[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty (CVE-2022-34750)

2022-07-20 Thread Stashbot
Stashbot added a comment. Mentioned in SAL (#wikimedia-operations) [2022-07-20T13:54:10Z] lucaswerkmeister-wmde@deploy1002 /srv/mediawiki-staging (master $ u=) $ git -C php-1.39.0-wmf.19/extensions/WikibaseLexeme am --skip # T308659 backport alrea

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty (CVE-2022-34750)

2022-07-11 Thread ReleaseTaggerBot
ReleaseTaggerBot edited projects, added MW-1.39-notes (1.39.0-wmf.21; 2022-07-18); removed MW-1.39-notes (1.39.0-wmf.18; 2022-06-27). TASK DETAIL https://phabricator.wikimedia.org/T308659 EMAIL PREFERENCES https://phabricator.wikimedia.org/settings/panel/emailpreferences/ To: Lucas_Werkmeis

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty (CVE-2022-34750)

2022-06-29 Thread sbassett
sbassett moved this task from Watching to Our Part Is Done on the Security-Team board. sbassett added a comment. In T308659#8037779 , @Lucas_Werkmeister_WMDE wrote: > I think we’re done here (but please reopen if the task should still be

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty (CVE-2022-34750)

2022-06-29 Thread Lucas_Werkmeister_WMDE
Lucas_Werkmeister_WMDE closed this task as "Resolved". Lucas_Werkmeister_WMDE moved this task from Peer Review to Done on the Special:NewLexeme revival (Special:NewLexeme revival - sprint 11) board. Lucas_Werkmeister_WMDE added a comment. I think we’re done here (but please reopen if the task

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty (CVE-2022-34750)

2022-06-29 Thread gerritbot
gerritbot added a comment. Change 809203 **merged** by jenkins-bot: [mediawiki/extensions/WikibaseLexeme@master] Clean up lemma length validation https://gerrit.wikimedia.org/r/809203 TASK DETAIL https://phabricator.wikimedia.org/T308659 EMAIL PREFERENCES https://phabricator.wik

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty (CVE-2022-34750)

2022-06-29 Thread Lucas_Werkmeister_WMDE
Lucas_Werkmeister_WMDE added a comment. Backported the patches to REL1_35 and REL1_37 (1.36 is out of support). Leaving the task open for review of the cleanup patch (which doesn’t need backporting). TASK DETAIL

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty (CVE-2022-34750)

2022-06-29 Thread gerritbot
gerritbot added a comment. Change 809604 **merged** by Lucas Werkmeister (WMDE): [mediawiki/extensions/WikibaseLexeme@REL1_35] SECURITY: Validate lemma length in Special:NewLexeme https://gerrit.wikimedia.org/r/809604 TASK DETAIL https://phabricator.wikimedia.org/T308659 EMAIL PR

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty (CVE-2022-34750)

2022-06-29 Thread gerritbot
gerritbot added a comment. Change 809601 **merged** by jenkins-bot: [mediawiki/extensions/Wikibase@REL1_35] SECURITY: Validate term length in Special:NewProperty https://gerrit.wikimedia.org/r/809601 TASK DETAIL https://phabricator.wikimedia.org/T308659 EMAIL PREFERENCES https:

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty (CVE-2022-34750)

2022-06-29 Thread gerritbot
gerritbot added a comment. Change 809603 **merged** by jenkins-bot: [mediawiki/extensions/WikibaseLexeme@REL1_37] SECURITY: Validate lemma length in Special:NewLexeme https://gerrit.wikimedia.org/r/809603 TASK DETAIL https://phabricator.wikimedia.org/T308659 EMAIL PREFERENCES h

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty (CVE-2022-34750)

2022-06-29 Thread gerritbot
gerritbot added a comment. Change 809572 **merged** by jenkins-bot: [mediawiki/extensions/Wikibase@REL1_37] SECURITY: Validate term length in Special:NewProperty https://gerrit.wikimedia.org/r/809572 TASK DETAIL https://phabricator.wikimedia.org/T308659 EMAIL PREFERENCES https:

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty (CVE-2022-34750)

