[jira] Created: (OFBIZ-2514) Securing URL's issue in editorderitems.ftl and ordercontactinfo.ftl.

Previous Topic Next Topic
 
classic Classic list List threaded Threaded
10 messages Options
Reply | Threaded
Open this post in threaded view
|

[jira] Created: (OFBIZ-2514) Securing URL's issue in editorderitems.ftl and ordercontactinfo.ftl.

Nicolas Malin (Jira)
Securing URL's issue in editorderitems.ftl and ordercontactinfo.ftl.
---------------------------------------------------------------------

                 Key: OFBIZ-2514
                 URL: https://issues.apache.org/jira/browse/OFBIZ-2514
             Project: OFBiz
          Issue Type: Sub-task
            Reporter: Ratnesh Upadhyay




--
This message is automatically generated by JIRA.
-
You can reply to this email to add a comment to the issue online.

Reply | Threaded
Open this post in threaded view
|

[jira] Commented: (OFBIZ-2514) Securing URL's issue in editorderitems.ftl and ordercontactinfo.ftl.

Nicolas Malin (Jira)

    [ https://issues.apache.org/jira/browse/OFBIZ-2514?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=12712366#action_12712366 ]

Chandan Khandelwal commented on OFBIZ-2514:
-------------------------------------------

I am on it. Shortly I upload the patch for this

> Securing URL's issue in editorderitems.ftl and ordercontactinfo.ftl.
> ---------------------------------------------------------------------
>
>                 Key: OFBIZ-2514
>                 URL: https://issues.apache.org/jira/browse/OFBIZ-2514
>             Project: OFBiz
>          Issue Type: Sub-task
>            Reporter: Ratnesh Upadhyay
>


--
This message is automatically generated by JIRA.
-
You can reply to this email to add a comment to the issue online.

Reply | Threaded
Open this post in threaded view
|

[jira] Updated: (OFBIZ-2514) Securing URL's issue in editorderitems.ftl and ordercontactinfo.ftl.

Nicolas Malin (Jira)
In reply to this post by Nicolas Malin (Jira)

     [ https://issues.apache.org/jira/browse/OFBIZ-2514?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Chandan Khandelwal updated OFBIZ-2514:
--------------------------------------

    Attachment: SecureLoginForOrderview.patch

Thanks Amit Sharma and Ratnesh Upadhyay,

Here is The Patch for this issue.

> Securing URL's issue in editorderitems.ftl and ordercontactinfo.ftl.
> ---------------------------------------------------------------------
>
>                 Key: OFBIZ-2514
>                 URL: https://issues.apache.org/jira/browse/OFBIZ-2514
>             Project: OFBiz
>          Issue Type: Sub-task
>            Reporter: Ratnesh Upadhyay
>         Attachments: SecureLoginForOrderview.patch
>
>


--
This message is automatically generated by JIRA.
-
You can reply to this email to add a comment to the issue online.

Reply | Threaded
Open this post in threaded view
|

[jira] Updated: (OFBIZ-2514) Securing URL's issue in editorderitems.ftl and ordercontactinfo.ftl.

Nicolas Malin (Jira)
In reply to this post by Nicolas Malin (Jira)

     [ https://issues.apache.org/jira/browse/OFBIZ-2514?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Pranay Pandey updated OFBIZ-2514:
---------------------------------

    Attachment:     (was: editOrderItemsAdustoments_OFBIZ-2514.patch)

> Securing URL's issue in editorderitems.ftl and ordercontactinfo.ftl.
> ---------------------------------------------------------------------
>
>                 Key: OFBIZ-2514
>                 URL: https://issues.apache.org/jira/browse/OFBIZ-2514
>             Project: OFBiz
>          Issue Type: Sub-task
>            Reporter: Ratnesh Upadhyay
>         Attachments: SecureLoginForOrderview.patch
>
>


--
This message is automatically generated by JIRA.
-
You can reply to this email to add a comment to the issue online.

Reply | Threaded
Open this post in threaded view
|

[jira] Updated: (OFBIZ-2514) Securing URL's issue in editorderitems.ftl and ordercontactinfo.ftl.

Nicolas Malin (Jira)
In reply to this post by Nicolas Malin (Jira)

     [ https://issues.apache.org/jira/browse/OFBIZ-2514?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Pranay Pandey updated OFBIZ-2514:
---------------------------------

    Attachment: editOrderItemsAdustoments_OFBIZ-2514.patch

Ratnesh, Chandan

Here I am uploading patch for the secure url issue in adding, updating and deleting adjustments.
Please don't include them in your patch.

Also this issue should remain open till we change all the urls.

> Securing URL's issue in editorderitems.ftl and ordercontactinfo.ftl.
> ---------------------------------------------------------------------
>
>                 Key: OFBIZ-2514
>                 URL: https://issues.apache.org/jira/browse/OFBIZ-2514
>             Project: OFBiz
>          Issue Type: Sub-task
>            Reporter: Ratnesh Upadhyay
>         Attachments: SecureLoginForOrderview.patch
>
>


--
This message is automatically generated by JIRA.
-
You can reply to this email to add a comment to the issue online.

Reply | Threaded
Open this post in threaded view
|

[jira] Updated: (OFBIZ-2514) Securing URL's issue in editorderitems.ftl and ordercontactinfo.ftl.

