History log of /dokuwiki/lib/ (Results 1451 – 1475 of 4519)
Revision Date Author Comments
(<<< Hide modified files)
(Show modified files >>>)
9cbf80e624-Feb-2015 Andreas Gohr <andi@splitbrain.org>

check permissions in ACL plugin's RPC API component. #1056

Security Fix

Severity: Medium
Type: Remote Priviledge Escalation
Remote: yes

Vulnerability Details:

This fixes a security hole in

check permissions in ACL plugin's RPC API component. #1056

Security Fix

Severity: Medium
Type: Remote Priviledge Escalation
Remote: yes

Vulnerability Details:

This fixes a security hole in the ACL plugins remote API component. The
plugin failed to check for superuser permissions before executing ACL
addition or deletion. This means everybody with permissions to call the
XMLRPC API also had permissions to set up their own ACL rules and thus
circumventing any existing rules.

Risk Assessment:

The XMLRPC API in DokuWiki is marked experimental and off by default. It
also implements an additional safeguard by giving access to a configured
circle of users and groups only. So only a minor number of DokuWiki
installations will be affected at all.
For affected installations the risk is high if users with access to the
API are not to be trusted.
Thus the overall severity of medium.

Resolution:

Installations applying this commit are safe. A hotfix is about to be
released. Meanwhile users are advised to disable the XMLRPC API in the
config manager.

show more ...

1fa1d6bc24-Feb-2015 Cyril Duchon-Doris <Cyril.Duchon-Doris@telecom-paristech.org>

Fixing bugs found by scrutinizer

6d2588b624-Feb-2015 Cyril Duchon-Doris <Cyril.Duchon-Doris@telecom-paristech.org>

Adding listAcls to the XMLRPC API as suggested in Issue #1054

757f6dda24-Feb-2015 Andreas Gohr <gohr@cosmocode.de>

simple fix for pageID clash with sidebar in mobile view

Since the pageid is no longer positioned absolute it clashed with the
sidebar since #1027. this introduces a very simplisitc fix.

30c4663524-Feb-2015 Andreas Gohr <gohr@cosmocode.de>

fixed the margin for the sidebar

15a6152524-Feb-2015 Andreas Gohr <gohr@cosmocode.de>

add bottom margin to tables in print. fixes #1052

c2a2396e13-Feb-2015 Álvaro Iradier <airadier@gmail.com>

translation update

2a3c155c12-Feb-2015 Tim222 <tim.weinhold@gmail.com>

Added icon for interwiki.conf

Support for the URI scheme tel: #643

cbb4a68112-Feb-2015 lainme <lainme993@gmail.com>

translation update

eba389bb09-Feb-2015 Andreas Gohr <gohr@cosmocode.de>

avoid messages pushing down page tools. fixes #1011

This moves the message area into content div. The pageid is now aligned
by floating instead of absolute positioning.

d75d76b209-Feb-2015 Andreas Gohr <gohr@cosmocode.de>

fix referral settings in AuthLDAP. closes #1023

4c32d8dc09-Feb-2015 Andreas Gohr <gohr@cosmocode.de>

fixed method signature #1024

ea0c142705-Feb-2015 Christoph Dwertmann <cdwertmann@gmail.com>

Add ob_flush() to sendGIF

I'm running this dokuwiki docker container: https://registry.hub.docker.com/u/mprasil/dokuwiki/

It uses lighttpd and fastcgi. For some reason, the ignore_user_abort() fe

Add ob_flush() to sendGIF

I'm running this dokuwiki docker container: https://registry.hub.docker.com/u/mprasil/dokuwiki/

It uses lighttpd and fastcgi. For some reason, the ignore_user_abort() feature where the browser should close the connection after the GIF has been received is not working on lighty. The browser keeps loading the page until the indexer run is complete, which leads to extremely slow load times with a larger page index.

Adding ob_flush() to sendGIF fixes the issue.

show more ...

c85cbe6928-Jan-2015 Davor Turkalj <turki.bsc@gmail.com>

translation update

9b505d5925-Jan-2015 Aleksandr Selivanov <alexgearbox@yandex.ru>

translation update

208f458015-Jan-2015 Andreas Gohr <gohr@cosmocode.de>

fixed wrong config check in extension manager #1006

5af3d1cd14-Jan-2015 KeenRivals <KeenRivals@users.noreply.github.com>

Losslessly reduced PNG images with optipng -o7 -strip all, advdef -z4 -i60, and advpng -z4 -i60.