2022-06-29 Thread gerritbot
gerritbot added a comment. Change 809604 had a related patch set uploaded (by Lucas Werkmeister (WMDE); author: Lucas Werkmeister (WMDE)): [mediawiki/extensions/WikibaseLexeme@REL1_35] SECURITY: Validate lemma length in Special:NewLexeme https://gerrit.wikimedia.org/r/809604 TASK D

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty (CVE-2022-34750)

2022-06-29 Thread gerritbot
gerritbot added a comment. Change 809603 had a related patch set uploaded (by Lucas Werkmeister (WMDE); author: Lucas Werkmeister (WMDE)): [mediawiki/extensions/WikibaseLexeme@REL1_37] SECURITY: Validate lemma length in Special:NewLexeme https://gerrit.wikimedia.org/r/809603 TASK D

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty (CVE-2022-34750)

2022-06-29 Thread sbassett
sbassett added a comment. In T308659#8036319 , @MoritzMuehlenhoff wrote: > This appeared in the CVE feed as https://www.cve.org/CVERecord?id=CVE-2022-34750 Yes, I requested that ID a couple of days ago and forgot to update the task

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty (CVE-2022-34750)

2022-06-29 Thread gerritbot
gerritbot added a comment. Change 809601 had a related patch set uploaded (by Lucas Werkmeister (WMDE); author: Lucas Werkmeister (WMDE)): [mediawiki/extensions/Wikibase@REL1_35] SECURITY: Validate term length in Special:NewProperty https://gerrit.wikimedia.org/r/809601 TASK DETAIL

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty (CVE-2022-34750)

2022-06-29 Thread gerritbot
gerritbot added a comment. Change 809572 had a related patch set uploaded (by Lucas Werkmeister (WMDE); author: Lucas Werkmeister (WMDE)): [mediawiki/extensions/Wikibase@REL1_37] SECURITY: Validate term length in Special:NewProperty https://gerrit.wikimedia.org/r/809572 TASK DETAIL

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty

2022-06-29 Thread MoritzMuehlenhoff
MoritzMuehlenhoff added a comment. This appeared in the CVE feed as https://www.cve.org/CVERecord?id=CVE-2022-34750 TASK DETAIL https://phabricator.wikimedia.org/T308659 EMAIL PREFERENCES https://phabricator.wikimedia.org/settings/panel/emailpreferences/ To: Lucas_Werkmeister_WMDE, Mori

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty (CVE-2022-34750)

2022-06-29 Thread MoritzMuehlenhoff
MoritzMuehlenhoff renamed this task from "Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty" to "Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty (CVE-2022-34750)". TASK DETA

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty

2022-06-28 Thread gerritbot
gerritbot added a comment. Change 809203 had a related patch set uploaded (by Lucas Werkmeister (WMDE); author: Lucas Werkmeister (WMDE)): [mediawiki/extensions/WikibaseLexeme@master] Clean up lemma length validation https://gerrit.wikimedia.org/r/809203 TASK DETAIL https://phabri

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty

2022-06-28 Thread karapayneWMDE
karapayneWMDE removed Summary. karapayneWMDE set the point value for this task to "3". TASK DETAIL https://phabricator.wikimedia.org/T308659 EMAIL PREFERENCES https://phabricator.wikimedia.org/settings/panel/emailpreferences/ To: Lucas_Werkmeister_WMDE, karapayneWMDE Cc: Zabe, sbassett, Erdi

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty

2022-06-28 Thread karapayneWMDE
karapayneWMDE edited projects, added Special:NewLexeme revival (Special:NewLexeme revival - sprint 11); removed Special:NewLexeme revival. karapayneWMDE set Summary to 3. TASK DETAIL https://phabricator.wikimedia.org/T308659 EMAIL PREFERENCES https://phabricator.wikimedia.org/settings/panel/

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty

2022-06-28 Thread gerritbot
gerritbot added a comment. Change 808949 **merged** by jenkins-bot: [mediawiki/extensions/WikibaseLexeme@REL1_38] SECURITY: Validate lemma length in Special:NewLexeme(Alpha) https://gerrit.wikimedia.org/r/808949 TASK DETAIL https://phabricator.wikimedia.org/T308659 EMAIL PREFEREN

