ABCDEFG
1
Test version: RefApp 2.12 Modules Test V1Test Designed by: Herbert Yiga
2
Test Scenario ID: 1.1Test Designed date:
3
Test Priority (Low/Medium/High): HighTest Executed by: Juliet
4
Functionality Name: RefApp 2.12 Test Execution date:
5
Description:System Version:
6
System URL:
7
MODULEFeature ITEM (S) TO TESTDESIRED RESULTRELATED PRRESULTS(PASS, FAIL,BLOCKED)
COMMENT(ESP IF BLOCKED OR FAIL)
8
adminUi -Possible XSS bug in account setup-html-encodable characters
shouldnt be allowed on family
name,given name,gender
https://github.com/openmrs/openmrs-module-adminui/pull/57/
9
/openmrs/admin/users/privilege.form-XSS vulnerability on the manage privilege page-html-encodable characters
shouldnt be allowed on
manage privilidges page
https://github.com/openmrs/openmrs-module-adminui/pull/58
10
11
allergyuiallergy.page (Add New Allergy)Other radio button shouldnt get checked when
clicked twice
Other radio button get
checked when clicked once
https://github.com/openmrs/openmrs-module-allergyui/pull/29Failit get checked a first click if drugs are selected . for food and other, they radio button does not get checked neither with one nor two clicks .
12
13
appointmentschedulinguiAppointment requests pageShow a toast notification when requesting
an appointment
requestAppointment saved
successfully message should
show up after making an
appointment request
https://github.com/openmrs/openmrs-module-appointmentschedulingui/pull/19
14
manageAppointmentSchedulingType
page
warning log when appointment type ID
provided in URL is invalid.
Invalid Appointment Type ID
message should show in logs
when appointment type ID
provided in URL is invalid.
https://github.com/openmrs/openmrs-module-appointmentschedulingui/pull/21
15
/openmrs/appointmentschedulingui
/appointmentRequests.page
check to see if the user doesn't have the privilege
and isn't a superuser. If both of these are true then
throw an APIAuthenticationException
if the user doesn't have the
privilege and isn't a superuser.
an APIAuthenticationException
should be thrown
https://github.com/openmrs/openmrs-module-appointmentschedulingui/pull/24
16
https://github.com/openmrs/openmrs-module-appointmentschedulingui/pull/23
17
18
appuiSessionFragmentController#setLocation to
refresh the "clientTimezone" user property
https://github.com/openmrs/openmrs-module-appui/pull/37
19
20
htmlformentryobs tagObs tag using answerDrugs="true" should
have option to exclude retired drugs
includeRetired attribute should
exclude the retired drugs
when false and include retired
when true
https://github.com/openmrs/openmrs-module-htmlformentry/pull/236
21
Order Tag only displays displays one drug
per formulation
https://github.com/openmrs/openmrs-module-htmlformentry/pull/237
22
encounterDate<encounterDate showTime="true"/> to
support time zones
showTime attribute should
support time zones in the
encounterDate tag
https://github.com/openmrs/openmrs-module-htmlformentry/pull/219
23
obs tagAdd "restrictToCurrentVisitLocation"
attribute to Obs tag
obs should be restricted to the
current visit location when
restrictToCurrentVisitLocation
attribute is true and the vice
versa
https://github.com/openmrs/openmrs-module-htmlformentry/pull/239
24
25
idgenID Gen needs edit patient UI needs to support
persons who are not yet patients
https://github.com/openmrs/openmrs-module-idgen/pull/91
26
Ability to retrieve Patient ID from
OpenMRS using WS
Retrieve Patient ID from
OpenMRS using WS
https://github.com/openmrs/openmrs-module-idgen/pull/92
27
openmrs/module/idgen/viewLogEntries.listXSS bugs in the search functionality of the
view log entries.
