Commit Graph

695 Commits (2cbf64da33aff2d0b77ee91e7e9ac360cd1edb99)

Author SHA1 Message Date
Lauri Ojansivu e4638d5fbc Fixed sidebar migrations to be per-board, not global. Clarified translations. 2 months ago
Lauri Ojansivu ba49d4d140 Remove old translations and code not in use anymore. 2 months ago
Lauri Ojansivu 7713e613b4 Fix 8.16 Lists with no items are deleted every time when board is opened. Moved migrations to right sidebar. 2 months ago
Lauri Ojansivu 1b25d1d572 Moved migrations from opening board to right sidebar / Migrations. 2 months ago
Lauri Ojansivu ccd9034339 Fix SECURITY ISSUE 5: Attachment API uses bearer value as userId and DoS (Low). 2 months ago
Lauri Ojansivu 0a1a075f31 Fix SECURITY ISSUE 4: Members can forge others’ votes (Low). Bonus: Similar fixes to planning poker too done by xet7. 2 months ago
Lauri Ojansivu ea310d7508 Fix SECURITY ISSUE 3: Unauthenticated (or any) user can update board sort. 2 months ago
Lauri Ojansivu f26d582018 Fix SECURITY ISSUE 2: Access to boards of any Orgs/Teams, and avatar permissions. 2 months ago
Lauri Ojansivu e9a727301d Fix SECURITY ISSUE 1: File Attachments enables stored XSS (High). 2 months ago
Lauri Ojansivu 30620d0ca4 Some migrations and mobile fixes. 2 months ago
Lauri Ojansivu ae11e80bde Fix Regression - unable to view cards by due date v8.11. 3 months ago
Lauri Ojansivu 58df525b49 Fix duplicated lists and do not show debug messages when env DEBUG is not true. Part 3. 3 months ago
Lauri Ojansivu b7ca2310b2 Fix duplicated lists. 3 months ago
Lauri Ojansivu b6e7b258e0 Fix duplicated lists. 3 months ago
Lauri Ojansivu 347fa9e5cd Fix Regression - due date taking a while to load all cards v8.06. 3 months ago
Lauri Ojansivu 4987a95d8e Prevent opened board re-migrating and reloading every 5 seconds. 3 months ago
Lauri Ojansivu 9536e60bd1 Fix opening board migration of Shared Lists to Per-Swimlane lists to use ReactiveCache correctly without errors. 3 months ago
Lauri Ojansivu 80777b4663 When opening board, add missing lists. 3 months ago
Lauri Ojansivu 0acbf30b03 Fix migrations. 3 months ago
Lauri Ojansivu eb6b42c4c9 Fix syntax error at migrations. 3 months ago
Lauri Ojansivu 1e6252de7f When opening board, migrate from Shared Lists to Per-Swimlane Lists. 3 months ago
Lauri Ojansivu 951d2e4937 Legacy Lists button at one board view to restore missing lists/cards. 3 months ago
Lauri Ojansivu 66b444e2b0 Fix unable to see My Due Cards. 3 months ago
Lauri Ojansivu cb6afe67a7 Replaced moment.js with Javascript date. 3 months ago
Lauri Ojansivu 79b94824ef Changed wekan-boostrap-datepicker to HTML datepicker. 3 months ago
Lauri Ojansivu 2543df9425 Show original positions of swimlanes, lists and cards. 3 months ago
Lauri Ojansivu 0a34ee1b64 Removed not needed console log message. 3 months ago
Lauri Ojansivu 63c314ca18 Fixed migrations. 3 months ago
Lauri Ojansivu bd8c565415 Fixes to make board showing correctly. 3 months ago
Lauri Ojansivu 317138ab72 If there is no cron jobs running, run migrations for boards that have not been opened yet. 3 months ago
Lauri Ojansivu da68b01502 Added Cron Manager to Admin Panel for long running jobs, like running migrations when opening board, copying or moving boards swimlanes lists cards etc. 3 months ago
Lauri Ojansivu 2b5c56484a Run database migrations when opening board. Not when updating WeKan. 3 months ago
Lauri Ojansivu fc32a89292 Fixed per-card and per-board settings of showing checkist at minicard. 3 months ago
Lauri Ojansivu ae1f80a52c Added attachments API and admin panel attachment management for file storage backends settings. Fixed drag drop upload attachments from file manager to minicard or opened card. 3 months ago
Lauri Ojansivu d59683eff1 Fixed attachments migrations at Admin Panel to not use too much CPU while migrating attachments. 3 months ago
Lauri Ojansivu 74ccfea570 Add support for MongoDB 3-8, detecting which one is in use. 3 months ago
Lauri Ojansivu 3ccdc2e307 Made possible to start WeKan immediately without running any database migrations. 3 months ago
Lauri Ojansivu 1a7bd65e59 Fixed showing translations always, regardsless of is ROOT_URL set correctly or not. 3 months ago
Lauri Ojansivu f6591d7820 Security Fix usd-2022-0041: CWE-284 Improper Access Control. 3 months ago
Lauri Ojansivu ee79cab7b2 Security Fix JVN#86586539: Stored XSS. 3 months ago
Lauri Ojansivu e1fa607f87 Security Fix JVN#74210258: Stored XSS. 3 months ago
Lauri Ojansivu 1c84b19f24 Show console.log 'Legacy attachments route loaded' only when environment variable DEBUG=true. 3 months ago
Lauri Ojansivu 719ef87efc Make possible for lists to have different names at different swimlanes. Make possible to drag list from one swimlane to another swimlane. 3 months ago
Lauri Ojansivu a8de2f224f Use attachments from old CollectionFS database structure, when not yet migrated to Meteor-Files/ostrio-files, without needing to migrate database structure. 3 months ago
Lauri Ojansivu ae0d059b6f Feature: Added brute force login protection settings to Admin Panel/People/Locked Users. 5 months ago
Lauri Ojansivu d83ce5e633 Feature: Accessibility page at /accessibility. Settings at Admin Panel. When enabled, link at right sidebar. 5 months ago
Omar Abid 2ab9bd3172 Add email notifications language localization feature 8 months ago
Lauri Ojansivu c062bd63bb Fix in API user role is not considered. 1 year ago
Nadav Tasher 2ebff3a864 Revert adding migration 1 year ago
Nadav Tasher 0097674fc0 Added initial support for auto-width lists option 1 year ago