r1561: Removing the accidential "A" put in check_bug_permissions() that I now just...
[bugdar.git] / docs / changes.txt
1 1.2.0
2 ===============================
3 - Fixed: In userctrl_search.tpl, the floated elements need to be before unfloated ones otherwise Gecko engine offsets it by a line
4 - Fixed: Closed a SQL injection vector in register.php
5 - Fixed: Users could not vote against a bug due to too tight sanitization (bug://report/84)
6 - Fixed: A "call to undefined function A()" would be thrown under some occasions when viewing a bug
7
8 1.2.0 Release Candidate 1
9 ===============================
10 - Enhancement: Allow sorting and display of the "assigned to" column on grid display
11 - Fixed: Comments wouldn't be displayed in a right-to-left fashion if the language is RTL (bug://report/80)
12 - Fixed: When submitting the lost password form, error checking was disregarded because we were checking for errors the old way
13 - Change: Force utf8 as the default installation collation for MySQL
14
15 1.2.0 Beta 3
16 ===============================
17 - Fixed: If Gettext isn't installed, a function-not-found error would be thrown
18 - Fixed: On PHP4 systems, a "call to member non-object" error would be thrown because the Authentication class does not have a PHP4 constructor
19 - Fixed: In lost password reset emails, the subject would appear as "Array['trackertitle']" because the variable was not enclosed in curly braces
20 - Fixed: On PHP4 systems, a bug in the BugAPI would prevent any data from being saved because PHP4 doesn't support call_user_func() of parent:: selectors
21 - Change: When clicking the "[Run Search]" link in the "Saved Searches" section of the "Options" tab, force the search to rerun
22 - Fixed: Some email roles would not get notified under certain circumstances because the list of users to notify was reset
23 - Fixed: Errors would occurr on installation due to a problem with not loading all the data at the right time
24 - Enhancement: The installer will now check to ensure that all the proper MySQL permissions are enabled
25 - Fixed: A PHP warning could be generated due to passing an argument by reference (bug://report/78)
26
27 1.2.0 Beta 2
28 ===============================
29 - Fixed: Emails wouldn't be sent out for new comments due to a bug with updating the notices array
30 - Fixed: Searches wouldn't be rerun after 15 minutes because of a typo in the time calculation
31 - Fixed: The installer would show an error if gettext wasn't installed because the emulator wasn't loaded early enough
32 - Fixed: Close a large bug that would cause a PHP error to be thrown regarding string offsets during notification processing
33 - Fixed: Email notifications would be essentially empty in all circumstances
34 - Change: Removed the stylevars system in place of additional CSS classes for formatting of tables and alternate row colors
35 - Fixed: Defining the NO_VERSION_CHECK constant wouldn't work due to a typo in admin/index.php
36 - Fixed: Automations wouldn't properly save custom field changes in the admin section
37 - Fixed: Automations would have no effect on custom fields when running them from the edit screen
38 - Fixed: A SQL error would occur when saving a new usergroup
39 - Fixed: In the product-level permissions screens, not all the products would be listed
40 - Fixed: A minor display issue would occur in a rare instance when showing an error message when trying to add a version without a product
41 - Fixed: If any fields had invalid data in editreport.php no validation errors would be thrown
42 - Fixed: The Logging system would add extra empty logs that would pollute the database; fixed this and then added queries in showhistory.php to clean it up
43 - Fixed: PHP smart tags were used in the installer, which if not enabled on the server would produce strange output (bug://report/67)
44 - Enhancement: Users can now belong to a single primary usergroup and multiple secondary groups, greatly increasing permission flexibility (bug://report/70)
45 - Enahncement: Usergroups can be cloned to allow fast duplication of permissions
46 - Fixed: Even after calling UsergroupAPI::delete(), there would still be usergroup remnants in bugfieldpermission and permission tables
47 - Fixed: The javascript cancel buttons wouldn't work due to a parse error
48 - Fixed: When approving users, the approval email would never be sent and a method not found error would be shown
49
50 1.2.0 Beta 1
51 ===============================
52 - Change: When a user does not have any favorites in his list, show a message instead of an empty screen
53 - Enhancement: Added the ability to show all the users in a paginated list in the admin section (bug://report/55)
54 - Enhancement: Can export search results to an XML file (bug://report/41)
55 - Enhancmenet: Links in comments can be parsed if the option is checked (bug://report/2)
56 - Enhancement: Components can now be displayed on the bug grid (bug://report/43)
57 - Enhancement: Votes can now be displayed and sorted on the bug grid (bug://report/13)
58 - Enhancement: Users can save a search so they can rerun it at any time
59 - Fixed: Component and product changes wouldn't appear correcly on showhistory.php
60 - Enhancement: Versions can be marked "Obsolete" so new bugs cannot be filed against them
61 - Change: When there are no bugs to display on index.php, don't show an empty grid, but rather an error message
62 - Optimize: Reduce a query on bug updates by not querying the automation system if it is not being used
63 - Optimize: Move custom field data into the bug table to reduce the use of JOINs
