evergreen:tags/rel_3_11_1

Last commit made on 2023-07-21
Get this branch:
git clone -b tags/rel_3_11_1 https://git.launchpad.net/evergreen

Branch merges

Branch information

Name:
tags/rel_3_11_1
Repository:
lp:evergreen

Recent commits

b873de0... by Blake GH

Bumping version numbers, adding Upgrade Script and Changelog

Signed-off-by: blake <email address hidden>

8d97885... by Blake GH

fixed upgrade script naming convention

Signed-off-by: blake <email address hidden>

9a02fac... by Blake GH

bumping Perl version string for 3.11.1

Signed-off-by: blake <email address hidden>

aa8469a... by Blake GH

Translation updates - po files

Signed-off-by: blake <email address hidden>

4a70d0c... by Blake GH

Translation updates - newpot

Signed-off-by: blake <email address hidden>

5759192... by Galen Charlton <email address hidden>

update 3.10.3 release notes for security release

Signed-off-by: Galen Charlton <email address hidden>

55fa095... by Galen Charlton <email address hidden>

update 3.11.1 release notes for security release

Signed-off-by: Galen Charlton <email address hidden>

3fa074c... by Galen Charlton <email address hidden>

LP#2023222: prevent open-ils.fielder.$IDLCLASS from invoking function transforms

This patch adds some argument checking to the family of
open-ils.fielder.$IDLCLASS[.atomic] methods to prevent
JSON query funcion transforms from being invoked. This
is needed to prevent unauthenticated callers from invoking
arbitrary stored procedures.

This is a security patch that closes down a pathway
towards remote, unauthenticated SQL injection attacks.

Signed-off-by: Galen Charlton <email address hidden>
Signed-off-by: Jason Stephenson <email address hidden>
Signed-off-by: Galen Charlton <email address hidden>

28ec91d... by Andrea Neiman

Docs: release notes for 3.11.1 and 3.10.3

Signed-off-by: Andrea Buntz Neiman <email address hidden>
Signed-off-by: Jane Sandberg <email address hidden>

3f02622... by Andrea Neiman

LP#2022962 part 2: 3.11 release notes fix

Signed-off-by: Andrea Buntz Neiman <email address hidden>