Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Forwardport] Updated security issues details #1

Closed
wants to merge 10,000 commits into from

Conversation

quisse
Copy link
Owner

@quisse quisse commented Jul 14, 2018

Original Pull Request

magento#16685
The e-mail address is responding with an autoreply which tells to use bugcrowd. So just mention bugcrowd instead so people don't loose time typing & encrypting a mail which has no use.

Contribution checklist

  • Pull request has a meaningful description of its purpose
  • All commits are accompanied by meaningful commit messages
  • All new or changed code is covered with unit/integration tests (if applicable)
  • All automated tests passed successfully (all builds on Travis CI are green)

mageprince and others added 30 commits July 4, 2018 00:38
Declare module namespace before template path
Declare module namespace before template path
Declare module namespace before template path
Declare module namespace before template path
Declare module namespace before template path
Declare module namespace before template path
Declare module namespace before template path
Declare module namespace before template path
Declare module namespace before template path
Declare module namespace before template path
Declare module namespace before template path
…by attributes of child products

 - Add the search selectors to a better section
[EngCom] Public Pull Requests - 2.3-develop
…to#16515

 - Merge Pull Request magento#16515 from mageprince/magento2:develop
 - Merged commits:
   1. 7c9a5cb
   2. c92b57f
   3. b8751c1
   4. c1282aa
   5. 0d99673
   6. 01efc65
   7. c104023
   8. 78ef947
   9. 0286a12
   10. 4310d50
   11. d27263f
   12. f9d5002
   13. 7fe8314
   14. 3cfd5c4
   15. 4f6396a
   16. 43ee7dd
   17. 4723db4
   18. 2f14719
   19. 5a33ee5
   20. 153466e
   21. 2b03b68
   22. 69f5949
   23. 70f6fe0
   24. c809d9f
   25. e5d8965
   26. cb94ab3
   27. 17115ce
   28. a924cad
   29. 24ec04f
   30. d5dbfb9
   31. d036eb2
   32. 3548a08
   33. 5a8877f
   34. b83ebb5
   35. bee1aa4
   36. 54e0a3b
   37. 6b97b70
   38. 8d8791b
   39. fd4d8f5
   40. a22995f
   41. 7b18cef
   42. 87e2f8c
   43. 58e2e4b
   44. 360b7fd
[borg] MAGETWO-91555: Admin orders can result in a customer with an example email address
…kout page] magento#16521

 - Merge Pull Request magento#16521 from hitesh-wagento/magento2:2.3-wrong-password-checkout
 - Merged commits:
   1. 386438d
Stanislav Idolov and others added 19 commits July 11, 2018 17:06
[borg] MAGETWO-91710: Creditmemo Grand Total is incorrect if discount is applied on shipping
…nto#16569

 - Merge Pull Request magento#16569 from arnoudhgz/magento2:feature/make-related-products-in-checkout-configurable
 - Merged commits:
   1. 516566a
   2. adcb99d
Accepted Public Pull Requests:
 - magento/graphql-ce#114: Mutations Prototype (POC) magento#74 (by @paliarush)
 - magento#16699: Declare module namespace before template path in Magento_Theme,  Magento_Newsletter and Magento_Tax (by @mageprince)
 - magento#16701: Declare module namespace before template path in all other modules (by @mageprince)
 - magento#16698: Declare module namespace before template path in Magento_Sales and Magento_Paypal (by @mageprince)
 - magento#16687: [Forwardport] Corrected function comment (by @sanganinamrata)
 - magento#16663: [Forwardport] Fixed Issue magento#11354 Merged CSS file name generation (by @mageprince)
 - magento#16588: [Forwardport] Fix of invalid price for integer currencies when amount less than group size (by @vkublytskyi)
 - magento#16562: [Forwardport] Coupon API not working for guest user (by @gelanivishal)
 - magento#16630: [Forwardport] Small refactoring to better code readability (by @ronak2ram)
 - magento#16613: Update Israeli ZIP code mask, 7 digits instead of 5 ,according to the� (by @gelanivishal)
 - magento#16569: Make it possible to disable cross-sell on cart page (by @arnoudhgz)
 - magento#16487: [Forwardport] Prevent layout cache corruption in edge case (by @gelanivishal)