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty

2022-06-28 Thread gerritbot
gerritbot added a comment. Change 808948 **merged** by jenkins-bot: [mediawiki/extensions/Wikibase@REL1_38] SECURITY: Validate term length in Special:NewProperty https://gerrit.wikimedia.org/r/808948 TASK DETAIL https://phabricator.wikimedia.org/T308659 EMAIL PREFERENCES https:

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty

2022-06-27 Thread ReleaseTaggerBot
ReleaseTaggerBot added a project: MW-1.39-notes (1.39.0-wmf.18; 2022-06-27). TASK DETAIL https://phabricator.wikimedia.org/T308659 EMAIL PREFERENCES https://phabricator.wikimedia.org/settings/panel/emailpreferences/ To: Lucas_Werkmeister_WMDE, ReleaseTaggerBot Cc: sbassett, Erdinc_Ciftci_WMD

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty

2022-06-27 Thread gerritbot
gerritbot added a comment. Change 808990 **merged** by jenkins-bot: [mediawiki/extensions/WikibaseLexeme@master] SECURITY: Validate lemma length in Special:NewLexeme(Alpha) https://gerrit.wikimedia.org/r/808990 TASK DETAIL https://phabricator.wikimedia.org/T308659 EMAIL PREFERENC

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty

2022-06-27 Thread gerritbot
gerritbot added a comment. Change 808989 **merged** by jenkins-bot: [mediawiki/extensions/Wikibase@master] SECURITY: Validate term length in Special:NewProperty https://gerrit.wikimedia.org/r/808989 TASK DETAIL https://phabricator.wikimedia.org/T308659 EMAIL PREFERENCES https:/

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty

2022-06-27 Thread gerritbot
gerritbot added a comment. Change 808949 had a related patch set uploaded (by SBassett; author: Lucas Werkmeister (WMDE)): [mediawiki/extensions/WikibaseLexeme@REL1_38] SECURITY: Validate lemma length in Special:NewLexeme(Alpha) https://gerrit.wikimedia.org/r/808949 TASK DETAIL h

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty

2022-06-27 Thread gerritbot
gerritbot added a comment. Change 808948 had a related patch set uploaded (by SBassett; author: Lucas Werkmeister (WMDE)): [mediawiki/extensions/Wikibase@REL1_38] SECURITY: Validate term length in Special:NewProperty https://gerrit.wikimedia.org/r/808948 TASK DETAIL https://phabr

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty

2022-06-27 Thread gerritbot
gerritbot added a comment. Change 808990 had a related patch set uploaded (by SBassett; author: Lucas Werkmeister (WMDE)): [mediawiki/extensions/WikibaseLexeme@master] SECURITY: Validate lemma length in Special:NewLexeme(Alpha) https://gerrit.wikimedia.org/r/808990 TASK DETAIL ht

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty

2022-06-27 Thread gerritbot
gerritbot added a project: Patch-For-Review. TASK DETAIL https://phabricator.wikimedia.org/T308659 EMAIL PREFERENCES https://phabricator.wikimedia.org/settings/panel/emailpreferences/ To: Lucas_Werkmeister_WMDE, gerritbot Cc: sbassett, Erdinc_Ciftci_WMDE, Michael, ItamarWMDE, guergana.tzatch

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty

2022-06-27 Thread gerritbot
gerritbot added a comment. Change 808989 had a related patch set uploaded (by SBassett; author: Lucas Werkmeister (WMDE)): [mediawiki/extensions/Wikibase@master] SECURITY: Validate term length in Special:NewProperty https://gerrit.wikimedia.org/r/808989 TASK DETAIL https://phabri

[Wikidata-bugs] [Maniphest] T308659: Validate lemma length in Special:NewLexeme(Alpha) and label/description/aliases length in Special:NewProperty

2022-06-27 Thread sbassett
sbassett triaged this task as "Low" priority. sbassett changed the visibility from "Custom Policy" to "Public (No Login Required)". sbassett changed the edit policy from "Custom Policy" to "All Users". sbassett changed Risk Rating from N/A to Low. TASK DETAIL https://phabricator.wikimedia.org/T