64 - Optimize: Remove a query on userctrl.php's save options called by build_assignedto() because the API already does this for us
65 - Optimize: Setting system cleanup that improves speed by reducing queries and not using eval()
66 - Enhancement: Search results can be mass-updated to change bug fields
67 - Change: Search system no longer stores the actual query of the search, but rather the paramters
68 - Enhancement: Added a lost password reset system
69 - Fixed: Cached usernames would be cleared by the UserAPI if the display name wasn't set in the values array
70 - Enhancement: Extracted email text to the template system to make it easier to modify them
71 - Enhancement: Improved the admin security system by creating a session system that is much harder to bypass
72 - Change: Cleaned and refactored up the MessageReporter class
73 - Optimize: Template are now cached in the database to greatly improve speed; this does not effect editing templates at all
74 - Enhancement: An Authentication API was created in order to allow custom applications or databases to be used when authenticating at either login or with cookies
75
76 1.1.5
77 ===============================
78 - Fixed a potential SQL error on search.php because no results were found (bug://report/62)
79 - Fixed a SQL error on admin/user.php when adding a new user from the admin section (bug://report/63)
80 - When adding a new user from the admin section, email options were not saved properly
81 - Added an option to only perform header redirects instead of intermediate-stage redirects (bug://report/65)
82 - Fixed a foreach() error after adding a new user in the admin section without email options [admin/user.php#102]
83 - Fixed a minor typo on the guest welcome banner (bug://report/66)
84
85 1.1.4
86 ===============================
87 - Time zones with half-hours are not saved because the field only allows INTs (but://report/38)
88 - Fixed a SQL error received upon deleting a resolution (but://report/40)
89 - When searching and selecting multiple items for a field, only the first one is used in the search (but://report/39)
90 - Need to cast the unserialized data to an array to remove an implode() warning [admin/field.php#235]
91 - When $bugsys->options['pagelinks'] is set to 0, it now actually does its advertised behavior (but://report/45)
92 - Foreign langauge users cannot use the product/component editing system beacause localized strings are used to create the do actions instead of english variable ones (but://report/42)
93 - Fixed a SQL error that would occur when editing a report with no emails linked to it (but://report/46)
94 - Added the ability to delete attachments from the database (but://report/47)
95 - Fixed a scrollpane bug related to new reply <textarea>s in IE (but://report/48)
96 - In the "My Controls" tab, change the name of the email and password fields to prevent autocomplete from working on them
97 - Include the Gettext mimic functions into the installer so people without the PHP extension can install Bugdar (but://report/51)
98 - Fixed a SQL error that would occur when editing or deleting comments (but://report/52)
99 - Allow administrators to set the default time zone which guests view all times and dates in (but://report/53)
100 - The "[Edit]" and "[Delete]" options for attachments were off by one line (but://report/56)
101 - Fixed a spelling error in search.php when there is no search criteria
102 - Adding a quick search feature to the header bar (but://report/57)
103 - Fixed an occurence in header.tpl where the $stylevar align wasn't used, but a hard-coded one was
104 - Only allow JPG, JPEG, PNG, and GIF attachments to be displayed inline because all other types could lead to an XSS attack
105 - Added maxlength attributes to all <input type="text"/> fields so the database doesn't truncate (but://report/58)
106 - Fixed display issues in Firefox for RTL languages in the bug report screen and attachment display (but://report/59)
107 - Localized the version checking information strings in admin/index.php
108 - Localized the word "Home" in the admin/index.php <title>
109 - Fixed a bug in admin/user.php where email options would be changed for the admin making the changes to another user's account instead of that user
110 - Emails weren't being sent under certain conditions for new comments
111
112 1.1.3
113 ===============================
114 - If a user leaves a comment and does not have bug change access, data loss occurs
115 - Fixed IE's redirection issue when using Message_Reporter->redirect() (but://report/32)
116 - On the admin login page, prevent the number "15" from appearing as text and marked another string for translation that was missed
117 - Error messages are no longer hidden in IE6 (but://report/30)
118
119 1.1.2
120 ===============================
121 - Fixed a SQL injection on login.php (but://report/36)
122 - Fixed potential SQL injections on search.php
123 - Fixed potential SQL injections on install/install.php
124
125 1.1.1
126 ===============================
127 - Registration email functions do not work because they are not ISSO2/Mail compatible [register.php]
128 - Removed TABLE_PREFIX-related SQL errors in syndicate.php
129 - Use the correct language variable key for exporting the XML encoding in syndicate.php
130 - API-level errors are not caught in the registration process before insertion because of user_cumulative [register.php]
131 - Remove warnings on explain.php?do=products (but://report/29)
132 - Removed SQL errors when deleting a product or version due to bad column names (but://report/28) [admin/product.php]
