Commit Graph

54857 Commits (0c18776fa8ea64d0e3ed98d470d51606dd770b61)
 

Author SHA1 Message Date
NicoDucou d0cea35728 Session: restrict access to session's about page only if user is connecter if course_catalog_published is false -refs BT#21298 2 years ago
NicoDucou 0b4df28e99 Security: Exercise: Do not permit access to questions review if the attempt is not of the connected user -refs BT#21295 2 years ago
Yannick Warnier 7e4d11f5d4 Webservice: Fix get_audit_items webservice (not getting params properly) - refs BT#21206 2 years ago
christianbeeznest 34c3357f4a
Security: Reduce XSS/CSRF probability as admin user - refs BT#21289 2 years ago
juancp-contidosdixitais 67076c4a7a
Survey: Fix export survey when open question element needs more than one page 2 years ago
Yannick Warnier 30a6454dec
Webservice: Add get_audit_items REST WS - refs BT#21206 2 years ago
juancp-contidosdixitais 9e35ee615c
Session: Allow session general coach to see more user reporting details - refs #4981 2 years ago
NicoDucou 8b0b91904b LDAP: Fix incorrect path for config file inclusion -refs BT#20849 2 years ago
Yannick Warnier cdc12f9956 Security: Remove connection information when opening db manager when 'db_manager_enabled' is true, reducing the likeliness of a successful BREACH attack - refs BT#21289 2 years ago
Yannick Warnier 34576eb281 Merge branch '1.11.x' of github.com:chamilo/chamilo-lms into 1.11.x 2 years ago
Yannick Warnier 56ac8ca228 Security: Add attribute rel="noopener noreferrer" to links with target=_blank to reduce probability of tabnabbing - refs BT#21289 2 years ago
Angel Fernando Quiroz Campos 72aa7604dd Security: Vendor: CKEditor: Update uicolor plugin - refs BT#21289 2 years ago
Yannick Warnier b3afaf6bc8 Security: Add configuration setting 'security_login_autocomplete_disable' to set autocomplete attribute of both login and password to "new-password" - refs BT#21289 2 years ago
Yannick Warnier f18067843e Security: Set ch_sid cookie to 'secure' when using HTTPS - refs BT#21289 2 years ago
Yannick Warnier 925e49f448 Merge branch '1.11.x' of github.com:chamilo/chamilo-lms into 1.11.x 2 years ago
Yannick Warnier 060b1e3eed Internal: Bum JS Cookie version to 2.2.0 to support "secure" - refs BT#21289 2 years ago
Yannick Warnier 9da3f3bac2 Security: Set cookie as secure if HTTPS - refs BT#21289 2 years ago
Angel Fernando Quiroz Campos 6c626eef61 Merge remote-tracking branch 'origin/1.11.x' into 1.11.x 2 years ago
Angel Fernando Quiroz Campos aa2e97b18b Security: Vendor: JqueryUI: Checkboxradio: Don't re-evaluate text labels as HTML - refs BT#21289 2 years ago
Angel Fernando Quiroz Campos 9dc3653137 Security: Vendor: Jquery: Mitigate possible XSS vulnerability - refs BT#21289 2 years ago
Angel Fernando Quiroz Campos 3ce8c31cdf Vendor: Bump jquery-ui version to 1.12.* 2 years ago
Angel Fernando Quiroz Campos e651862124 Agenda: Fix when showing edit form for event without invitation - refs BT#21289 2 years ago
NicoDucou dbc5a264db Exercise: fix export all results when selecting all to include hidden exercises (such as included in LP) - refs BT#20691 2 years ago
Yannick Warnier 1d1f3bc562 Merge branch '1.11.x' of github.com:chamilo/chamilo-lms into 1.11.x 2 years ago
Yannick Warnier cb600c9412 Plugin: PENS: Fix plugin issue trying to create the plugin_pens table even if it already exists 2 years ago
Angel Fernando Quiroz Campos c90f2b4ddf Internal: Load vrview.js when enabling it in video features - refs BT#21289 2 years ago
Angel Fernando Quiroz Campos e5ff1de400 Admin: Don't show cookie warning on admin page - refs BT#21289 2 years ago
Angel Fernando Quiroz Campos ca2e7a58ac Security: Refactor cookie warning to avoid CSRF - refs BT#21289 2 years ago
Angel Fernando Quiroz Campos f2df5d3c9c Security: escape values when importing username list to anonymize - refs BT#21289 2 years ago
Angel Fernando Quiroz Campos d1beb7aa31 Vendor: Bump moment.js version to 2.29.4 2 years ago
NicoDucou c47fafb9ac User: partial translation update in EN, ES and FR for show only active user in usergroup subscription list -refs BT#21207 2 years ago
Nicolas Ducoulombier 475fdb0a72
Merge pull request #5010 from christianbeeznest/majorel-21208 2 years ago
NicoDucou 4eb6f13207 Exercise: Fix commit 4b1149e6ed to still not consider empty an answer with 0 only if its in a fill in the blank question, in other case it should be considered as empty -refs BT#21290 2 years ago
NicoDucou 852bd80e9d Global: restrict access to the page when option 'allow_email_editor' is not activated -refs BT#21288 2 years ago
NicoDucou 073dca6320 Attendance: adapt CSS to work when there are many courses on My missing signatures page -refs BT#21018 2 years ago
Nicolas Ducoulombier f626924ccc
Merge pull request #5015 from LudiscapeXApi/patch-20 2 years ago
DamienLyon facb645778
Update my_missing_signatures style 2 years ago
NicoDucou 377cddb2eb Attendance: partail translation update for My missing signatures page functionnality -refs BT#21018 2 years ago
NicoDucou 0af873f23d Attendance: add my missing signatures page functionnality -refs BT#21018 2 years ago
NicoDucou 660d728e19 Message: add link to url for new password request -refs BT#21277 2 years ago
NicoDucou f33cb49543 Webservice: fix message to indicate the correct configuration value to enable webservices 2 years ago
NicoDucou f01d382560 Webservice: fix variable recuperation from GET to REQUEST -refs BT#21212 2 years ago
NicoDucou 108c152fb8 Webservice: remove extra ',' to be compatible with php versions -refs BT#21212 2 years ago
NicoDucou 0514275f7b Webservice: remove access restriction not needed for those 2 webservices -refs BT#21212 2 years ago
NicoDucou ac61878d7a Exercise: fix integration in iframe not to show tool shortcut-refs BT#20659 2 years ago
NicoDucou 5d1df408b4 Webservice: add get_user_total_connexion_time webservice -refs BT#21212 2 years ago
NicoDucou dfca264163 Tracking: fix average total time spent on platform calculation and use 2 years ago
NicoDucou 07dae4f0e8 Fix calls to get_time_spent_on_platform 2 years ago
NicoDucou 2317f74d9b Tracking: fix average total time spent on platform calculation 2 years ago
NicoDucou c59ef36968 Webservice: add get_user_last_connexion webservice -refs BT#21212 2 years ago