| 634d7150 | 29-Aug-2007 |
Andreas Gohr <andi@splitbrain.org> |
CSRF prevention for admin plugins
This patch adds a session based token to all form in the default action plugins. The validity of the token is checked before any administrative function is executed
CSRF prevention for admin plugins
This patch adds a session based token to all form in the default action plugins. The validity of the token is checked before any administrative function is executed aiming to protect DokuWiki's admin functions from Cross-site request forgery (CSRF) attacks.
Another patch will follow to add the same functionality on other, less critical functions.
More details on CSRF attacks can be found at http://en.wikipedia.org/wiki/Cross-site_request_forgery
darcs-hash:20070829201538-7ad00-d0770224a3351fd8e38968e3a9d8e73520482445.gz
show more ...
|
| 1687f569 | 26-Aug-2007 |
Guy Brand <gb@isis.u-strasbg.fr> |
Revert plugin die if DOKU_INC undefined
darcs-hash:20070826201745-19e2d-10ac45260b4ab288ffa91c4828b82bb61ebfa625.gz |
| 1ba60149 | 21-Aug-2007 |
Andreas Gohr <andi@splitbrain.org> |
french update
darcs-hash:20070821173805-7ad00-49900167ab4babede6acebb595faf005b28ce18e.gz |
| aad41e93 | 18-Aug-2007 |
Andreas Gohr <andi@splitbrain.org> |
esperanto update
darcs-hash:20070818222029-7ad00-490d6e1e53a9753c4951ee8a9a9882d3cbdcfdb0.gz |
| bf39fc71 | 16-Aug-2007 |
Andreas Gohr <andi@splitbrain.org> |
finish language update
darcs-hash:20070816182508-7ad00-a6107d7ae873a1473444c8fcfc02cf59172b0d8b.gz |
| d157eab3 | 13-Aug-2007 |
Andreas Gohr <andi@splitbrain.org> |
greek language update
darcs-hash:20070813220053-7ad00-db53d44215d74c091c10e0423b8152dec302127a.gz |
| f25ff31d | 08-Aug-2007 |
Andreas Gohr <andi@splitbrain.org> |
dutch language update
darcs-hash:20070808214818-7ad00-48bb7ceff4e2144512bb7ad217700c63c9d4bb94.gz |
| 27091d4f | 08-Aug-2007 |
Andreas Gohr <andi@splitbrain.org> |
Portuguese language update
darcs-hash:20070808180825-7ad00-63a8a7c23769cd92cccde54c3df267e94214eaae.gz |
| a17ae368 | 07-Aug-2007 |
Andreas Gohr <andi@splitbrain.org> |
german language update
darcs-hash:20070807221400-7ad00-c67b347e0528709a4eae84f3740c34d12f9e1bba.gz |
| 8b829d43 | 30-Jul-2007 |
Andreas Gohr <andi@splitbrain.org> |
Galician translation
darcs-hash:20070730164939-7ad00-43323188e904f45153062bb2e5c3550a1ea4ce4d.gz |
| abcc3801 | 15-Jul-2007 |
Andreas Gohr <andi@splitbrain.org> |
fixed unclean language files FS#1186
darcs-hash:20070715090528-7ad00-ffebbfcd0e4b12e839a958932afd1db2c4fb8765.gz |
| db424466 | 02-Jul-2007 |
Andreas Gohr <andi@splitbrain.org> |
Norwegian language update
darcs-hash:20070702195324-7ad00-ae4099158ec50f7345355738b2d80905ca63a543.gz |
| 4cab3ca7 | 30-Jun-2007 |
Andreas Gohr <andi@splitbrain.org> |
Slovak language updates
darcs-hash:20070630110132-7ad00-d2e4eca72ca53ff3aa5808ae6328d798a9e8b039.gz |
| a7800614 | 29-Jun-2007 |
Andreas Gohr <andi@splitbrain.org> |
More Portuguese language updates
darcs-hash:20070629212340-7ad00-ca30ab5a542bab7e1bf3b7650e3533cf57190170.gz |
| b27484c2 | 29-Jun-2007 |
Andreas Gohr <andi@splitbrain.org> |
Portuguese language updates
darcs-hash:20070629192938-7ad00-226f2f2375e3f4d5522d1b515a6f3c6910652449.gz |
| 16342d96 | 29-Jun-2007 |
Andreas Gohr <andi@splitbrain.org> |
Czech language updates
darcs-hash:20070629134741-7ad00-0ff9213ccdc79cc288af35a4dd98c1f7f90a5137.gz |
| 68082424 | 28-Jun-2007 |
Andreas Gohr <andi@splitbrain.org> |
japanese language update
darcs-hash:20070628191802-7ad00-00dd404a1b70e314c76d07080a6085e731ffd238.gz |
| f285bb36 | 26-Jun-2007 |
Andreas Gohr <andi@splitbrain.org> |
Spanish language updates
darcs-hash:20070626162556-7ad00-2ffaf48c4cd559fc225bc90cb28b2fda2d892576.gz |
| 0f451dd4 | 26-Jun-2007 |
Andreas Gohr <andi@splitbrain.org> |
Bulgarian language updates
darcs-hash:20070626162303-7ad00-a9268edd24f0da9c887ea3c66e0f0b10713aa907.gz |
| aaf53f82 | 25-Jun-2007 |
Andreas Gohr <andi@splitbrain.org> |
German language updates
darcs-hash:20070625182759-7ad00-4fc5881872024baba058f8938cefc5fad40a682d.gz |
| a783e668 | 25-Jun-2007 |
Andreas Gohr <andi@splitbrain.org> |
Chinese language updates
darcs-hash:20070625172017-7ad00-efb5005b0e5c892502679dee66db81ccaf532697.gz |
| f4ba5b8d | 24-Jun-2007 |
Andreas Gohr <andi@splitbrain.org> |
Esperanto language updates
darcs-hash:20070624174148-7ad00-e091a6bf887838fd6237a6cfa8d34aba74682801.gz |
| 8f43b35b | 24-Jun-2007 |
Andreas Gohr <andi@splitbrain.org> |
Galician translation updates
darcs-hash:20070624174021-7ad00-5343b0d790bfd868469f59bdb569ffc9c056431e.gz |
| a8422a92 | 24-Jun-2007 |
Andreas Gohr <andi@splitbrain.org> |
Polish language update
darcs-hash:20070624105948-7ad00-9b0c7bb2b718cc45302756b3e8b04cf2472d92bd.gz |
| 5e01796d | 22-Jun-2007 |
Andreas Gohr <andi@splitbrain.org> |
greek language updates
darcs-hash:20070622215242-7ad00-c0512378d892226c79e0eae52bdf989e1aa0c5d7.gz |