1032015
|
#1032015 |
Users can't edit collections in their own portfolio
|
|
2
Critical
|
Son Nguyen
|
10
Fix Released
|
1032026
|
#1032026 |
When upgrading to 1.6, if a user is logged in while the upgrade script is run, their password is not rehashed permanently
|
|
2
Critical
|
Hugh Davenport
|
10
Fix Released
|
1034204
|
#1034204 |
An InvalidArgumentException has been thrown when click 'View whole wall'
|
|
2
Critical
|
Hugh Davenport
|
10
Fix Released
|
1034223
|
#1034223 |
Unrecoverable error when deleting a view
|
|
2
Critical
|
Hugh Davenport
|
10
Fix Released
|
1037420
|
#1037420 |
Account settings page hangs with mobile uploads enabled
|
|
2
Critical
|
Son Nguyen
|
10
Fix Released
|
1047111
|
#1047111 |
XEE possible in mahara
|
|
2
Critical
|
Hugh Davenport
|
10
Fix Released
|
1055232
|
#1055232 |
XSS using user uploaded XHTML files
|
|
2
Critical
|
Hugh Davenport
|
10
Fix Released
|
1057226
|
#1057226 |
Latest development does not install
|
|
2
Critical
|
Son Nguyen
|
10
Fix Released
|
1057238
|
#1057238 |
Arbitrary Code Execution via pathtoclam config setting
|
|
2
Critical
|
Hugh Davenport
|
10
Fix Released
|
1061980
|
#1061980 |
XSS using user uploaded SVG files
|
|
2
Critical
|
Hugh Davenport
|
10
Fix Released
|
992905
|
#992905 |
Paginate forum posts in a topic
|
|
3
High
|
Son Nguyen
|
10
Fix Released
|
996172
|
#996172 |
No unique directory for exporting multiple pages written in Japanese
|
|
3
High
|
Son Nguyen
|
10
Fix Released
|
1015381
|
#1015381 |
Text box should be locked upon submitting it to a group
|
|
3
High
|
Son Nguyen
|
10
Fix Released
|
1020102
|
#1020102 |
Copying a collection is creating extra duplicates
|
|
3
High
|
Stacey Walker
|
10
Fix Released
|
1023668
|
#1023668 |
resizeuploaduseroption config throws errors on the journal post edit page
|
|
3
High
|
Son Nguyen
|
10
Fix Released
|
1024255
|
#1024255 |
BrowserID changed login URL
|
|
3
High
|
Hugh Davenport
|
10
Fix Released
|
1026864
|
#1026864 |
Deleting files copied from another user causes deleting the original files
|
|
3
High
|
Son Nguyen
|
10
Fix Released
|
1028685
|
#1028685 |
redirect loop when accessing pages with cleanurls
|
|
3
High
|
Hugh Davenport
|
10
Fix Released
|
1030826
|
#1030826 |
Usernames with diacritics cause an error at login on Windows
|
|
3
High
|
Christopher Tombleson
|
10
Fix Released
|
1031592
|
#1031592 |
Folder should not be deleted if containing submitted files or subfolders
|
|
3
High
|
Son Nguyen
|
10
Fix Released
|
1032009
|
#1032009 |
Extracting a zip file should not be carried out if its folder has been in submitted pages
|
|
3
High
|
Son Nguyen
|
10
Fix Released
|
1033315
|
#1033315 |
Remove 'Add one' link if user don't have permission to edit group/institution/site collection
|
|
3
High
|
Son Nguyen
|
10
Fix Released
|
1034249
|
#1034249 |
