| b52b1596 | 14-Jun-2011 |
Andreas Gohr <andi@splitbrain.org> |
only allow configured URL schemes in external links
This fixes a problem where JavaScript could be introduced through specially crafted RSS feeds on a lower level than the commit from yesterday (1ca
only allow configured URL schemes in external links
This fixes a problem where JavaScript could be introduced through specially crafted RSS feeds on a lower level than the commit from yesterday (1ca2719c7488662ebd7964c0d026e0890f923ee9)
This also fixes a problem where JavaScript links could be introduced by specifying it as an RSS URL: the resulting error message displays a link to the broken feed URL. This patch makes sure there's no working link for unknown protocols.
show more ...
|
| 5f27cb0e | 14-Jun-2011 |
Michael Hamann <michael@content-space.de> |
Fix lowercasing of words in the indexer FS#2270
On certain PHP installations (it has been reproduced with PHP version 5.2.0-8+etch11) the indexer failed to lowercase words in the indexer so the full
Fix lowercasing of words in the indexer FS#2270
On certain PHP installations (it has been reproduced with PHP version 5.2.0-8+etch11) the indexer failed to lowercase words in the indexer so the fulltext search was partially broken.
show more ...
|
| dad6764e | 14-Jun-2011 |
Kate Arzamastseva <pshns@ukr.net> |
media history |
| 8e69fd30 | 13-Jun-2011 |
Kate Arzamastseva <pshns@ukr.net> |
media manager |
| 1ca2719c | 11-Jun-2011 |
Andreas Gohr <andi@splitbrain.org> |
Only allow known protocols in RSS links
This fixes a security vulnerability where an attacker could introduce JavaScript links into wiki pages by including a prepared RSS feed. |
| 00162124 | 10-Jun-2011 |
Andreas Gohr <andi@splitbrain.org> |
deprecated even functions
These now simply wrap around jQuery |
| 17e2e254 | 10-Jun-2011 |
Andreas Gohr <andi@splitbrain.org> |
Moved behavioural functions into it's own object and file
JavaScript functions adding behaviours based on IDs or class names where moved to their own object into behaviour.js and where jQueryized. |
| 0b926329 | 10-Jun-2011 |
Kate Arzamastseva <pshns@ukr.net> |
recent changes fix |
| 427fd3cc | 09-Jun-2011 |
Guy Brand <gb@unistra.fr> |
Use mailprefix for media upload emails too (see also FS#2021) |
| d9162c6c | 09-Jun-2011 |
Kate Arzamastseva <pshns@ukr.net> |
fullscreen media manager |
| ed5218f1 | 09-Jun-2011 |
Andreas Gohr <andi@splitbrain.org> |
finished jQuery port of ACL manager |
| 782d0c09 | 09-Jun-2011 |
Andreas Gohr <andi@splitbrain.org> |
marked sack library as deprecated |
| cf82a5b5 | 09-Jun-2011 |
Andreas Gohr <andi@splitbrain.org> |
started jQuery port of ACL manager |
| 1c56be7b | 07-Jun-2011 |
Michael Hamann <michael@content-space.de> |
Add missing return value to p_set_metadata |
| d54ac877 | 06-Jun-2011 |
Adrian Lang <lang@cosmocode.de> |
Use autoloading for plugin classes |
| ddcd5ab6 | 06-Jun-2011 |
Kazutaka Miyasaka <kazmiya@gmail.com> |
fixed email subject encoding bug ($enc_subj typo) |
| 0739a638 | 05-Jun-2011 |
Kate Arzamastseva <pshns@ukr.net> |
type of recent changes selection fix |
| 8d40b4b6 | 05-Jun-2011 |
Kate Arzamastseva <pshns@ukr.net> |
type of recent changes selection |
| 61f1aad8 | 05-Jun-2011 |
Kate Arzamastseva <pshns@ukr.net> |
media version saving fixes |
| 6992ea08 | 05-Jun-2011 |
Andreas Gohr <andi@splitbrain.org> |
fixed JavaScript compressor for certain regexes
This fixes a problem with running the minified jQuery through the compressor. |
| 303d4f14 | 05-Jun-2011 |
Andreas Gohr <andi@splitbrain.org> |
fixed typo |
| 43576758 | 05-Jun-2011 |
Andreas Gohr <andi@splitbrain.org> |
Updated jQuery-UI, added jQuery updater, load theme in CSS dispatcher
This patch adds a simple shell script to easily update the jQuery/jQuery-UI+theme bundle to the latest available version.
The j
Updated jQuery-UI, added jQuery updater, load theme in CSS dispatcher
This patch adds a simple shell script to easily update the jQuery/jQuery-UI+theme bundle to the latest available version.
The jQuery-UI CSS theme is now loaded in lib/exe/css.php (before plugin and template styles - 3rd party authors can override the styles).
show more ...
|
| 17582ec6 | 05-Jun-2011 |
Andreas Gohr <andi@splitbrain.org> |
Add a newline when loading JavaScript files
This avoids problems when the files are concatenated later. |
| 1b06a5d8 | 05-Jun-2011 |
Andreas Gohr <andi@splitbrain.org> |
Updated JQuery to version 1.6.1 |
| 66c880ee | 05-Jun-2011 |
Rivo Zängov <eraser@eraser.ee> |
Estonian language update |