Try to do a chart, and you'll get a taint error. Their are two problems: First, we weren't detainting the product name after checking it. Secondly, the name of the file depend son input from the fields. For several reasons (see comments in the patch) we can't only allow valid inputs, so just do basic "letter+number" checks.
daa reported this; forgot to cc him
Status: NEW → ASSIGNED
Priority: -- → P1
Target Milestone: --- → Bugzilla 2.16
Comment on attachment 67229 [details] [diff] [review] patch r=gerv. Gerv
Attachment #67229 - Flags: review+
Status: ASSIGNED → RESOLVED
Last Resolved: 17 years ago
Resolution: --- → FIXED
You need to log in before you can comment on or make changes to this bug.