| 3ff73c3c | 27-Oct-2020 |
AdaKaleh <31895292+adakaleh@users.noreply.github.com> |
Add IPv6 unit tests |
| 0a5f08e5 | 27-Oct-2020 |
AdaKaleh <31895292+adakaleh@users.noreply.github.com> |
Minor optimization of clientIP()
Remove unnecessary assignment, check the output of filter_var() directly. |
| 0b1a7785 | 27-Oct-2020 |
GHSRobert Ciang <Robertus0617@gmail.com> |
Initial batch of Minnan localization |
| 45a8f802 | 24-Oct-2020 |
GHSRobert Ciang <robertus0617@gmail.com> |
translation update |
| fe23cd04 | 15-Oct-2020 |
qezwan <qezwan@gmail.com> |
translation update |
| 6071f0ee | 15-Oct-2020 |
Andreas Gohr <andi@splitbrain.org> |
added JavaScript based filter mechanism |
| 6cda96e3 | 14-Oct-2020 |
Andreas Gohr <andi@splitbrain.org> |
Restrictive Content-Security-Policy for media #1045
This adds a CSP header for all media delivered through our fetch.php dispatcher. This should revent any scripts etc. to be executed when scriptabl
Restrictive Content-Security-Policy for media #1045
This adds a CSP header for all media delivered through our fetch.php dispatcher. This should revent any scripts etc. to be executed when scriptable media, like SVG is used.
Suggestions on finetuning the policy are welcome.
The policy is added to the MEDIA_SENDFILE event, so plugins can easily influence it. The way it is passed as an array should make it easier to modify from plugins as well.
I put the mechanism to send the header into it's own class in the HTTP namespace. Additional methods from inc/httputils could be moved here later. The method might also be interesting for #2198 and #1676.
show more ...
|
| 626992ac | 06-Apr-2018 |
Michael Große <grosse@cosmocode.de> |
fix: mark inputs of styling plugin as required
While this cannot ensure that the value is valid, it should prevent accidental saving of an empty field, which crashes the less compiler.
Fixes #2246 |
| a7e2efd2 | 13-Oct-2020 |
Andreas Gohr <andi@splitbrain.org> |
replace deprecated function calls #3266 |
| a3bfbb3c | 13-Oct-2020 |
Andreas Gohr <andi@splitbrain.org> |
upgraded php-archive to 1.2.0 #3298
fixes an incompatibility with PHP 8 |
| 8368419b | 30-Sep-2020 |
Syntaxseed <825423+syntaxseed@users.noreply.github.com> |
Fix proper param order and use main function name instead of alias 'join'. |
| 02b69dbb | 11-Oct-2020 |
Rainbow Spike <3947636+Rainbow-Spike@users.noreply.github.com> |
Fixing of cell width |
| 3990d379 | 10-Oct-2020 |
Wrya <wryaali33@gmail.com> |
translation update |
| a178b566 | 10-Oct-2020 |
Wrya <wryaali33@gmail.com> |
translation update |
| f40182a6 | 10-Oct-2020 |
Wrya <wryaali33@gmail.com> |
translation update |
| 2c5153f3 | 10-Oct-2020 |
Wrya <wryaali33@gmail.com> |
translation update |
| e5af7450 | 10-Oct-2020 |
Wrya <wryaali33@gmail.com> |
translation update |
| 55b5a095 | 08-Oct-2020 |
Crowdsource Kurdish <crowdsourcekurdi@gmail.com> |
translation update |
| ece8bb0c | 08-Oct-2020 |
Wrya <wryaali33@gmail.com> |
translation update |
| 59440086 | 08-Oct-2020 |
Andreas Gohr <andi@splitbrain.org> |
refresh user cache in plain auth on user modifying
When a user login was renamed, the user appeared twice. Once as the old user and once as the new user. |
| 26d2ad0f | 08-Oct-2020 |
Wrya <wryaali33@gmail.com> |
translation update |
| 83b4ec5c | 08-Oct-2020 |
Wrya <wryaali33@gmail.com> |
translation update |
| 0cc185e1 | 08-Oct-2020 |
Wrya <wryaali33@gmail.com> |
translation update |
| 5d251c74 | 08-Oct-2020 |
qezwan <qezwan@gmail.com> |
translation update |
| 29d503b1 | 07-Oct-2020 |
qezwan <qezwan@gmail.com> |
translation update |