| a7d03b81 | 25-Nov-2020 |
ANDRE BASSANI DE FREITAS <dedebf@gmail.com> |
translation update |
| 19078209 | 25-Nov-2020 |
Andreas Gohr <andi@splitbrain.org> |
stricter user check in AbstractUserAction |
| 5525369f | 22-Nov-2020 |
Satoshi Sahara <sahara.satoshi@gmail.com> |
set proper revinfo when media meta file is not available
MediaChangelog::getRevision() may return false when media changes meta file is missing, cause error unsupported operand types. |
| 601a1f60 | 20-Nov-2020 |
Andreas Gohr <andi@splitbrain.org> |
Allow revert action for logged in users only
This should prevent accidental reverts by bots on open wikis |
| b09504a9 | 19-Nov-2020 |
Andreas Gohr <andi@splitbrain.org> |
SVG based smileys
This patch replaces our old gif based smileys by SVG based ones from the Twemoji project. This allows for scaling the emojis with the text they're used in. |
| e71d33ca | 19-Nov-2020 |
Andreas Gohr <andi@splitbrain.org> |
scrutinizer fix |
| 079f521b | 14-Nov-2020 |
Petr Kajzar <petr.kajzar@centrum.cz> |
translation update |
| b22e7f79 | 31-Oct-2020 |
Thien Hau <thienhau.9a14@gmail.com> |
translation update |
| 66b108d6 | 28-Oct-2020 |
Anna Dabrowska <dabrowska@cosmocode.de> |
Fix groups match in auth_ismanager and auth_isadmin
Even if a user was passed to the check but no groups, current user's groups were used for the match |
| 65e83d3f | 28-Oct-2020 |
GHSRobert Ciang <Robertus0617@gmail.com> |
Remove strings and files not yet translated |
| 0a5f08e5 | 27-Oct-2020 |
AdaKaleh <31895292+adakaleh@users.noreply.github.com> |
Minor optimization of clientIP()
Remove unnecessary assignment, check the output of filter_var() directly. |
| 0b1a7785 | 27-Oct-2020 |
GHSRobert Ciang <Robertus0617@gmail.com> |
Initial batch of Minnan localization |
| fe23cd04 | 15-Oct-2020 |
qezwan <qezwan@gmail.com> |
translation update |
| 6cda96e3 | 14-Oct-2020 |
Andreas Gohr <andi@splitbrain.org> |
Restrictive Content-Security-Policy for media #1045
This adds a CSP header for all media delivered through our fetch.php dispatcher. This should revent any scripts etc. to be executed when scriptabl
Restrictive Content-Security-Policy for media #1045
This adds a CSP header for all media delivered through our fetch.php dispatcher. This should revent any scripts etc. to be executed when scriptable media, like SVG is used.
Suggestions on finetuning the policy are welcome.
The policy is added to the MEDIA_SENDFILE event, so plugins can easily influence it. The way it is passed as an array should make it easier to modify from plugins as well.
I put the mechanism to send the header into it's own class in the HTTP namespace. Additional methods from inc/httputils could be moved here later. The method might also be interesting for #2198 and #1676.
show more ...
|
| a7e2efd2 | 13-Oct-2020 |
Andreas Gohr <andi@splitbrain.org> |
replace deprecated function calls #3266 |
| 8368419b | 30-Sep-2020 |
Syntaxseed <825423+syntaxseed@users.noreply.github.com> |
Fix proper param order and use main function name instead of alias 'join'. |
| 3990d379 | 10-Oct-2020 |
Wrya <wryaali33@gmail.com> |
translation update |
| f40182a6 | 10-Oct-2020 |
Wrya <wryaali33@gmail.com> |
translation update |
| 2c5153f3 | 10-Oct-2020 |
Wrya <wryaali33@gmail.com> |
translation update |
| e5af7450 | 10-Oct-2020 |
Wrya <wryaali33@gmail.com> |
translation update |
| 55b5a095 | 08-Oct-2020 |
Crowdsource Kurdish <crowdsourcekurdi@gmail.com> |
translation update |
| 26d2ad0f | 08-Oct-2020 |
Wrya <wryaali33@gmail.com> |
translation update |
| 83b4ec5c | 08-Oct-2020 |
Wrya <wryaali33@gmail.com> |
translation update |
| 0cc185e1 | 08-Oct-2020 |
Wrya <wryaali33@gmail.com> |
translation update |
| 5d251c74 | 08-Oct-2020 |
qezwan <qezwan@gmail.com> |
translation update |