On Wed 29 Jun 2011 16:23 -0500, Dan McGee wrote:
> On Wednesday, June 29, 2011, Manuel Tortosa wrote:
> > Exactly this, wrap the comments in tags allowing patches or at least
> > better build output formatting.
>
> -1, and I believe this isn't the first time this has been proposed. It
> makes ev
On Wednesday 29 June 2011 23:19:11 Lukas Fleischer wrote:
> Again, printing "$_REQUEST['ID']" without escaping introduces a XSS
> vulnerability. Do we actually need this field at all?
Currently in AUR if you try to change the language in a package info page, you
get directed to the list of packag
On Wednesday 29 June 2011 23:19:11 Lukas Fleischer wrote:
> Using '$_SERVER["PHP_SELF"]' without escaping quotes introduces a
> potential XSS vulnerability [1].
Thanks for the info.
On Wednesday, June 29, 2011, Manuel Tortosa wrote:
> Exactly this, wrap the comments in tags allowing patches or at least
> better build output formatting.
-1, and I believe this isn't the first time this has been proposed. It
makes everything else less readable at the expense of a few comments.
On Wed, Jun 29, 2011 at 10:32:48PM +0200, Manuel Tortosa wrote:
> Exactly this, wrap the comments in tags allowing patches or at least
> better build output formatting.
>
> Greez
What's the motivation behind this one? Imho, comments are supposed to be
comments - that is plain text messages with
On Wed, Jun 29, 2011 at 10:13:09PM +0200, Manuel Tortosa wrote:
> >From 013006224eaf48f7aec1b67ab20e9df82b920a16 Mon Sep 17 00:00:00 2001
> From: Manuel
> Date: Wed, 29 Jun 2011 22:11:37 +0200
> Subject: [PATCH 2/2] Convert the language selection menu in a select form
>
>
> Signed-off-by: Manuel
On Wed, Jun 29, 2011 at 09:52:07PM +0200, Manuel Tortosa wrote:
> In pkgsubmit.php in this part:
>
> foreach ($depends as $dep) {
> $deppkgname = preg_replace("/(<|<=|=|>=|>).*/", "", $dep);
> $depcondition = str_replace($deppkgname, "", $dep);
>
> if ($deppkgname == "#") {
>
Exactly this, wrap the comments in tags allowing patches or at least
better build output formatting.
Greez>From 28601fb46b1d28904a81b043b39592836108 Mon Sep 17 00:00:00 2001
From: Manuel
Date: Wed, 29 Jun 2011 22:31:22 +0200
Subject: [PATCH 3/3] Wrap comments in tags, fixes FS#14391
Sign
Subject says all.
Greez.
Manuel>From 013006224eaf48f7aec1b67ab20e9df82b920a16 Mon Sep 17 00:00:00 2001
From: Manuel
Date: Wed, 29 Jun 2011 22:11:37 +0200
Subject: [PATCH 2/2] Convert the language selection menu in a select form
Signed-off-by: Manuel
---
web/template/header.php | 25
In pkgsubmit.php in this part:
foreach ($depends as $dep) {
$deppkgname = preg_replace("/(<|<=|=|>=|>).*/", "", $dep);
$depcondition = str_replace($deppkgname, "", $dep);
if ($deppkgname == "#") {
break;
}
$q = sprintf("INSERT INTO PackageD
10 matches
Mail list logo