Skip to content
Commits on Nov 28, 2011
  1. @ctfliblime
Commits on Nov 25, 2011
  1. @ctfliblime

    [#21464023] Security: arbitrary file inclusion

    Poor input cleansing can allow a well-constructed cookie
    to return the contents of arbitrary file system objects.
    ctfliblime committed Nov 25, 2011
Commits on Sep 30, 2011
  1. @ctfliblime

    Merge pull request #184 from hgq/15_05_pt18095857_1_02

    15 05 pt18095857 1 02
    ctfliblime committed Sep 30, 2011
  2. @ctfliblime

    Merge pull request #163 from dlbptfs/summary_info_01-02

    Summary info 01 02
    ctfliblime committed Sep 30, 2011
Commits on Sep 14, 2011
  1. @hgq
Commits on Aug 30, 2011
  1. @dlbptfs

    SIP2 modifications for 1.2

    Patron summary info was still sending back HASH values rather than item
    barcodes.  The renew all response was also adjusted to indicate correctly
    whether a specific item was renewed or not.
    dlbptfs committed Aug 30, 2011
Commits on Jul 20, 2011
  1. @ctfliblime

    Merge pull request #72 from dlbptfs/MTPL_SIP_01_02

    Mtpl sip 01 02
    ctfliblime committed Jul 20, 2011
  2. @dlbptfs

    Change order of variable fields in Patron Info Response (64)

    While SIP2 specifies that variable fields can appear in any order.
    A broken client requires that institution ID is first in the
    Patron Info Response.
    Patch modified and ported from Colin Campbell <>
    dlbptfs committed Jul 20, 2011
Commits on Jul 15, 2011
  1. @ctfliblime

    Merge pull request #60 from dlbptfs/PT15166543

    ctfliblime committed Jul 15, 2011
Commits on Jul 14, 2011
  1. @dlbptfs

    PT15166543: Modification of SIP patron information response message (64)

    A new <options> tag has been accounted for in SIPconfig.xml.  Specifically
    the field ok_patron_pin has been coded for which, when set to 1, will result
    in the patron PIN validation response to always be set to yes (i.e. |CQY|).
    dlbptfs committed Jul 14, 2011
Commits on Jul 13, 2011
  1. @ctfliblime
Commits on Jul 12, 2011
  1. @ctfliblime

    [delivers #15667847] Add displayexpired column to reserves_suspended …

    Also delete vestigial 'lowestPriority' column.
    ctfliblime committed Jul 12, 2011
  2. @ctfliblime

    [delivers #14668229] Broken advanced search with branch groups

    Parentheses were missing from around branches list.
    ctfliblime committed Jul 11, 2011
Commits on Jul 7, 2011
  1. @ctfliblime
Commits on Jul 1, 2011
  1. @ctfliblime

    Merge pull request #39 from hgq/07_02_pt11414367_1_02

    07 02 pt11414367 1 02
    ctfliblime committed Jun 30, 2011
Commits on Jun 22, 2011
  1. @hgq
  2. @hgq
Commits on Jun 15, 2011
  1. @ctfliblime
Commits on Jun 3, 2011
  1. @ctfliblime

    Merge pull request #1 from ranginui/4_02

    4 02
    ctfliblime committed Jun 3, 2011
  2. @ranginui
  3. @ranginui
  4. @ctfliblime

    [Fixes #13906693] Make GetPendingReserveOnItem more selective

    The GetPendingReserveOnItem function created for #8315135 was
    being too inclusive in its query, triggering the appearance
    of item-level holds in the detail view even when there were
    none. This patch changes it so it only returns a defined value
    if there is an item-level hold or the item has an associated
    reserve that is Waiting or in Transit.
    ctfliblime committed May 27, 2011
Commits on Jun 1, 2011
  1. @ctfliblime
  2. @ctfliblime

    [Fixes #8573563, #14084837] Unable to delete courses with stuck reserves

    If the item associated with a course reserve is deleted, the
    course reserve itself will not show and cannot be deleted.
    This makes it impossible to delete the course. This patch detects
    the presence of this unresolved state and resolves it by deleting
    the unrecoverable, stuck reserve.
    ctfliblime committed Jun 1, 2011
  3. @ctfliblime

    [Fixes #12849423] Enable course reservation of multiple items at once

    This patch changes the barcode entry from a text to textarea, processing
    multiple line-separated barcodes to be added to a course simultaneously.
    ctfliblime committed Jun 1, 2011
  4. @ctfliblime

    [Fixes #10585697] Putting item on course reserve deletes its itemtype

    Use of "itemtype" instead of "itype" caused the value to be clobbered.
    ctfliblime committed Jun 1, 2011
  5. @ctfliblime

    [Fixes #8315135] Title's detail view very slow with lots of reserves

    CheckReserves() was being called for each item in the title, and that
    function in turn iterates over every reserve on the title. This is a
    lot of iterating when there are titles with lots of reserves that
    also have lots of items, which is typically the case. Calls within
    this tend to be very expensive, particularly GetMember.
    This patch creates a new function, C4::Reserves::GetPendingReserveOnItem,
    that is a streamlined way of getting the information required for
    catalogue/, which greatly improves performance of that script.
    ctfliblime committed May 26, 2011
  6. @rfy @ctfliblime

    PT-12095407 Tag Cloud Issue manifested in tags not displaying in OPAC.

    The problem was related to the data being submitted in MARC blob format. It should be in XML format.
    rfy committed with ctfliblime May 13, 2011
  7. @ctfliblime
  8. @dlbptfs @ctfliblime

    PID added to SIP2 logging

    dlbptfs committed with ctfliblime May 4, 2011
  9. @ctfliblime

    [Fixes #12849447] Clarify when item unavailable for SCO renewal

    UI ambiguity was contributing to a situation where it was easy for
    a patron to think they were renewing an item when in fact they
    were choosing to indicate they had returned it. A working button
    in a table column labeled "Renew" should only be able to renew
    items, rather than quietly presenting the very similar option to
    "Return Item". This patch disables one-click returns and makes
    the item's unavailability more visually apparent.
    ctfliblime committed Jun 1, 2011
Commits on May 20, 2011
  1. @ranginui

    Fixing nomenclature

    ranginui committed May 20, 2011
Commits on May 17, 2011
  1. @ctfliblime

    Add release notes

    ctfliblime committed May 17, 2011
  2. @ctfliblime
  3. @ctfliblime
Something went wrong with that request. Please try again.