Bart Visscher
a8f963d9cf
Spaces to tabs
12 years ago
Thomas Mueller
44e5c052b3
handling proper display of files/folders with negative size
...
refs #1162
12 years ago
Brice Maron
a310dcb0ff
Fix a dirty function preventing showing errors
13 years ago
Frank Karlitschek
0f61816278
A new function to create nice error page. And use it for fatal db errors
13 years ago
Alessandro Cosentino
7d01342bab
fix translation issues with previous commit
13 years ago
Alessandro Cosentino
aa917cfb18
uncomment hours entries in relative date functions
13 years ago
Felix Moeller
0e70ea9d8b
Checkstyle: Fix the last 25 NoSpaceAfterComma
13 years ago
Felix Moeller
30d7993e01
Checkstyle fixes: NoSpaceAfterComma
13 years ago
Felix Moeller
f8d1d7787e
Checkstyle fixes for SpaceBeforeOpenBrace
13 years ago
Felix Moeller
afadf93d31
Checkstyle: many fixes
13 years ago
Lukas Reschke
7a7f12a0c1
Create only one CSRF token per session
...
Before, the CSRF token expired every hour. We had a script in place
which should refresh the token but this don't worked in every case.
(Laptop sleeping etc.)
With this commit, the token will only get once created for every
session so that the "Token expired" warning shouldn't appear.
13 years ago
Bernhard Posselt
bf3dac05d1
added functions for printing escaped and unescaped values
13 years ago
Felix Moeller
03581ef463
Correct a first issue Checkstyle is complaining about ...
...
This is BracketsNotRequired
13 years ago
Sam Tuke
8b01286a5d
Merged branch 'master'
13 years ago
Lukas Reschke
d525654fcd
Correct indentation
13 years ago
Björn Schießle
f493e97f5d
always generate access token, also for forms shown to anonymous users (e.g. public shares)
13 years ago
Christian Reiner
71454b1bca
Fix to preserve backward compatibility for apps creating static links containing the request token (currently the contacts app and maybe some 3rd party implementations)
13 years ago
Christian Reiner
743826bbf3
Reimplementation of CSRF protection including autorefresh
13 years ago
Robin Appelman
4131b205d4
fix some more phpdoc
13 years ago
scambra
e48811017d
fix translation for core/lostpassword
13 years ago
Thomas Mueller
3829460ab8
adding space between) and {
13 years ago
Bart Visscher
1a46192433
Add args parameter to linkTo(Absolute) function, to append the args automaticly
13 years ago
Thomas Mueller
58b1e841f1
fix translations within subfolder /lib
13 years ago
Bart Visscher
db18218a1b
Space before tab fixes
13 years ago
Bart Visscher
52f2e7112e
Whitespace fixes in lib
13 years ago
Robin Appelman
48306a3c4f
fix unused variables
13 years ago
Bjoern Schiessle
902c649dad
use new sanitize HTML function backported
...
Conflicts:
lib/template.php
13 years ago
Bjoern Schiessle
f11e4d7cd6
removing sanitizeHTML() function from template.php since I moved it to util.php
...
to make it more generic.
13 years ago
Bjoern Schiessle
089ae980c4
use new sanitize HTML function
13 years ago
Brice Maron
cfb3b633f5
Force sanitize function to use UTF8 (for php lower than 5.4)
13 years ago
Bart Visscher
180243d92a
Move page layout handling to its own class
13 years ago
Bart Visscher
332603a263
Move formfactor code to OC_Template
13 years ago
Thomas Tanghus
625cd822c3
Backport CSRF prevention.
13 years ago
Thomas Tanghus
89464721c7
Added JSON methods for CSRF prevention. Make request token accessible from template and add js var.
13 years ago
Lukas Reschke
2b22c538c8
Make some apps compatible
13 years ago
Lukas Reschke
6d68b7620c
Check for string
13 years ago
Lukas Reschke
18e44ba2f3
Some updates...
13 years ago
Lukas Reschke
b63795ccb8
Handling arrays
13 years ago
Lukas Reschke
c009bc4b87
Revert
13 years ago
Lukas Reschke
6817a6b102
First try of implementing assignHTML
13 years ago
Brice Maron
9ec68c819b
Change parameter 'web' to 'url' and take array of array in config instead of : separated values
13 years ago
Brice Maron
5c2b2fc842
Change app path logic in templates
13 years ago
Brice Maron
6a250d0d20
Correct css file inclusion
13 years ago
Brice Maron
cc494259d3
Unit path and webpath, correct some more
13 years ago
Brice Maron
b6c5ca126b
First almost working version
13 years ago
Frank Karlitschek
a945fa10a6
update copyright
13 years ago
Bart Visscher
c645a7d0f8
Fix empty jsfiles and cssfiles in layout template
13 years ago
Bart Visscher
2faae817f1
Template: Fix var name
13 years ago
Bart Visscher
6d20fe4012
Template: Make getFormFactorExtension function public
13 years ago
Thomas Mueller
bda2dbec1f
Prevent Clickjacking by adding additional headers:
...
header('X-Frame-Options: Sameorigin');
header('X-XSS-Protection: 1; mode=block');
header('X-Content-Type-Options: nosniff');
Thanks to Lukas Reschke for reporting this issue (and many more).
13 years ago