Mon, 15 Jun 2015 10:49:33 +0200 | Sylvain Thénault | when some inlined relation is set using cw_edited, its security shouldn't be checked. | file | diff | annotate |
Thu, 22 Jan 2015 17:18:20 +0100 | Julien Cristau | merge 3.18.8 into 3.19 branch | file | diff | annotate |
Wed, 21 Jan 2015 15:58:33 +0100 | Julien Cristau | [security] Test case and fix for an INSERT security hole | file | diff | annotate |
Wed, 17 Dec 2014 10:55:53 +0100 | Aurelien Campeas | [security] check attributes: dispatch on the "add" action if entity was just created | file | diff | annotate |
Wed, 24 Sep 2014 18:04:30 +0200 | Julien Cristau | merge 3.18.6 into 3.19 | file | diff | annotate |
Tue, 28 Jan 2014 15:27:59 +0100 | Aurelien Campeas | [hooks/security] allow edition of attributes with permissive permissions | file | diff | annotate |
Tue, 01 Apr 2014 16:28:12 +0200 | Julien Cristau | [hooks/security] let's use a connection, not a session | file | diff | annotate |