Commit Graph

127 Commits (2ea7719bfa4280220c7dfc9fbfec97b61ba33112)

Author SHA1 Message Date
Joas Schilling 1b387bb341
fix!: Remove legacy event dispatching Symfony's GenericEvent from AdditionalScripts 2 years ago
Joas Schilling 3a6bc7aba2
fix(middleware): Also abort the request when reaching max delay in afterController 3 years ago
Faraz Samapoor e7cc7653b8 Refactors "strpos" calls in lib/private to improve code readability. 3 years ago
Joas Schilling ecb8b55c5c
feat(security): Add PHP \Attribute for remaining security annotations 3 years ago
Joas Schilling 89c3c31402
feat(ratelimit): Add Attributes support to rate limit middleware 3 years ago
Christoph Wurst a06898a2d0 fix(security)!: Use consistent HTTP status for strict cookie checks 3 years ago
Joas Schilling 2b49861679
Add a debug message when throttling without defining 3 years ago
Joas Schilling e839eb9b5c
feat(middleware): Migrate BruteForceProtection annotation to PHP Attribute and allow multiple 3 years ago
Ferdinand Thiessen f655f83c84 fix(CORS): CORS should only be bypassed on `PublicPage` if not logged in to prevent CSRF attack vectors 3 years ago
Christoph Wurst 20e00cdf17
feat(app-framework): Add UseSession attribute to replace annotation 3 years ago
Côme Chilliet f5c361cf44
composer run cs:fix 3 years ago
Julien Veyssier 4a3f3beb0b
use bruteforce protection on all methods wrapped by PublicShareMiddleware 3 years ago
Jonas Rittershofer c8b7a233a5 Allow CSRF on CORS routes 3 years ago
Julius Härtl 9b4b72826a
Reopen sessions if we need to write to them instead of keeping them open 3 years ago
luz paz 368f83095d Fix typos in lib/private subdirectory 3 years ago
Carl Schwan b70c6a128f Update core to PHP 7.4 standard 4 years ago
Vincent Petry 80388663af Add direct arg to login flow 4 years ago
Carl Schwan 6312c0df69
Check style update 4 years ago
Julius Härtl 61dd1d3d97
Pass username prefill through unauthenticated request redirects 4 years ago
Carl Schwan 6958d8005a
Add admin privilege delegation for admin settings 4 years ago
Christoph Wurst 6d5cfe0c66
Move DateTime::RFC2822 to DateTimeInterface::2822 5 years ago
John Molakvoæ (skjnldsv) 215aef3cbd
Update php licenses 5 years ago
korelstar b38e8678e4 fix error when using CORS with no auth credentials 5 years ago
Joas Schilling b6c6527705
Fix unauthorized OCS status in provisioning 5 years ago
Joas Schilling 56ae87c281
Less ILogger 5 years ago
Joas Schilling 174f4dd043
Fix ratelimit template 5 years ago
Roeland Jago Douma cc744740b7 Remove deprecated \OCP\API 5 years ago
Christoph Wurst d9015a8c94
Format code to a single space around binary operators 5 years ago
Julius Härtl 8ab2422b6c
Add acutal response to BeforeTemplateRenderedEvent 5 years ago
Christoph Wurst 2a054e6c04
Update the license headers for Nextcloud 20 5 years ago
Joas Schilling 35a8519591
Fix CS 5 years ago
Joas Schilling e66bc4a8a7
Send "429 Too Many Requests" in case of brute force protection 5 years ago
Julius Härtl e1b696929f
Move NotFoundResponse to a proper TemplateResponse 6 years ago
Roeland Jago Douma 7d7ba61625
Add real events to load additionalscripts 6 years ago
Holger Hees e70249e089
Update SecurityMiddleware.php 6 years ago
Morris Jobke 4e49e1da16
Allow TemplateResponse to be compressed 6 years ago
Roeland Jago Douma 12fa748c49
Move the notmodified check to middleware where it belongs 6 years ago
Roeland Jago Douma 203d7eb1d3
Add AppFramework GZip middleware to gzip responses 6 years ago
Christoph Wurst cb057829f7
Update license headers for 19 6 years ago
Christoph Wurst caff1023ea
Format control structures, classes, methods and function 6 years ago
Christoph Wurst afbd9c4e6e
Unify function spacing to PSR2 recommendation 6 years ago
Christoph Wurst 2fbad1ed72
Fix (array) indent style to always use one tab 6 years ago
Christoph Wurst 74936c49ea
Remove unused imports 6 years ago
Joas Schilling d445f9b9fe
Fix loaded controller check 6 years ago
Christoph Wurst 1b46621cd3
Update license headers for 18 6 years ago
Robin Appelman 1c585d2c50
use OCP\EventDispatcher\GenericEvent in more places 6 years ago
Christoph Wurst 5bf3d1bb38
Update license headers 6 years ago
Roeland Jago Douma 68748d4f85
Some php-cs fixes 6 years ago
Daniel Kesselberg 9055f46351
Make phan happy ;) 6 years ago
Arthur Schiwon 0a1937208f
Fixes a 500 without userid 6 years ago