Fix selenium tests for 1.6
|
|
3
High
|
Hugh Davenport
|
10
Fix Released
|
1034268
|
#1034268 |
Can't delete an institution on postgres
|
|
3
High
|
Hugh Davenport
|
10
Fix Released
|
1045234
|
#1045234 |
Site staff with institution admin rights doesn't see site statistics
|
|
3
High
|
Hugh Davenport
|
10
Fix Released
|
1045722
|
#1045722 |
Lang string missing for group editability and positioning issue
|
|
3
High
|
Jiri Baum (Catalyst)
|
10
Fix Released
|
1046763
|
#1046763 |
Wall doesn't show all posts
|
|
3
High
|
Hugh Davenport
|
10
Fix Released
|
1048425
|
#1048425 |
Editability setting not visible on /group/mygroups.php once you joined the group
|
|
3
High
|
Son Nguyen
|
10
Fix Released
|
1050292
|
#1050292 |
blog not shown after clicking "next page"
|
|
3
High
|
Hugh Davenport
|
10
Fix Released
|
1055908
|
#1055908 |
Pagination on the 'Pages' tab of institution statistics doesn't work
|
|
3
High
|
Hugh Davenport
|
10
Fix Released
|
1057240
|
#1057240 |
Click-Jacking attack on user account self-deletion page
|
|
3
High
|
Hugh Davenport
|
10
Fix Released
|
1057846
|
#1057846 |
removing image in block before adding new one causes upload failure
|
|
3
High
|
Son Nguyen
|
10
Fix Released
|
1060495
|
#1060495 |
Editing file after changing tab in filebrowser crashes the block editor
|
|
3
High
|
Son Nguyen
|
10
Fix Released
|
1063480
|
#1063480 |
Reflected XSS in user/group bulk CSV upload
|
|
3
High
|
Hugh Davenport
|
10
Fix Released
|
1067551
|
#1067551 |
tinymce fullscreen doesn't use fullscreen
|
|
3
High
|
Hugh Davenport
|
10
Fix Released
|
605708
|
#605708 |
Foreign characters in files within zip file cause trouble
|
|
4
Medium
|
Son Nguyen
|
10
Fix Released
|
947556
|
#947556 |
Make breadcrumbs in small headers visible at all times
|
|
4
Medium
|
Son Nguyen
|
10
Fix Released
|
959090
|
#959090 |
'Query:' string in selfsearch.tpl hard coded
|
|
4
Medium
|
Son Nguyen
|
10
Fix Released
|
976274
|
#976274 |
Institution admin can select "Show online users" desipte site admin not allowing it
|
|
4
Medium
|
Son Nguyen
|
10
Fix Released
|
1009301
|
#1009301 |
Too many admin notifications about notification failures
|
|
4
Medium
|
Richard Mansfield
|
10
Fix Released
|
1012846
|
#1012846 |
"Edit" button doesn't work for files in "Files to download"
|
|
4
Medium
|
Son Nguyen
|
10
Fix Released
|
1014924
|
#1014924 |
Sitemap not generated when a public group has >1 forum
|
|
4
Medium
|
Richard Mansfield
|
10
Fix Released
|
1015912
|
#1015912 |
BrowserID plugin should check for firewall issues before getting enabled
|
|
4
Medium
|
Son Nguyen
|
10
Fix Released
|
1017280
|
#1017280 |
pagination dropdown selector doesn't remember current page when changing limit
|
|
4
Medium
|
Son Nguyen
|
10
Fix Released
|
1023630
|
#1023630 |
Blog post with only images or allowed embed code cannot be submitted.