133 - Added a way to view and approve "Pending" and "Awaiting" users
134 - Prevent a weird bug with notifications where multiple emails would be sent out to the wrong people
135 - Numerous improvements for RTL languages (but://report/34)
136
137 1.1.0
138 ===============================
139 - When gettext is not installed, a "method call on unobject" error is thrown
140 - Renamed "automatic action" to "automation"
141 - If no user comment is entered but there's an automation comment, then the automation comment is no longer disregarded
142 - Get rid of a foreach() warning if there are no products [admin/product.php#317]
143 - If no custom fields were setup, an empty query error would be thrown [newreport.php#130]
144 - If no custom fields were present, adding an automation would fail [admin/automation.php#74]
145 - Remove a warning when saving a usergroup and there are no custom fields present [admin/usergroup.php#221]
146 - Update cached usernames when the display name changes
147
148 1.1.0 Release Candidate 1
149 ===============================
150 - Fixed many problems with install/install.php
151 - Changed array casting instances to is_array() checks, which are better
152 - Made some of the email notifications better-worded
153 - Fix the correct stylevar for language codes
154 - Fixed another can_perform() product-based permissions check [search.php]
155 - More changes to syndicate.php to increase performance
156 - Add checks to newreport.php and search.php to see if there are products or versions, if there aren't, then throw a message about needing them to be setup
157 - Process custom field data on newreport.php
158 - Add regex matching check to process_custom_fields()
159 - Missed some string conversions to gettext
160 - If cookies do not authenticate right, unset them [includes/init.php]
161
162 1.1.0 Beta 2
163 ===============================
164 - Array casting to remove foreach() warnings [editreport.php#132]
165 - Update last post information after deleting a comment (but://report/25)
166 - Improved Atom feed by using a <table> and properly specifying type information
167 - Changed the access key for "Save Report and Add Another" button to E
168 - Removed potential warnings when there are no products [includes/functions.php#417] (but://report/26)
169 - Removed potential warnings if there is no page navigator [class_pagination.php#243] (but://report/26)
170 - Created a Language API
171 - Fix a call to a non-object error [editcomment.php#116]
172 - Switch to gettext language system instead of the XML-strings format
173 - Fixing warnings related to Printer->page_confirm() throughout the entire admin section
174 - After you delete a resolution, severity, priority, or status, set all bugs with the deleted field item back to the value set as default
175 - Fixed a bug where there could be two <select> menus in userctrl.php because we double-wrapped a <select> [userctrl.tpl]
176 - Cast to array to remove foreach() warnings [userctrl.php#160]
177 - Fixed a bug that would cause searching to result in a SQL error
178 - Added better checking of hidden bugs for the favorites list
179 - Better permissions checking in vote.php, viewattachment.php, attachment.php, showhistory.php, and favorite.php
180 - Fixed numerous permission checks in showreport.php
181 - Added a permission to allow viewing of one's hidden reported bugs ("canviewownhidden")
182 - Added an is_array() check to prevent foreach() warnings [admin/user.php#135]
183
184 1.1.0 Beta 1
185 ===============================
186 - User help cache was not rebuilt for descriptions in custom fields (but://report/7)
187 - Custom fields did not appear on newreport.php (but://report/8)
188 - If the first SQL query fails (datastore fetch), show a link to the installer (but://report/20)
189 - Removed potential divide by 0 warnings in showreport.php under PHP5
190 - No longer highlight the <title> and <input> tags when viewing a bug report (but://report/21)
191 - Removed potential implode() warnings in showreport.php under PHP5
192 - When logging out, you will be redirected to the page you were previously viewing
193 - Rewrote the logging mechanism
194 - Usernames are now cached in the database for bug reports to remove the need to do complex joins at runtime
195 - Added notification system (but://report/11)
196 - When searching, you can now select multiple values for <select> menus (but://report/3)
197 - Add a notice for guests explaining that registration is a good thing (but://report/19)
198 - Create a separate screen that lists a user's favourites (but://report/12)
199 - Atom syndication of the bugs list (but://report/18)
200 - Removed the useless "dependency" table
201 - Added the following APIs:
202 - Attachment
203 - Automatic action
204 - Bug
205 - Comment
206 - Custom field
207 - Priority
208 - Resolution
209 - Severity
210 - User
211 - Usergroup
212 - User help
213 - Added support for DST observation (but://report/22)
214 - Data (bugs and comments) can now be removed (but://report/16)
215 - Specific statuses can be hidden by the administrator and users individually (but://report/9)
216 - Column sorting of bug lists (but://report/14)
217 - Added a version checker in the admin section
218 - Removed the plus sign in "class1 + class2" for HTML CSS class attributes
219
220 1.0.1
221 ===============================
222 - Fixed a SQL error in voting for those with a table prefix (but://report/6)
223 - Users with register_globals ON can now install software
224 - Users with register_globals ON can now log in
225