/dokuwiki/_test/data/media/wiki/dokuwiki-128.png
/dokuwiki/_test/data/media/wiki/kind_zu_katze.png
/dokuwiki/data/media/wiki/dokuwiki-128.png
/dokuwiki/data/security.png
images/admin/acl.png
images/admin/config.png
images/admin/plugin.png
images/admin/popularity.png
images/admin/revert.png
images/admin/usermanager.png
images/bullet.png
images/closed-rtl.png
images/closed.png
images/diff.png
images/email.png
images/error.png
images/external-link.png
images/fileicons/32x32/7z.png
images/fileicons/32x32/asm.png
images/fileicons/32x32/bash.png
images/fileicons/32x32/bz2.png
images/fileicons/32x32/c.png
images/fileicons/32x32/cc.png
images/fileicons/32x32/conf.png
images/fileicons/32x32/cpp.png
images/fileicons/32x32/cs.png
images/fileicons/32x32/csh.png
images/fileicons/32x32/css.png
images/fileicons/32x32/csv.png
images/fileicons/32x32/deb.png
images/fileicons/32x32/diff.png
images/fileicons/32x32/doc.png
images/fileicons/32x32/docx.png
images/fileicons/32x32/file.png
images/fileicons/32x32/gif.png
images/fileicons/32x32/gz.png
images/fileicons/32x32/h.png
images/fileicons/32x32/hpp.png
images/fileicons/32x32/htm.png
images/fileicons/32x32/html.png
images/fileicons/32x32/ico.png
images/fileicons/32x32/java.png
images/fileicons/32x32/jpeg.png
images/fileicons/32x32/jpg.png
images/fileicons/32x32/js.png
images/fileicons/32x32/json.png
images/fileicons/32x32/lua.png
images/fileicons/32x32/mp3.png
images/fileicons/32x32/mp4.png
images/fileicons/32x32/odc.png
images/fileicons/32x32/odf.png
images/fileicons/32x32/odg.png
images/fileicons/32x32/odi.png
images/fileicons/32x32/odp.png
images/fileicons/32x32/ods.png
images/fileicons/32x32/odt.png
images/fileicons/32x32/ogg.png
images/fileicons/32x32/ogv.png
images/fileicons/32x32/pas.png
images/fileicons/32x32/pdf.png
images/fileicons/32x32/php.png
images/fileicons/32x32/pl.png
images/fileicons/32x32/png.png
images/fileicons/32x32/ppt.png
images/fileicons/32x32/pptx.png
images/fileicons/32x32/ps.png
images/fileicons/32x32/py.png
images/fileicons/32x32/rar.png
images/fileicons/32x32/rb.png
images/fileicons/32x32/rpm.png
images/fileicons/32x32/rtf.png
images/fileicons/32x32/sh.png
images/fileicons/32x32/sql.png
images/fileicons/32x32/swf.png
images/fileicons/32x32/sxc.png
images/fileicons/32x32/sxd.png
images/fileicons/32x32/sxi.png
images/fileicons/32x32/sxw.png
images/fileicons/32x32/tar.png
images/fileicons/32x32/tgz.png
images/fileicons/32x32/txt.png
images/fileicons/32x32/wav.png
images/fileicons/32x32/webm.png
images/fileicons/32x32/xls.png
images/fileicons/32x32/xlsx.png
images/fileicons/32x32/xml.png
images/fileicons/32x32/zip.png
images/fileicons/7z.png
images/fileicons/asm.png
images/fileicons/bash.png
images/fileicons/bz2.png
images/fileicons/c.png
images/fileicons/cc.png
images/fileicons/conf.png
images/fileicons/cpp.png
images/fileicons/cs.png
images/fileicons/csh.png
images/fileicons/css.png
images/fileicons/csv.png
images/fileicons/deb.png
images/fileicons/diff.png
images/fileicons/doc.png
images/fileicons/docx.png
images/fileicons/file.png
images/fileicons/gif.png
images/fileicons/gz.png
images/fileicons/h.png
images/fileicons/hpp.png
images/fileicons/htm.png
images/fileicons/html.png
images/fileicons/ico.png
images/fileicons/java.png
images/fileicons/jpeg.png
images/fileicons/jpg.png
images/fileicons/js.png
images/fileicons/json.png
images/fileicons/lua.png
images/fileicons/mp3.png
images/fileicons/mp4.png
images/fileicons/odc.png
images/fileicons/odf.png
images/fileicons/odg.png
images/fileicons/odi.png
images/fileicons/odp.png
images/fileicons/ods.png
images/fileicons/odt.png
images/fileicons/ogg.png
images/fileicons/ogv.png
images/fileicons/pas.png
images/fileicons/pdf.png
images/fileicons/php.png
images/fileicons/pl.png
images/fileicons/png.png
images/fileicons/ppt.png
images/fileicons/pptx.png
images/fileicons/ps.png
images/fileicons/py.png
images/fileicons/rar.png
images/fileicons/rb.png
images/fileicons/rpm.png
images/fileicons/rtf.png
images/fileicons/sh.png
images/fileicons/sql.png
images/fileicons/swf.png
images/fileicons/sxc.png
images/fileicons/sxd.png
images/fileicons/sxi.png
images/fileicons/sxw.png
images/fileicons/tar.png
images/fileicons/tgz.png
images/fileicons/txt.png
images/fileicons/wav.png
images/fileicons/webm.png
images/fileicons/xls.png
images/fileicons/xlsx.png
images/fileicons/xml.png