|
|
4
Medium
|
Son Nguyen
|
10
Fix Released
|
1026618
|
#1026618 |
The registration link can fail if a user's name contains a diacritic
|
|
4
Medium
|
Simon Story
|
10
Fix Released
|
1030033
|
#1030033 |
Rename BrowserID to Persona
|
|
4
Medium
|
Son Nguyen
|
10
Fix Released
|
1030664
|
#1030664 |
Registration reason textbox is missing
|
|
4
Medium
|
Son Nguyen
|
10
Fix Released
|
1030665
|
#1030665 |
Inserting images into a page - browse for image - then click save - dialogue box hangs
|
|
4
Medium
|
Son Nguyen
|
10
Fix Released
|
1032478
|
#1032478 |
Undefined index: 'tabs' warning after editing a file or folder
|
|
4
Medium
|
Son Nguyen
|
10
Fix Released
|
1034172
|
#1034172 |
When editing access to a folder or file in the groups area, the folder dissapears until refreshed
|
|
4
Medium
|
Hugh Davenport
|
10
Fix Released
|
1036020
|
#1036020 |
large collections that have clean urls produce unusable urls
|
|
4
Medium
|
Hugh Davenport
|
10
Fix Released
|
1036800
|
#1036800 |
Lang strings missing in Group editability setting
|
|
4
Medium
|
Hugh Davenport
|
10
Fix Released
|
1037450
|
#1037450 |
Make admin navigation more consistent
|
|
4
Medium
|
Son Nguyen
|
10
Fix Released
|
1041638
|
#1041638 |
Show date in the same way as elsewhere for group editability
|
|
4
Medium
|
Jiri Baum (Catalyst)
|
10
Fix Released
|
1041639
|
#1041639 |
Change "Available" to "Editable" in group
|
|
4
Medium
|
Kristina Hoeppner
|
10
Fix Released
|
1052060
|
#1052060 |
unable to access administration menu on mobile
|
|
4
Medium
|
Hugh Davenport
|
10
Fix Released
|
1052062
|
#1052062 |
Invalid short tag on site logo link in header
|
|
4
Medium
|
Son Nguyen
|
10
Fix Released
|
1052071
|
#1052071 |
menu closes only after a page refresh on mobile
|
|
4
Medium
|
Hugh Davenport
|
10
Fix Released
|
1055239
|
#1055239 |
ClamAV doesn't support scanning multifile uploads
|
|
4
Medium
|
Hugh Davenport
|
10
Fix Released
|
1055859
|
#1055859 |
Warning 'Undefined index: editwindowstart' when adding groups by CSV
|
|
4
Medium
|
Hugh Davenport
|
10
Fix Released
|
792996
|
#792996 |
If Gravatar is enabled, the "no default" profile picture means "choose Gravatar"
|
|
5
Low
|
Son Nguyen
|
10
Fix Released
|
864926
|
#864926 |
submitting tags over 128 characters throws postgres errors
|
|
5
Low
|
Son Nguyen
|
10
Fix Released
|
941551
|
#941551 |
Should display instition's displayname rather than name
|
|
5
Low
|
Christopher Tombleson
|
10
Fix Released
|
942239
|
#942239 |
Allow multiple journals setting missing
|
|
5
Low
|
Melissa Draper
|
10
Fix Released
|
969794
|
#969794 |
"Watchlist", "Recent journal entries" and "Tagged journal entries" blocks miss how many pages can be displayed
|
|
5
Low
|
Son Nguyen
|
10
Fix Released
|
970439
|
#970439 |
Group type "Request" doesn't show up on group homepage
|
|
5
Low
|
Richard Mansfield
|
10
Fix Released
|
987115
|
#987115 |
Update "cron is not running" string
|
|
5
Low
|
Kristina Hoeppner
|
10
Fix Released
|
992930
|
#992930 |
When an image artefact isn't present in the database, getimagesize is called on a directory
|
|
5
Low
|
Hugh Davenport
|
10
Fix Released
|
993710
|
#993710 |
Processing email bounces requires $_ENV to be set
|
|
5
Low
|
Hugh Davenport
|
10
Fix Released
|
994370
|
#994370 |
When handling bounce emails, some SMTP servers don't like the / character
|
|
5
Low
|
Hugh Davenport
|
10
Fix Released
|
998940
|
#998940 |
Change institution navigation items to not include "institution" in 2nd level