Fixed GitHub Issues:
 - magento#11354: Merged CSS file name generation (reported by @pmoreno1980) has been fixed in magento#16663 by @mageprince in 2.3-develop branch
   Related commits:
     1. 2816764
     2. 2d31c1d
     3. e7677e8
     4. ca3c79c
     5. 311f8ca
     6. 1782c54
     7. 94e0e25
     8. 831e58c
     9. 742ad8c

 - magento#11717: Wrong price amount on product page (reported by @HirokazuNishi) has been fixed in magento#16588 by @vkublytskyi in 2.3-develop branch
   Related commits:
     1. e2c4aca

 - magento#14056: Coupon API not working for guest user (reported by @gnanasekaranl) has been fixed in magento#16562 by @gelanivishal in 2.3-develop branch
   Related commits:
     1. 1acd06f
     2. 2651be3
[borg] MAGETWO-64854: Incorrect Refund Logic with Enterprise Rewards can allow for double-refunds
quisse pushed a commit that referenced this pull request Jul 14, 2018
[Forwardport] Fixed typo mistake in function comment
quisse pushed a commit that referenced this pull request Jul 14, 2018
…nto#15726

 - Merge Pull Request magento#15726 from sanjay-wagento/magento2:2.3-develop-PR-port-13026
 - Merged commits:
   1. ce176d2
quisse pushed a commit that referenced this pull request Jul 14, 2018
Accepted Public Pull Requests:
 - magento#16275: Simplified TypeProcessor (by @joni-jones)
 - magento#15842: [Forwardport] Add missing table aliases to fields mapping for Customer Group filter� (by @hitesh-wagento)
 - magento#15744: [Forwardport] [BUGFIX] magento#15564 Generated admin API token expires immediately (by @vijay-wagento)
 - magento#15726: Forwardport] Feature space between category page #1 (by @sanjay-wagento)
 - magento#15698: [Forwardport] Variant product image in sidebar wishlist block (by @dmytro-ch)
 - magento#15672: [FORWARDPORT magento#15097] Add field to filter to collection (by @dverkade)
 - magento#16256: magento#15255 unlock customer after password reset (by @vgelani)
 - magento#16246: [Forwardport] array_push(...) calls behaving as '$array[] = ...', $array[] = works faster than invoking functions in PHP (by @lfluvisotto)
 - magento#16224: [Forwardport] Correct return type of methods and typo correction. (by @saurabh-aureate)
 - magento#16225: Navigation dropdown caret icon. (by @tejash-wagento)
 - magento#15980: Use correct error message for duplicate error key in product import (by @denteblu)


Fixed GitHub Issues:
 - magento#15822: SQL Error: ambiguous column 'customer_group_id' in 'All customers' page in admin when extension attribute table is joined (reported by @Radio) has been fixed in magento#15842 by @hitesh-wagento in 2.3-develop branch
   Related commits:
     1. 0f23ed7

 - magento#15564: 2.2.4 Created admin token has no access (reported by @krukas) has been fixed in magento#15744 by @vijay-wagento in 2.3-develop branch
   Related commits:
     1. 7f34b22
     2. 349d178

 - magento#12601: A space between the category page and the main footer when applying specific settings (reported by @wd7080) has been fixed in magento#15726 by @sanjay-wagento in 2.3-develop branch
   Related commits:
     1. ce176d2

 - magento#15255: Customer who exceeded max login failures not able to login even after reset password (reported by @tizzyguy87) has been fixed in magento#16256 by @vgelani in 2.3-develop branch
   Related commits:
     1. a108233
quisse pushed a commit that referenced this pull request Jul 14, 2018
[Forwardport] When searching for the title if search for all the segments that has …
The e-mail address is responding with an autoreply which tells to use bugcrowd. So just mention bugcrowd instead so people don't loose time typing & encrypting a mail which has no use.
@quisse quisse force-pushed the 2.3-develop-PR-port-16685 branch from 1609b6a to c1ab061 Compare July 14, 2018 07:25
@quisse quisse closed this Jul 14, 2018
@quisse quisse deleted the 2.3-develop-PR-port-16685 branch July 14, 2018 09:04
quisse pushed a commit that referenced this pull request Aug 8, 2018
[Backport] Added language translation for message string
quisse pushed a commit that referenced this pull request Aug 8, 2018
[Backport] [Resolved : Styling <select> by changing less variables in Luma theme…
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.