Commit Graph

119 Commits (00a30e665128352e9b20268ea65400a968903c74)

Author SHA1 Message Date
Lukas Reschke a65410f23c Remove the CSP header for Firefox 13 years ago
Lukas Reschke e5cc5a0a2d Allow the loading of external images 13 years ago
Lukas Reschke 293e7bdcf0 Notice about changing the standard policy 13 years ago
Lukas Reschke 0517465f4d Allow admins to change the CSP policy in the config file 13 years ago
Lukas Reschke 351d206dd3 Allow eval() and send headers for legacy browsers 13 years ago
Lukas Reschke 3ffbaf4795 Allow iframes to external domains 13 years ago
Lukas Reschke 0c59074eeb Correct copy paste fail 13 years ago
Lukas Reschke af8c193605 Disallow inline JS 13 years ago
Lukas Reschke 967b7947a1 Add the default-src 13 years ago
Lukas Reschke c82d6e5153 Add CSP header 13 years ago
Bart Visscher a8f963d9cf Spaces to tabs 13 years ago
Thomas Mueller 44e5c052b3 handling proper display of files/folders with negative size 13 years ago
Brice Maron a310dcb0ff Fix a dirty function preventing showing errors 13 years ago
Frank Karlitschek 0f61816278 A new function to create nice error page. And use it for fatal db errors 13 years ago
Alessandro Cosentino 7d01342bab fix translation issues with previous commit 13 years ago
Alessandro Cosentino aa917cfb18 uncomment hours entries in relative date functions 13 years ago
Felix Moeller 0e70ea9d8b Checkstyle: Fix the last 25 NoSpaceAfterComma 13 years ago
Felix Moeller 30d7993e01 Checkstyle fixes: NoSpaceAfterComma 13 years ago
Felix Moeller f8d1d7787e Checkstyle fixes for SpaceBeforeOpenBrace 13 years ago
Felix Moeller afadf93d31 Checkstyle: many fixes 13 years ago
Lukas Reschke 7a7f12a0c1 Create only one CSRF token per session 13 years ago
Bernhard Posselt bf3dac05d1 added functions for printing escaped and unescaped values 13 years ago
Felix Moeller 03581ef463 Correct a first issue Checkstyle is complaining about ... 13 years ago
Sam Tuke 8b01286a5d Merged branch 'master' 13 years ago
Lukas Reschke d525654fcd Correct indentation 13 years ago
Björn Schießle f493e97f5d always generate access token, also for forms shown to anonymous users (e.g. public shares) 13 years ago
Christian Reiner 71454b1bca Fix to preserve backward compatibility for apps creating static links containing the request token (currently the contacts app and maybe some 3rd party implementations) 13 years ago
Christian Reiner 743826bbf3 Reimplementation of CSRF protection including autorefresh 13 years ago
Robin Appelman 4131b205d4 fix some more phpdoc 13 years ago
scambra e48811017d fix translation for core/lostpassword 13 years ago
Thomas Mueller 3829460ab8 adding space between) and { 14 years ago
Bart Visscher 1a46192433 Add args parameter to linkTo(Absolute) function, to append the args automaticly 14 years ago
Thomas Mueller 58b1e841f1 fix translations within subfolder /lib 14 years ago
Bart Visscher db18218a1b Space before tab fixes 14 years ago
Bart Visscher 52f2e7112e Whitespace fixes in lib 14 years ago
Robin Appelman 48306a3c4f fix unused variables 14 years ago
Bjoern Schiessle 902c649dad use new sanitize HTML function backported 14 years ago
Bjoern Schiessle f11e4d7cd6 removing sanitizeHTML() function from template.php since I moved it to util.php 14 years ago
Bjoern Schiessle 089ae980c4 use new sanitize HTML function 14 years ago
Brice Maron cfb3b633f5 Force sanitize function to use UTF8 (for php lower than 5.4) 14 years ago
Bart Visscher 180243d92a Move page layout handling to its own class 14 years ago
Bart Visscher 332603a263 Move formfactor code to OC_Template 14 years ago
Thomas Tanghus 625cd822c3 Backport CSRF prevention. 14 years ago
Thomas Tanghus 89464721c7 Added JSON methods for CSRF prevention. Make request token accessible from template and add js var. 14 years ago
Lukas Reschke 2b22c538c8 Make some apps compatible 14 years ago
Lukas Reschke 6d68b7620c Check for string 14 years ago
Lukas Reschke 18e44ba2f3 Some updates... 14 years ago
Lukas Reschke b63795ccb8 Handling arrays 14 years ago
Lukas Reschke c009bc4b87 Revert 14 years ago
Lukas Reschke 6817a6b102 First try of implementing assignHTML 14 years ago