r76079 MediaWiki - Code Review archive

Repository:MediaWiki
Revision:r76078‎ | r76079 | r76080 >
Date:11:48, 5 November 2010
Author:catrope
Status:reverted
Tags:
Comment:
RELEASE-NOTES for r76077
Modified paths:
  • /trunk/phase3/RELEASE-NOTES (modified) (history)

Diff [purge]

Index: trunk/phase3/RELEASE-NOTES
@@ -490,6 +490,8 @@
491491 * (bug 25741) Add more data to list=search's srprop
492492 * (bug 25760) counter property still reported by the API when
493493 $wgDisableCounters enabled
 494+* (bug 25793) Session IDs no longer output by action=login to protect against
 495+ session hijacking
494496
495497 === Languages updated in 1.17 ===
496498

Follow-up revisions

RevisionCommit summaryAuthorDate
r76080Revert r76077, r76079, they were an overreaction to a security bug that wasn'...catrope11:54, 5 November 2010

Past revisions this follows-up on

RevisionCommit summaryAuthorDate
r76077(bug 25793) Don't output the session ID over HTTP, allows session hijacking b...catrope11:42, 5 November 2010

Status & tagging log