images/fileicons/zip.png
images/history.png
images/icon-list.png
images/icon-sort.png
images/info.png
images/interwiki.png
images/interwiki/user.png
images/license/badge/cc-by-nc-nd.png
images/license/badge/cc-by-nc-sa.png
images/license/badge/cc-by-nc.png
images/license/badge/cc-by-nd.png
images/license/badge/cc-by-sa.png
images/license/badge/cc-by.png
images/license/badge/cc-zero.png
images/license/badge/cc.png
images/license/badge/gnufdl.png
images/license/badge/publicdomain.png
images/license/button/cc-by-nc-nd.png
images/license/button/cc-by-nc-sa.png
images/license/button/cc-by-nc.png
images/license/button/cc-by-nd.png
images/license/button/cc-by-sa.png
images/license/button/cc-by.png
images/license/button/cc-zero.png
images/license/button/cc.png
images/license/button/gnufdl.png
images/license/button/publicdomain.png
images/magnifier.png
images/media_align_center.png
images/media_align_left.png
images/media_align_noalign.png
images/media_align_right.png
images/media_link_direct.png
images/media_link_displaylnk.png
images/media_link_lnk.png
images/media_link_nolnk.png
images/media_size_large.png
images/media_size_medium.png
images/media_size_original.png
images/media_size_small.png
images/mediamanager.png
images/notify.png
images/ns.png
images/open.png
images/resizecol.png
images/success.png
images/toolbar/bold.png
images/toolbar/chars.png
images/toolbar/h.png
images/toolbar/h1.png
images/toolbar/h2.png
images/toolbar/h3.png
images/toolbar/h4.png
images/toolbar/h5.png
images/toolbar/hequal.png
images/toolbar/hminus.png
images/toolbar/hplus.png
images/toolbar/hr.png
images/toolbar/image.png
images/toolbar/italic.png
images/toolbar/link.png
images/toolbar/linkextern.png
images/toolbar/mono.png
images/toolbar/ol.png
images/toolbar/smiley.png
images/toolbar/strike.png
images/toolbar/ul.png
images/toolbar/underline.png
images/unc.png
images/up.png
plugins/acl/pix/group.png
plugins/acl/pix/ns.png
plugins/acl/pix/user.png
plugins/config/images/danger.png
plugins/config/images/security.png
plugins/config/images/warning.png
plugins/extension/images/disabled.png
plugins/extension/images/donate.png
plugins/extension/images/down.png
plugins/extension/images/enabled.png
plugins/extension/images/overlay.png
plugins/extension/images/plugin.png
plugins/extension/images/tag.png
plugins/extension/images/template.png
plugins/extension/images/up.png
plugins/extension/images/warning.png
plugins/usermanager/images/search.png
scripts/jquery/jquery-ui-theme/images/ui-bg_flat_0_aaaaaa_40x100.png
scripts/jquery/jquery-ui-theme/images/ui-bg_flat_75_ffffff_40x100.png
scripts/jquery/jquery-ui-theme/images/ui-bg_glass_55_fbf9ee_1x400.png
scripts/jquery/jquery-ui-theme/images/ui-bg_glass_65_ffffff_1x400.png
scripts/jquery/jquery-ui-theme/images/ui-bg_glass_75_dadada_1x400.png
scripts/jquery/jquery-ui-theme/images/ui-bg_glass_75_e6e6e6_1x400.png
scripts/jquery/jquery-ui-theme/images/ui-bg_glass_95_fef1ec_1x400.png
scripts/jquery/jquery-ui-theme/images/ui-bg_highlight-soft_75_cccccc_1x100.png
scripts/jquery/jquery-ui-theme/images/ui-icons_222222_256x240.png
scripts/jquery/jquery-ui-theme/images/ui-icons_2e83ff_256x240.png
scripts/jquery/jquery-ui-theme/images/ui-icons_454545_256x240.png
scripts/jquery/jquery-ui-theme/images/ui-icons_888888_256x240.png
scripts/jquery/jquery-ui-theme/images/ui-icons_cd0a0a_256x240.png
tpl/dokuwiki/images/apple-touch-icon.png
tpl/dokuwiki/images/button-css.png
tpl/dokuwiki/images/button-html5.png
tpl/dokuwiki/images/button-rss.png
tpl/dokuwiki/images/logo.png
tpl/dokuwiki/images/page-gradient.png
tpl/dokuwiki/images/pagetools-sprite.png
tpl/dokuwiki/images/pagetools/00_default.png
tpl/dokuwiki/images/pagetools/01_edit.png
tpl/dokuwiki/images/pagetools/02_create.png
tpl/dokuwiki/images/pagetools/03_draft.png
tpl/dokuwiki/images/pagetools/04_show.png
tpl/dokuwiki/images/pagetools/05_source.png
tpl/dokuwiki/images/pagetools/06_revert.png
tpl/dokuwiki/images/pagetools/07_revisions.png
tpl/dokuwiki/images/pagetools/08_backlink.png
tpl/dokuwiki/images/pagetools/09_subscribe.png
tpl/dokuwiki/images/pagetools/10_top.png
tpl/dokuwiki/images/pagetools/11_mediamanager.png
tpl/dokuwiki/images/pagetools/12_back.png
tpl/dokuwiki/images/search.png
tpl/dokuwiki/images/toc-bullet.png
tpl/dokuwiki/images/usertools.png
7f253bcd12-Jan-2015 Rainbow Spike <Dr-Yukon@users.noreply.github.com>

