Koha/members
Aleisha Amohia b56c19528e Bug 19258: Prevent warn when reversing a payment
The following warn is triggered when I click the Reverse button next to
an individual payment on the Account tab:
CGI::param called in list context from package
CGI::Compile::ROOT::home_vagrant_kohaclone_members_boraccount_2epl line
63, this can lead to vulnerabilities. See the warning in "Fetching the
value or values of a single named parameter" at /usr/share/perl5/CGI.pm
line 436.

To test:
1) Go to a members detail page in staff side, create a manual invoice,
pay it
2) Go to the Account tab, click Reverse next to the payment you just
made
3) Notice warns
4) Apply patch and repeat steps 1 & 2
5) Warns should be gone

Sponsored-by: Catalyst IT

Signed-off-by: Mark Tompsett <mtompset@hotmail.com>

Signed-off-by: Jonathan Druart <jonathan.druart@bugs.koha-community.org>

Signed-off-by: Jonathan Druart <jonathan.druart@bugs.koha-community.org>
2017-09-07 14:39:09 -03:00
..
boraccount.pl Bug 19258: Prevent warn when reversing a payment 2017-09-07 14:39:09 -03:00
default_messageprefs.pl
deletemem.pl Bug 19080: Fix member vs borrowernumber in delmember 2017-08-25 11:03:37 -03:00
discharge.pl Bug 19080: Handle non-existing patrons gratefully 2017-08-25 11:03:37 -03:00
discharges.pl
files.pl Bug 19080: Handle non-existing patrons gratefully 2017-08-25 11:03:37 -03:00
guarantor_search.pl Bug 15758: Koha::Libraries - Remove GetBranches 2016-09-08 14:36:03 +00:00
housebound.pl Bug 17829: Move GetMember to Koha::Patron 2017-07-10 13:14:19 -03:00
mancredit.pl Bug 19080: Handle non-existing patrons gratefully 2017-08-25 11:03:37 -03:00
maninvoice.pl Bug 19080: Handle non-existing patrons gratefully 2017-08-25 11:03:37 -03:00
member-flags.pl Bug 19080: Handle non-existing patrons gratefully 2017-08-25 11:03:37 -03:00
member-password.pl Bug 19080: Handle non-existing patrons gratefully 2017-08-25 11:03:37 -03:00
member.pl Bug 17829: Move GetMember to Koha::Patron 2017-07-10 13:14:19 -03:00
memberentry.pl Bug 19080: Handle non-existing patrons gratefully 2017-08-25 11:03:37 -03:00
members-home.pl Bug 15758: Koha::Libraries - Remove GetBranchesLoop 2016-09-08 14:36:02 +00:00
members-update-do.pl Bug 15758: Koha::Libraries - Ultimate duel for C4::Branch 2016-09-08 14:36:04 +00:00
members-update.pl Bug 13757: Better display for attr changes in members-update.pl 2017-03-24 18:45:17 +00:00
mod_debarment.pl Bug 18858: Prevent warn when deleting a borrower debarment 2017-07-13 18:23:29 -03:00
moremember.pl Bug 19129 - Clean up Details tab for Organisation patrons 2017-09-01 13:02:23 -03:00
nl-search.pl Bug 15407: Koha::Patron::Categories - replace C4::Category->all 2016-09-08 13:29:03 +00:00
notices.pl Bug 19080: Handle non-existing patrons gratefully 2017-08-25 11:03:37 -03:00
patronimage.pl Bug 17423 - patronimage.pl permission is too restrictive 2016-10-17 23:44:25 +00:00
pay.pl Bug 19258: Preventing warns when paying a fine or charge from Pay selected button 2017-09-07 14:39:09 -03:00
paycollect.pl Bug 19258: Prevent warn when paying a fine or charge 2017-09-07 14:39:09 -03:00
print_overdues.pl Bug 12933: (QA followup) Rename GetOverdues to GetOverduesForPatron 2015-11-04 12:41:29 -03:00
printfeercpt.pl Bug 19080: Handle non-existing patrons gratefully 2017-08-25 11:03:37 -03:00
printinvoice.pl Bug 19080: Handle non-existing patrons gratefully 2017-08-25 11:03:37 -03:00
printslip.pl
purchase-suggestions.pl Bug 19080: Handle non-existing patrons gratefully 2017-08-25 11:03:37 -03:00
readingrec.pl Bug 19080: Handle non-existing patrons gratefully 2017-08-25 11:03:37 -03:00
routing-lists.pl Bug 19080: Fix perlcritic in routing-lists.pl 2017-08-25 11:03:37 -03:00
setstatus.pl Bug 16911: Rename extend_subscription with renew_account 2016-09-09 09:45:32 +00:00
statistics.pl Bug 19080: Handle non-existing patrons gratefully 2017-08-25 11:03:37 -03:00
summary-print.pl Bug 19080: Handle non-existing patrons gratefully 2017-08-25 11:03:37 -03:00
update-child.pl Bug 19080: Handle non-existing patrons gratefully 2017-08-25 11:03:37 -03:00