Nicolas Malin (Jira)
In reply to this post by Nicolas Malin (Jira)

     [ https://issues.apache.org/jira/browse/OFBIZ-2514?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Pranay Pandey updated OFBIZ-2514:
---------------------------------

    Attachment: editOrderItemsAdustoments_OFBIZ-2514.patch

> Securing URL's issue in editorderitems.ftl and ordercontactinfo.ftl.
> ---------------------------------------------------------------------
>
>                 Key: OFBIZ-2514
>                 URL: https://issues.apache.org/jira/browse/OFBIZ-2514
>             Project: OFBiz
>          Issue Type: Sub-task
>            Reporter: Ratnesh Upadhyay
>         Attachments: editOrderItemsAdustoments_OFBIZ-2514.patch, SecureLoginForOrderview.patch
>
>


--
This message is automatically generated by JIRA.
-
You can reply to this email to add a comment to the issue online.

Reply | Threaded
Open this post in threaded view
|

[jira] Updated: (OFBIZ-2514) Securing URL's issue in editorderitems.ftl and ordercontactinfo.ftl.

Nicolas Malin (Jira)
In reply to this post by Nicolas Malin (Jira)

     [ https://issues.apache.org/jira/browse/OFBIZ-2514?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Pranay Pandey updated OFBIZ-2514:
---------------------------------

    Attachment: editOrderItemsAdustoments_OFBIZ-2514.patch

> Securing URL's issue in editorderitems.ftl and ordercontactinfo.ftl.
> ---------------------------------------------------------------------
>
>                 Key: OFBIZ-2514
>                 URL: https://issues.apache.org/jira/browse/OFBIZ-2514
>             Project: OFBiz
>          Issue Type: Sub-task
>            Reporter: Ratnesh Upadhyay
>         Attachments: editOrderItemsAdustoments_OFBIZ-2514.patch, editOrderItemsAdustoments_OFBIZ-2514.patch, SecureLoginForOrderview.patch
>
>


--
This message is automatically generated by JIRA.
-
You can reply to this email to add a comment to the issue online.

Reply | Threaded
Open this post in threaded view
|

[jira] Commented: (OFBIZ-2514) Securing URL's issue in editorderitems.ftl and ordercontactinfo.ftl.

Nicolas Malin (Jira)
In reply to this post by Nicolas Malin (Jira)

    [ https://issues.apache.org/jira/browse/OFBIZ-2514?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=12712965#action_12712965 ]

Vikas Mayur commented on OFBIZ-2514:
------------------------------------

Thanks Pranay and others,

Most recent patch related to adjustments is in trunk rev. 778653 and release09.04 rev. 778654

Keeping this issue open as more work need to be done to completely secure all the URLs in these files.

Vikas

> Securing URL's issue in editorderitems.ftl and ordercontactinfo.ftl.
> ---------------------------------------------------------------------
>
>                 Key: OFBIZ-2514
>                 URL: https://issues.apache.org/jira/browse/OFBIZ-2514
>             Project: OFBiz
>          Issue Type: Sub-task
>            Reporter: Ratnesh Upadhyay
>         Attachments: editOrderItemsAdustoments_OFBIZ-2514.patch, editOrderItemsAdustoments_OFBIZ-2514.patch, SecureLoginForOrderview.patch
>
>


--
This message is automatically generated by JIRA.
-
You can reply to this email to add a comment to the issue online.

Reply | Threaded
Open this post in threaded view
|

[jira] Commented: (OFBIZ-2514) Securing URL's issue in editorderitems.ftl and ordercontactinfo.ftl.

Nicolas Malin (Jira)
In reply to this post by Nicolas Malin (Jira)

    [ https://issues.apache.org/jira/browse/OFBIZ-2514?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=12753477#action_12753477 ]

Jacques Le Roux commented on OFBIZ-2514:
----------------------------------------

Any update ?

> Securing URL's issue in editorderitems.ftl and ordercontactinfo.ftl.
> ---------------------------------------------------------------------
>
>                 Key: OFBIZ-2514
>                 URL: https://issues.apache.org/jira/browse/OFBIZ-2514
>             Project: OFBiz
>          Issue Type: Sub-task
>            Reporter: Ratnesh Upadhyay
>         Attachments: editOrderItemsAdustoments_OFBIZ-2514.patch, editOrderItemsAdustoments_OFBIZ-2514.patch, SecureLoginForOrderview.patch
>
>


--
This message is automatically generated by JIRA.
-
You can reply to this email to add a comment to the issue online.

Reply | Threaded
Open this post in threaded view
|

[jira] Closed: (OFBIZ-2514) Securing URL's issue in editorderitems.ftl and ordercontactinfo.ftl.

Nicolas Malin (Jira)
In reply to this post by Nicolas Malin (Jira)

     [ https://issues.apache.org/jira/browse/OFBIZ-2514?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Jacques Le Roux closed OFBIZ-2514.
----------------------------------

         Assignee: Jacques Le Roux
    Fix Version/s: Release Branch 09.04
                   Release Branch 10.04
                   SVN trunk
       Resolution: Fixed

Fixed at r951098 in trunk, r951103 in R9.04 and r951112 in R10.04

> Securing URL's issue in editorderitems.ftl and ordercontactinfo.ftl.
> ---------------------------------------------------------------------
>
>                 Key: OFBIZ-2514
>                 URL: https://issues.apache.org/jira/browse/OFBIZ-2514
>             Project: OFBiz
>          Issue Type: Sub-task
>            Reporter: Ratnesh Upadhyay
>            Assignee: Jacques Le Roux
>             Fix For: Release Branch 09.04, Release Branch 10.04, SVN trunk
>
>         Attachments: editOrderItemsAdustoments_OFBIZ-2514.patch, editOrderItemsAdustoments_OFBIZ-2514.patch, SecureLoginForOrderview.patch
>
>


--
This message is automatically generated by JIRA.
-
You can reply to this email to add a comment to the issue online.