aboutsummaryrefslogtreecommitdiffstats
path: root/NEWS (unfollow)
Commit message (Expand)AuthorFilesLines
2021-11-30Block CSRF attack against admin or admindb pages.Mark Sapiro1-1/+6
2021-11-21Avoid NotAMemberError in CSRF check from user options page.Mark Sapiro1-0/+7
2021-11-12Fix admindb for list with no mod password.Mark Sapiro1-0/+6
2021-11-11Bumped branch version to: 2.1.36Mark Sapiro1-5/+5
2021-11-03Fix a potentail XSS attack via the user options page.Mark Sapiro1-0/+12
2021-10-18Fixes for CVEs 2021-42096 and 2021-42097.Mark Sapiro1-1/+11
2021-06-06DMARC policy ignores domains with multiple DMARC records.Mark Sapiro1-0/+3
2021-04-07Translate 'disabled' when used.Mark Sapiro1-0/+3
2021-03-30Decode message bodies for replies in CommandRunner.Mark Sapiro1-0/+4
2021-03-05Thghten conditions for scrubbing text/plain.Mark Sapiro1-0/+3
2021-02-14Fix missing Subject: in some Wrap Message wrappers.Mark Sapiro1-0/+7
2020-07-02Added CVE and bug references to old NEWS item.Mark Sapiro1-1/+1
2020-06-26Prepare for 2.1.34 release.Mark Sapiro1-1/+1
2020-06-26Added a couple of CVE references.Mark Sapiro1-3/+4
2020-06-21Truncate very long names for scrubbed attachments.Mark Sapiro1-0/+3
2020-06-10Implement WARN_MEMBER_OF_SUBSCRIBE subscribe setting.Mark Sapiro1-0/+4
2020-05-28Updates to Spanish i18n and mailman.pot.Mark Sapiro1-0/+4
2020-05-28DMARC mitigation no longer misses upper case names.Mark Sapiro1-0/+3
2020-05-18Extend REFUSE_SECOND_PENDING to unsubscription as well.Mark Sapiro1-1/+2
2020-05-13Fix potential ValueError in MailList.CheckPending.Mark Sapiro1-1/+8
2020-05-07Fixed content injection vulnerability via the private login page.Mark Sapiro1-0/+7
2020-05-05i18n changes for prior release.Mark Sapiro1-0/+7
2020-05-05Fixed options login content injection vulnerability.Mark Sapiro1-1/+6
2020-04-25Workaround non-ascii in string.lowercase.Mark Sapiro1-0/+3
2020-04-25Updates to bounce recognition.Mark Sapiro1-0/+4
2020-04-25Updates to Spanish i18n.Mark Sapiro1-0/+6
2020-04-12Update for 2.1.30 final release.Mark Sapiro1-1/+1
2020-04-12Updated Brazilian Portugese translation.Mark Sapiro1-0/+2
2020-04-12Updated Spanish translation.Mark Sapiro1-0/+2
2020-02-19Updated German translation from Ludwig Reiter.Mark Sapiro1-0/+2
2020-01-16Fixed SimpleMatch to only return valid addresses.Mark Sapiro1-0/+3
2020-01-09Implement REFUSE_SECOND_PENDING setting to prevent multiple pending subscribes.Mark Sapiro1-0/+6
2019-11-08Fix possible UnicodeDecodeError in sending subscription confirmation.Mark Sapiro1-0/+3
2019-11-08Implement new drop_cc switch.Mark Sapiro1-0/+4
2019-10-05Clarify wording in NEWS item.Mark Sapiro1-2/+2
2019-09-17Implemented web admin sync members.Mark Sapiro1-0/+4
2019-08-16Extend sys.path with site.getsitepackages().Mark Sapiro1-0/+3
2019-06-20Corrected a misspelled name.Mark Sapiro1-1/+1
2019-06-05Added site list -bounces and -request @ virtual domain to virtual-mailman.Mark Sapiro1-0/+4
2019-06-05Fixed missing <> in List-ID with invalid char in description.Mark Sapiro1-0/+4
2019-05-22Fixed misspelling of mailmanctl no-restart option.Mark Sapiro1-0/+2
2019-03-06Strip leading/trailing spaces from login email for private and options login.Mark Sapiro1-0/+3
2019-03-01Implement MAX_LISTNAME_LENGTH to avoid calculating on each web access.Mark Sapiro1-0/+7
2018-12-30Corrected and augmented some security log messages.Mark Sapiro1-0/+2
2018-11-28Added recognition for non-compliant opensmtpd DSN Action: error.Mark Sapiro1-0/+3
2018-11-10Added NEWS item for prior change.Mark Sapiro1-1/+4
2018-08-07Catch TypeError on simultaneous confirmations of the same token.Mark Sapiro1-0/+7
2018-07-24Fixed broken patch at rev. 1796.Mark Sapiro1-0/+7
2018-07-23Truncate long invalid list names in web error messages.Mark Sapiro1-1/+6
2018-07-18Updated to German translation.Mark Sapiro1-0/+2