|
|
5
Low
|
Kristina Hoeppner
|
10
Fix Released
|
1002168
|
#1002168 |
Remove plans block javascript from template
|
|
5
Low
|
Richard Mansfield
|
10
Fix Released
|
1006213
|
#1006213 |
Add jquery on every page
|
|
5
Low
|
Richard Mansfield
|
10
Fix Released
|
1011355
|
#1011355 |
Browserid user autocreation fails with usersuniquebyusername
|
|
5
Low
|
Richard Mansfield
|
10
Fix Released
|
1014962
|
#1014962 |
strftimenotspecified string should be in langconfig
|
|
5
Low
|
Hugh Davenport
|
10
Fix Released
|
1017903
|
#1017903 |
Typo in group.php in language pack
|
|
5
Low
|
Matt Kolb
|
10
Fix Released
|
1023791
|
#1023791 |
No need to display extra login container if no extra methods are in use
|
|
5
Low
|
Ruslan Kabalin
|
10
Fix Released
|
1024269
|
#1024269 |
New facebook logo change gives debug message in error logs
|
|
5
Low
|
Son Nguyen
|
10
Fix Released
|
1025135
|
#1025135 |
Need more clear error message when exporting views with same title
|
|
5
Low
|
Son Nguyen
|
10
Fix Released
|
1029230
|
#1029230 |
fix warnings on install
|
|
5
Low
|
Christopher Tombleson
|
10
Fix Released
|
1029231
|
#1029231 |
Warning when adding a artefact
|
|
5
Low
|
Christopher Tombleson
|
10
Fix Released
|
1030161
|
#1030161 |
Change "Recent activity" to "Inbox"
|
|
5
Low
|
Kristina Hoeppner
|
10
Fix Released
|
1030695
|
#1030695 |
Various warnings when cron is run
|
|
5
Low
|
Christopher Tombleson
|
10
Fix Released
|
1031524
|
#1031524 |
"Clean URLs" should be listed on "Admin home"
|
|
5
Low
|
Kristina Hoeppner
|
10
Fix Released
|
1032013
|
#1032013 |
'Create one' link should create a group collection when adding a collection navigation block to group page
|
|
5
Low
|
Son Nguyen
|
10
Fix Released
|
1033459
|
#1033459 |
Change description for token with the new "multiple token" feature
|
|
5
Low
|
Kristina Hoeppner
|
10
Fix Released
|
1034183
|
#1034183 |
folder link in group and institution files area is incorrect
|
|
5
Low
|
Hugh Davenport
|
10
Fix Released
|
1034726
|
#1034726 |
Main unrecoverable error message has spelling mistake
|
|
5
Low
|
Kristina Hoeppner
|
10
Fix Released
|
1036990
|
#1036990 |
File name is not marked as required field
|
|
5
Low
|
Son Nguyen
|
10
Fix Released
|
1037632
|
#1037632 |
Menu option should be "Suspended and expired users"
|
|
5
Low
|
Kristina Hoeppner
|
10
Fix Released
|
1038993
|
#1038993 |
Change wording for resizing uploaded images
|
|
5
Low
|
Kristina Hoeppner
|
10
Fix Released
|
1039011
|
#1039011 |
Update lang string for remote username
|
|
5
Low
|
Kristina Hoeppner
|
10
Fix Released
|
1039766
|
#1039766 |
the strings "Group cannot be edited by members before this date" / "...after this date" are not found in the lang strings, but hardcoded in /group/edit.php.
|
|
5
Low
|
Jiri Baum (Catalyst)
|
10
Fix Released
|
1044822
|
#1044822 |
Some language strings are misspelled
|
|
5
Low
|
Kristina Hoeppner
|
10
Fix Released
|
1045134
|
#1045134 |
error when attempting to add saml auth with 'create users' checked
|
|
5
Low
|
Son Nguyen
|
10
Fix Released
|
605730
|
#605730 |
Include "Unpublish" button for published blog posts
|
|
6
Wishlist
|
Son Nguyen
|
10
Fix Released
|
717184
|
#717184 |
Resize images at upload time
|
|
6
Wishlist
|
Mike Kelly
|
10
Fix Released
|
781989
|
#781989 |
Be flexible in the number to results shown on a page
|
|
6
Wishlist
|
Son Nguyen
|
10
Fix Released
|
781990
|
#781990 |
Have more sorting options on member's listing in a group
|
|
