[Fusionforge-commits] r12789 - branches/Branch_5_0/gforge/common/include

Thorsten Glaser mirabilos at fusionforge.org
Wed Mar 16 12:37:07 CET 2011


Author: mirabilos
Date: 2011-03-16 12:37:07 +0100 (Wed, 16 Mar 2011)
New Revision: 12789

Modified:
   branches/Branch_5_0/gforge/common/include/Group.class.php
Log:
mailing lists now are as public as the project they?\226?\128?\153re in upon creation
possible data leak, security fix, spotted by <scamp:#fusionforge>, 10x!


Modified: branches/Branch_5_0/gforge/common/include/Group.class.php
===================================================================
--- branches/Branch_5_0/gforge/common/include/Group.class.php	2011-03-16 09:26:45 UTC (rev 12788)
+++ branches/Branch_5_0/gforge/common/include/Group.class.php	2011-03-16 11:37:07 UTC (rev 12789)
@@ -2166,7 +2166,7 @@
 		//
 		if ($GLOBALS['sys_use_mail']) {
 			$mlist = new MailingList($this);
-			if (!$mlist->create('commits',_('Commits'),1,$idadmin_group)) {
+			if (!$mlist->create('commits',_('Commits'),$this->isPublic(),$idadmin_group)) {
 				$this->setError(sprintf(_('ML: %s'),$mlist->getErrorMessage()));
 				db_rollback();
 				setup_gettext_from_context();




More information about the Fusionforge-commits mailing list