Main Koha release repository https://koha-community.org
Find a file
Frère Sébastien Marie 649573ad24 Bug 5131 :restrict use of sort_by value to allowed values
The user input for sort_by value was used without care, resulting the possibility for user to set any Template Variable to 1.

This patch restrict the values to sort field.
The list of allowd_sortby was taken from 'includes/resort_form.inc'.

Signed-off-by: Chris Cormack <chrisc@catalyst.net.nz>
Signed-off-by: Paul Poulain <paul.poulain@biblibre.com>
Signed-off-by: Chris Cormack <chrisc@catalyst.net.nz>
2011-08-04 13:17:22 +12:00
acqui Bug 4959 (Language inconsistencies on basket groups; skip confirmation when closing basket) 2011-08-04 09:47:58 +12:00
admin Bug 5453: Move declarations out of conditionals 2011-07-15 15:50:20 +12:00
authorities
basket
C4 Bug 5737: Modified the merge subroutine in AuthoritiesMarc.pm so it won't destroy the connection to the biblioserver. 2011-08-03 14:01:52 +12:00
catalogue Bug 6641 -- Specially crafted URL can allow unauthorized download of MARC files from staff client 2011-08-01 21:13:11 +12:00
cataloguing Bug 4839: Adjust default values for MARC21 authority Fixed-Length Data Elements 2011-08-04 09:58:42 +12:00
circ Merge remote-tracking branch 'kc/new/enh/bug_5922' into kcmaster 2011-08-01 13:03:34 +12:00
debian Fixing a little style edit, so Perl::Critic won't complain 2011-08-04 13:10:19 +12:00
docs Bug 6350: History update 2011-07-28 14:12:21 +12:00
errors
etc
install_misc
installer Bumping database version 2011-08-04 10:24:08 +12:00
koha-tmpl Bug 4839: Adjust default values for MARC21 authority Fixed-Length Data Elements 2011-08-04 09:58:42 +12:00
labels Bug 6642 : Making sure permissions are checked on label creator 2011-08-01 21:09:33 +12:00
members bug_4415: Copy parent contact details to child when adding Let child details be managed separately 2011-08-03 22:19:31 +12:00
misc Bug 5263 - Add support for including fields from the ISSUES table in advanced due notices 2011-08-02 12:44:42 +12:00
offline_circ
opac Bug 5131 :restrict use of sort_by value to allowed values 2011-08-04 13:17:22 +12:00
patroncards Bug 6643 -- Able to download patron card batches as an unauthorized user 2011-08-01 21:15:45 +12:00
reports
reserve
reviews
rotating_collections
selenium
serials
skel
sms
suggestion
svc
t bug 5653: use itemcallnumber in bib label layouts 2011-06-13 11:15:34 +12:00
tags
test
tmp/modified_authorities
tools Bug 5263 - Add support for including fields from the ISSUES table in advanced due notices 2011-08-02 12:44:42 +12:00
virtualshelves
xt
.htaccess
about.pl
changelanguage.pl
edithelp.pl
fix-perl-path.PL
help.pl
INSTALL
install-CPAN.pl
INSTALL.debian
INSTALL.fedora7 fixing various links to point to *.koha-community.org 2010-10-21 22:08:24 -04:00
INSTALL.opensuse
INSTALL.ubuntu
INSTALL.ubuntu.lucid
koha_perl_deps.pl
kohaversion.pl Bumping database version 2011-08-04 10:24:08 +12:00
LICENSE
mainpage.pl
Makefile.PL
MANIFEST.SKIP
README
README.robots
rewrite-config.PL

Koha is a free software integrated library system.

Koha is distributed under the GNU GPL version 2 or later.
Please read the file LICENSE for more details.

To install or upgrade Koha, please see the INSTALL file appropriate
to your platform.

Report bugs at http://bugs.koha-community.org/

Visit the Koha Project website at http://www.koha-community.org/