/Defaults.py.inMark Sapiro1-0/+3
2007-07-17Detect 'who' with 1 or 2 arguments as administrivia.Mark Sapiro1-2/+2
2006-08-30CVE-2006-3636. Fixes for various cross-site scripting issues. Discovery bybwarsaw1-1/+1
2006-07-30Back port Python 2.5 compatibility changes to Mailman 2.1. Specifically,bwarsaw1-3/+5
2006-06-23- Decorate.py Fixed bug 1507248 by ignoring header/footer charactersmsapiro1-2/+8
2006-03-18Improved fix for bug 1275856 to return host part of DEFAULT_URL if any frommsapiro1-7/+5
2006-03-12Fixed long standing bug (1275856) - get_domain() returned DEFAULT_EMAIL_HOSTmsapiro1-3/+8
2005-08-27FSF office has moved to 51 Franklin Street.tkikuchi1-1/+1
2005-01-16New names added to ACKNOWLEDGMENTS. Updated NEWS in preparation for 2.1.6b1.bwarsaw1-1/+1
2005-01-11Sorry, leagality of '%' and '!' is a matter of MTA (of the user's).tkikuchi1-1/+1
2005-01-11Add '%' and '!' in _badchars. They are used for source routing.tkikuchi1-1/+1
2004-12-31Secure_MakeRandomPassword(): Log an error when secure passwords were requestedbwarsaw1-0/+3
2004-12-30From the NEWS file:bwarsaw1-6/+45
2004-10-09[ 1030228 ] Mass Subscribe address with control character - can't deletetkikuchi1-1/+1
2004-09-18More error handling for oneline().tkikuchi1-1/+2
2003-12-26oneline(): Another part of TK's patch # 865661. This one adds abwarsaw1-0/+15
2003-12-01True/False where appropriate.bwarsaw1-1/+1
2003-10-07wrap(): Minor code cleaning.bwarsaw1-4/+2
2003-09-22Backporting from the HEAD -- Mailman packagebwarsaw1-4/+26
2003-04-07Backporting from trunk.bwarsaw1-41/+49
2003-03-31Backporting from trunkbwarsaw1-1/+1
2003-02-08Backporting from the trunk.bwarsaw1-10/+15