Christian Reiner
71454b1bca
Fix to preserve backward compatibility for apps creating static links containing the request token (currently the contacts app and maybe some 3rd party implementations)
13 years ago
Christian Reiner
743826bbf3
Reimplementation of CSRF protection including autorefresh
13 years ago
Robin Appelman
4131b205d4
fix some more phpdoc
13 years ago
scambra
e48811017d
fix translation for core/lostpassword
13 years ago
Thomas Mueller
3829460ab8
adding space between) and {
13 years ago
Bart Visscher
1a46192433
Add args parameter to linkTo(Absolute) function, to append the args automaticly
13 years ago
Thomas Mueller
58b1e841f1
fix translations within subfolder /lib
13 years ago
Bart Visscher
db18218a1b
Space before tab fixes
13 years ago
Bart Visscher
52f2e7112e
Whitespace fixes in lib
13 years ago
Robin Appelman
48306a3c4f
fix unused variables
13 years ago
Bjoern Schiessle
902c649dad
use new sanitize HTML function backported
...
Conflicts:
lib/template.php
13 years ago
Bjoern Schiessle
f11e4d7cd6
removing sanitizeHTML() function from template.php since I moved it to util.php
...
to make it more generic.
13 years ago
Bjoern Schiessle
089ae980c4
use new sanitize HTML function
13 years ago
Brice Maron
cfb3b633f5
Force sanitize function to use UTF8 (for php lower than 5.4)
13 years ago
Bart Visscher
180243d92a
Move page layout handling to its own class
13 years ago
Bart Visscher
332603a263
Move formfactor code to OC_Template
13 years ago
Thomas Tanghus
625cd822c3
Backport CSRF prevention.
13 years ago
Thomas Tanghus
89464721c7
Added JSON methods for CSRF prevention. Make request token accessible from template and add js var.
13 years ago
Lukas Reschke
2b22c538c8
Make some apps compatible
13 years ago
Lukas Reschke
6d68b7620c
Check for string
13 years ago
Lukas Reschke
18e44ba2f3
Some updates...
13 years ago
Lukas Reschke
b63795ccb8
Handling arrays
13 years ago
Lukas Reschke
c009bc4b87
Revert
13 years ago
Lukas Reschke
6817a6b102
First try of implementing assignHTML
13 years ago
Brice Maron
9ec68c819b
Change parameter 'web' to 'url' and take array of array in config instead of : separated values
13 years ago
Brice Maron
5c2b2fc842
Change app path logic in templates
13 years ago
Brice Maron
6a250d0d20
Correct css file inclusion
13 years ago
Brice Maron
cc494259d3
Unit path and webpath, correct some more
13 years ago
Brice Maron
b6c5ca126b
First almost working version
13 years ago
Frank Karlitschek
a945fa10a6
update copyright
13 years ago
Bart Visscher
c645a7d0f8
Fix empty jsfiles and cssfiles in layout template
13 years ago
Bart Visscher
2faae817f1
Template: Fix var name
13 years ago
Bart Visscher
6d20fe4012
Template: Make getFormFactorExtension function public
13 years ago
Thomas Mueller
bda2dbec1f
Prevent Clickjacking by adding additional headers:
...
header('X-Frame-Options: Sameorigin');
header('X-XSS-Protection: 1; mode=block');
header('X-Content-Type-Options: nosniff');
Thanks to Lukas Reschke for reporting this issue (and many more).
13 years ago
Georg Ehrke
ebcaa46482
fix loading of css files that are core related
13 years ago
Georg Ehrke
3f64eb25ab
some fixes fore movable apps
13 years ago
Jan-Christoph Borchardt
7ddd043427
renamed extention to extension, also now only showing lowercase
13 years ago
Robin Appelman
b1bcc60d83
reuse OC_L10N objects
13 years ago
Bart Visscher
632b3cbbbb
Cleanup the template code for redundant code
13 years ago
Frank Karlitschek
5e9d268c21
never try to load an non existing template,css,img.
...
do propper checking, error reporting and motivate the developerto fix it ;-)
13 years ago
Frank Karlitschek
5943af17e7
spaces -> tabs
...
Thanks to Jakob for reminding me
13 years ago
Frank Karlitschek
ab96fa67c8
first part of the abstraction work of the apps folder. more to come
13 years ago
Frank Karlitschek
a62e109e8c
make the location of the 3rdparty folder flexible.
...
It´s automatically search in the owncloud folder and in the parent folder.
override with an option in config.php is also possible
13 years ago
Bart Visscher
a25bda8e41
Add application name to title
13 years ago
Frank Karlitschek
340b6bf3ad
add themeing support and support for autoselection of mobile/tablet and standalone css/jss files and templates
13 years ago
Tom Needham
dd7a411f9a
Disable save button while saving. Streamlined code.
14 years ago
Bart Visscher
43911d9a6f
Template: output better html for select options
14 years ago
Bart Visscher
ef124c3e21
Use a function to generate select options
14 years ago
Robin Appelman
595b13f1e0
prevent the remaining ob_clean related errors
14 years ago
Bart Visscher
82c7598861
Remove global vars and use the OC static version.
...
Removed global vars are DOCUMENTROOT, SERVERROOT, SUBURI, WEBROOT and CONFIG_DATADIRECTORY
14 years ago