6
Wishlist
|
Son Nguyen
|
10
Fix Released
|
786389
|
#786389 |
Submitting of collections
|
|
6
Wishlist
|
Richard Mansfield
|
10
Fix Released
|
792645
|
#792645 |
Add blog post directly from a page
|
|
6
Wishlist
|
Son Nguyen
|
10
Fix Released
|
793308
|
#793308 |
When a member of multiple institutions, decide which theme to use
|
|
6
Wishlist
|
Richard Mansfield
|
10
Fix Released
|
852956
|
#852956 |
Change icon for read messages in "Recent activity / "My inbox"
|
|
6
Wishlist
|
Melissa Draper
|
10
Fix Released
|
886080
|
#886080 |
Collections for groups, institutions and site level
|
|
6
Wishlist
|
Son Nguyen
|
10
Fix Released
|
900529
|
#900529 |
Add a static Mahara logo that can be picked up by Facebook
|
|
6
Wishlist
|
Son Nguyen
|
10
Fix Released
|
900652
|
#900652 |
Expand group info to include number of forums and posts
|
|
6
Wishlist
|
Son Nguyen
|
10
Fix Released
|
918431
|
#918431 |
Registration confirmation could be simplified
|
|
6
Wishlist
|
Richard Mansfield
|
10
Fix Released
|
949973
|
#949973 |
Cron error should be in red to get admin attention
|
|
6
Wishlist
|
Son Nguyen
|
10
Fix Released
|
971282
|
#971282 |
Configurable SafeIframe site list
|
|
6
Wishlist
|
Richard Mansfield
|
10
Fix Released
|
971289
|
#971289 |
Use htmlpurifier in external media block
|
|
6
Wishlist
|
Richard Mansfield
|
10
Fix Released
|
981987
|
#981987 |
"User search" should link to profile pages
|
|
6
Wishlist
|
Christopher Tombleson
|
10
Fix Released
|
982670
|
#982670 |
Add institution staff rights during registration approval
|
|
6
Wishlist
|
Richard Mansfield
|
10
Fix Released
|
986004
|
#986004 |
Allow self registration process for browserid users
|
|
6
Wishlist
|
Hugh Davenport
|
10
Fix Released
|
993018
|
#993018 |
Add a cron job to poll an imap inbox for mail bounces
|
|
6
Wishlist
|
Hugh Davenport
|
10
Fix Released
|
997834
|
#997834 |
Add pieform element for multiple text fields
|
|
6
Wishlist
|
Richard Mansfield
|
10
Fix Released
|
999464
|
#999464 |
Allow local customisation of "Edit site pages" list
|
|
6
Wishlist
|
Richard Mansfield
|
10
Fix Released
|
1001064
|
#1001064 |
Basic support for theming logged-out users
|
|
6
Wishlist
|
Richard Mansfield
|
10
Fix Released
|
1003980
|
#1003980 |
SAML user autocreation can become impossible
|
|
6
Wishlist
|
Simon Story
|
10
Fix Released
|
1006634
|
#1006634 |
Clean URLs for user profiles, group homepages, portfolio pages
|
|
6
Wishlist
|
Richard Mansfield
|
10
Fix Released
|
1017354
|
#1017354 |
date-limited groups
|
|
6
Wishlist
|
Jiri Baum (Catalyst)
|
10
Fix Released
|
1018711
|
#1018711 |
participation report for group pages
|
|
6
Wishlist
|
Melissa Draper
|
10
Fix Released
|
1027736
|
#1027736 |
Enhance tagged posts block - show full entries
|
|
6
Wishlist
|
Chris Wharton
|
10
Fix Released
|
1027738
|
#1027738 |
Enhance tagged posts block - restrict tags
|
|
6
Wishlist
|
Chris Wharton
|
10
Fix Released
|
1030062
|
#1030062 |
Make group name clickable in admin interface
|
|
6
Wishlist
|
Alan McNatty
|
10
Fix Released
|
1031586
|
#1031586 |
Add institution statistics
|
|
6
Wishlist
|
Hugh Davenport
|
10
Fix Released
|
1032414
|
#1032414 |
Change the mobile upload token to use a multitext field
|
|
6
Wishlist
|
Alan McNatty
|
10
Fix Released
|
1032420
|
#1032420 |
Mobile API upgrade for journals and sync'ing
|
|
6
Wishlist
|
Alan McNatty
|
10
Fix Released
|
1041645
|
#1041645 |
Responsive design
|
|
6
Wishlist
|
Hugh Davenport
|
10
Fix Released
|