Update css.php

1 little fix

276820f710-Jan-2015 Scrutinizer Auto-Fixer <auto-fixer@scrutinizer-ci.com>

Scrutinizer Auto-Fixes

This commit consists of patches automatically generated for this project on https://scrutinizer-ci.com

c85bb99708-Jan-2015 Mijndert <mijndert@mijndertstuij.nl>

translation update

48c11be007-Jan-2015 Scrutinizer Auto-Fixer <auto-fixer@scrutinizer-ci.com>

Scrutinizer Auto-Fixes

This commit consists of patches automatically generated for this project on https://scrutinizer-ci.com

51b257b607-Jan-2015 Andreas Gohr <gohr@cosmocode.de>

fixed search'and'replace fuckup in config plugin

79e7937707-Jan-2015 Andreas Gohr <gohr@cosmocode.de>

Remove error supression for file_exists()

In an older version of PHP a file_exists() call would issue a warning
when the file did not exist. This was fixed in later PHP releases. Since
we require PH

Remove error supression for file_exists()

In an older version of PHP a file_exists() call would issue a warning
when the file did not exist. This was fixed in later PHP releases. Since
we require PHP 5.3 now, there's no need to supress any error here
anymore. This might even give a minor performance boost.

show more ...

3d03c34905-Jan-2015 Schplurtz le Déboulonné <schplurtz@laposte.net>

translation update

6f864f4205-Jan-2015 Maciej Helt <geraldziu@gmail.com>

translation update

1...<<51525354555657585960>>...181