Wed, 24 Mar 2010 13:40:53 +0100 | Sylvain Thénault | [security] don't add attribute into skip_security if already in edited_attributes, else we may accidentaly skip a desired security check | file | diff | annotate |
Wed, 24 Mar 2010 11:15:57 +0100 | Sylvain Thénault | [repo entity] we have to provide a __delitem__ implementation as well, see example in the docstring | file | diff | annotate |
Wed, 24 Mar 2010 11:00:51 +0100 | Sylvain Thénault | [yams] on creation, specify relations anyway so we don't get spurious warning for accessing eid through the dict api on yams validation | file | diff | annotate |
Mon, 22 Mar 2010 17:58:03 +0100 | Sylvain Thénault | fix security issue introduced by 4967:04543ed0bbdc: attributes explicitly set by hooks should not be checked by security hooks | file | diff | annotate |