-html-encodable characters
shouldnt be allowed for comment
and identifier inputs on
view log entries page
https://github.com/openmrs/openmrs-module-idgen/pull/93
28
editIdentifierSource pageXSS vulnerability in editIdentifierSource-html-encodable characters
shouldnt be allowed for name on
editIdentifierSource page
https://github.com/openmrs/openmrs-module-idgen/pull/97
29
30
legacyui
/openmrs/admin/forms/field.list
XSS vulnerability in Manage Fields listFind fields by name input should
read input as text rather than html
https://github.com/openmrs/openmrs-module-legacyui/pull/137
31
/openmrs/admin/users/users.list,find steps
on the ticket Id
XSS vulnerability in roles field of user listUser roles should be interpreted as
text rather than html
https://github.com/openmrs/openmrs-module-legacyui/pull/139
32
/openmrs/admin/person/index.htm (find
steps on the ticket
XSS vulnerability in editPersonInfo and
personForm
we shouldnt have a Xss vulnerbility
in edit patient Info
https://github.com/openmrs/openmrs-module-legacyui/pull/140
33
openmrs/admin/encounters/index.htm(steps
to reproduce are on the ticket
XSS vulnerability in encounter list We should not have Xss vulnerability in
encounter list
https://github.com/openmrs/openmrs-module-legacyui/pull/144
34
/openmrs/admin/observations/index.htmvulnerable question concept in Manage
Observations
We should not have Xss vulnerability in
Manage Observations
https://github.com/openmrs/openmrs-module-legacyui/pull/146
35
/openmrs/
admin/maintenance/localesAndThemes.form
XSS vulnerability in Manage Locales And ThemesWe should not have Xss vulnerability in
Locales And Themes
https://github.com/openmrs/openmrs-module-legacyui/pull/147
36
/openmrs/admin/concepts/
conceptProposal.list
XSS vulnerability in Manage Proposed ConceptsWe should not have Xss vulnerability
under Proposed Concept Management
https://github.com/openmrs/openmrs-module-legacyui/pull/148
37
/openmrs/admin/users/alert.formXSS vulnerability in alert header #We should not have an Xss vulnerability
under Alert Management
https://github.com/openmrs/openmrs-module-legacyui/pull/138
38
/openmrs/admin/forms/field.formXSS Vulnerability in Manage Fields ListWe should not have an Xss vulnerability
for name under fields
https://github.com/openmrs/openmrs-module-legacyui/pull/153
39
/openmrs/admin/person/index.htm (find
steps on the ticket
XSS Vulnerability in person search resultsWe should not have Xss vulnerability
for the person name under search person
by name
https://github.com/openmrs/openmrs-module-legacyui/pull/152
40
/openmrs/admin/forms/field.list (Find steps
on the ticket id
XSS vulnerability in Field Type and
Description of Manage Fields
We shouldnot have Xss vulnerability
in field type and Description of manage
fields
https://github.com/openmrs/openmrs-module-legacyui/pull/155
41
/openmrs/admin/visits/visit.form(Find steps
on the ticket
XSS in Add Encounter to VisitWe shouldnot have an Xss vulnerability in
Adding encounter to visit
https://github.com/openmrs/openmrs-module-legacyui/pull/154
42
Administration pagehttps://github.com/openmrs/openmrs-module-legacyui/pull/163
43
44
registrationcorecheck the pr global property section and
try to change the defaultvalue,make sure
the instance name is changed after
deploying the name module with your change
Add ability to change application name via
global property
Changing the defaultValue in global
properties should change the name of the
application
https://github.com/openmrs/openmrs-module-registrationcore/pull/26
45
Update datetimepicker.gsp to support time zones.https://github.com/openmrs/openmrs-module-uicommons/pull/85
46
47
uiframeworkAdded config.xml GP for
uiframework.formatter.timeFormat
https://github.com/openmrs/openmrs-module-uiframework/pull/64
48
Client time zone saved as a user property
for UiUtils' availability
https://github.com/openmrs/openmrs-module-uiframework/pull/66
49
50
eventhttps://github.com/openmrs/openmrs-module-event/pull/10
51
52
webservices.resthttps://github.com/openmrs/openmrs-module-webservices.rest/pull/418
53
https://github.com/openmrs/openmrs-module-webservices.rest/pull/482
54
55
metadatadeployhttps://github.com/openmrs/openmrs-module-metadatadeploy/pull/12
56
57
metadatasharinghttps://github.com/openmrs/openmrs-module-metadatasharing/pull/40
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100