Branch: refs/heads/release_14.10 Home: https://github.com/galaxyproject/galaxy Commit: ca123a4f2674351e01235bab545559b299b99ff9 https://github.com/galaxyproject/galaxy/commit/ca123a4f2674351e01235bab54555... Author: Nate Coraor <nate@bx.psu.edu> Date: 2016-02-24 (Wed, 24 Feb 2016) Changed paths: M lib/galaxy/util/__init__.py Log Message: ----------- Add a safe_relpath util function for ensuring a path does not reference an absolute or parent directory Commit: 3b963226a110b8de8aa11d3c4e053a220bbcba53 https://github.com/galaxyproject/galaxy/commit/3b963226a110b8de8aa11d3c4e053... Author: Nate Coraor <nate@bx.psu.edu> Date: 2016-02-24 (Wed, 24 Feb 2016) Changed paths: M lib/galaxy/exceptions/__init__.py M lib/galaxy/exceptions/error_codes.json M lib/galaxy/tools/imp_exp/__init__.py M lib/galaxy/tools/imp_exp/unpack_tar_gz_archive.py Log Message: ----------- Security fixes for history imports Commit: 32c910ac4021b0e65112d557a7f12d24e158171d https://github.com/galaxyproject/galaxy/commit/32c910ac4021b0e65112d557a7f12... Author: Nate Coraor <nate@bx.psu.edu> Date: 2016-02-24 (Wed, 24 Feb 2016) Changed paths: M lib/galaxy/objectstore/__init__.py M lib/galaxy/objectstore/rods.py M lib/galaxy/objectstore/s3.py Log Message: ----------- Security fixes for object store paths Commit: 78f441b9c7bfd68f7b3ee030f4ffe4a95b5fdc58 https://github.com/galaxyproject/galaxy/commit/78f441b9c7bfd68f7b3ee030f4ffe... Author: Nate Coraor <nate@bx.psu.edu> Date: 2016-02-24 (Wed, 24 Feb 2016) Changed paths: M lib/galaxy/model/__init__.py M lib/galaxy/webapps/galaxy/controllers/requests_admin.py R templates/admin/requests/select_datasets_to_transfer.mako M templates/webapps/galaxy/requests/common/common.mako M templates/webapps/galaxy/requests/common/view_request_history.mako M templates/webapps/galaxy/requests/common/view_sample_datasets.mako Log Message: ----------- Remove sample tracking manual external service transfer due to security concerns Commit: cee85bae67377d3fad42bec5b4ebb022aaf7b2c7 https://github.com/galaxyproject/galaxy/commit/cee85bae67377d3fad42bec5b4ebb... Author: Nate Coraor <nate@bx.psu.edu> Date: 2016-02-24 (Wed, 24 Feb 2016) Changed paths: M lib/galaxy/webapps/galaxy/controllers/admin_toolshed.py M lib/galaxy/webapps/tool_shed/controllers/repository.py M lib/tool_shed/util/shed_util_common.py M templates/admin/tool_shed_repository/common.mako M templates/webapps/tool_shed/repository/common.mako Log Message: ----------- Security fixes for tool shed repository browsing Compare: https://github.com/galaxyproject/galaxy/compare/360a6ad76d43...cee85bae6737