lp:evergreen/3.5

Created by Dan Wells and last modified
Get this branch:
bzr branch lp:evergreen/3.5

Branch merges

Related bugs

Related blueprints

Branch information

Owner:
Evergreen Bug Wranglers
Project:
Evergreen
Status:
Development

Import details

Import Status: Reviewed

This branch is an import of the HEAD branch of the Git repository at git://git.evergreen-ils.org/Evergreen.git,branch=rel_3_5.

The next import is scheduled to run .

Last successful import was .

Import started on izar and finished taking 15 seconds — see the log
Import started on izar and finished taking 15 seconds — see the log
Import started on izar and finished taking 15 seconds — see the log
Import started on alnitak and finished taking 20 seconds — see the log
Import started on izar and finished taking 15 seconds — see the log
Import started on izar and finished taking 15 seconds — see the log
Import started on alnitak and finished taking 20 seconds — see the log
Import started on izar and finished taking 15 seconds — see the log
Import started on alnitak and finished taking 20 seconds — see the log
Import started on alnitak and finished taking 20 seconds — see the log

Recent revisions

24157. By Galen Charlton <email address hidden> on 2021-06-15

LP#1930933: fix issue with over-escaping in search results title attributes

This patch fixes an issue where a record with a title containing the
word "hidden" can have its title, ironically enough, not show up
on public catalog search results.

To test
-------
[1] Create an OPAC-visible record whose 245 is something like:

    =245 04$aThe hidden one <script>alert('title!')</script>

[2] Search for the record in both the TPAC and Bootstrap skin. Note
    that the title isn't displayed.
[3] Apply the patch and repeat step 2. This time, the full title
    should be displayed.
[4] Verify that the OPAC does not display an alert box.

Signed-off-by: Galen Charlton <email address hidden>
Signed-off-by: Jason Stephenson <email address hidden>
Signed-off-by: Jeff Davis <email address hidden>

Conflicts:
 Open-ILS/src/templates-bootstrap/opac/parts/result/table.tt2

24156. By Galen Charlton <email address hidden> on 2021-05-25

LP#1923225: stamp DB update

Signed-off-by: Galen Charlton <email address hidden>

24155. By Jeff Davis on 2021-05-25

LP#1923225: clean up some double-escaping of HTML in record display

Signed-off-by: Jeff Davis <email address hidden>
Signed-off-by: Michele Morgan <email address hidden>
Signed-off-by: Galen Charlton <email address hidden>

24154. By Galen Charlton on 2021-05-25

LP#1923225: have search highlighting stored procedure do HTML-escaping

This patch builds on the previous work to have the stored procedures
that produced highlighted and unhighlighted versions of display
attributes HTML-escape the source values, then adjusts the TPAC
and Bootstrap templates to avoid double-escaping.

Signed-off-by: Galen Charlton <email address hidden>
Signed-off-by: Galen Charlton <email address hidden>

24153. By Jeff Davis on 2021-05-25

LP#1923225: avoid over-escaping ISBNs and ISSNs

Signed-off-by: Jeff Davis <email address hidden>
Signed-off-by: Galen Charlton <email address hidden>
Signed-off-by: Galen Charlton <email address hidden>

24152. By Dan Briem on 2021-05-18

LP#1918362 Unchanged workstation settings applied on every checkin

* Stop attempting to save the Update Inventory setting on every
checkin - incorrect prefix & redundant (it's a modifier now)
* Stop saving the Strict Barcode setting on every checkin,
renewal, and checkout
* Save Strict Barcode on user interaction with its checkbox

To test:
1. confirm Strict Barcode and Do Inventory Update settings still
apply and are "sticky" on the Circulation->Checkin interface
2. confirm Strict Barcode still applies and is "sticky" on the
Circulation->Renew Items and Circulation->Checkout interfaces

Signed-off-by: Dan Briem <email address hidden>
Signed-off-by: Jeff Davis <email address hidden>

Conflicts:
 Open-ILS/web/js/ui/default/staff/circ/checkin/app.js
Signed-off-by: Jane Sandberg <email address hidden>

24151. By Jeff Davis on 2021-05-16

LP#1924185: use preferred name in patron summary

When available, the preferred name is used as the main name in the
patron summary (rather than as a less-prominent field beneath the main
name). The legal name is displayed further down in the summary, just
after the ID fields.

Signed-off-by: Jeff Davis <email address hidden>
Signed-off-by: Michele Morgan <email address hidden>
Signed-off-by: Jane Sandberg <email address hidden>

24150. By Jane Sandberg on 2021-03-31

Docs: 3.5.4 release notes

Signed-off-by: Jane Sandberg <email address hidden>

24149. By Jeff Davis on 2021-03-31

LP#1902965: change format type in XML transform to avoid XSS in SuperCat

Signed-off-by: Jeff Davis <email address hidden>
Signed-off-by: Jason Boyer <email address hidden>
Signed-off-by: Jason Stephenson <email address hidden>
Signed-off-by: Jane Sandberg <email address hidden>

24148. By Jeff Davis on 2021-03-31

LP#1902965: HTML filter on OPAC search results and record display

Signed-off-by: Jeff Davis <email address hidden>
Signed-off-by: Jason Boyer <email address hidden>
Signed-off-by: Jason Stephenson <email address hidden>
Signed-off-by: Jane Sandberg <email address hidden>

Branch metadata

Branch format:
Branch format 7
Repository format:
Bazaar repository format 2a (needs bzr 1.16 or later)
This branch contains Public information 
Everyone can see this information.