Commit message (Collapse) | Author | Age | |
---|---|---|---|
* | Korean language update | 이명진 | 2013-06-07 |
| | |||
* | we now require PHP 5.2.0 at least | Andreas Gohr | 2013-06-02 |
| | |||
* | make password reset token completely random | Andreas Gohr | 2013-05-31 |
| | | | | | | No need for HMAC here because there's no length attack vector here. We only care for the existance of the file and each reset request is completely (random) independent from each other. | ||
* | use HMAC in password reset token FS#2794 | Andreas Gohr | 2013-05-31 |
| | |||
* | use HMAC for CSRF security tokens FS#2794 | Andreas Gohr | 2013-05-31 |
| | |||
* | use hmac for external ressource hash FS#2794 | Andreas Gohr | 2013-05-31 |
| | |||
* | use HMAC in media_token FS#2794 | Andreas Gohr | 2013-05-30 |
| | |||
* | added HMAC support to PassHash class FS#2794 | Andreas Gohr | 2013-05-30 |
| | |||
* | fixed wrong use of quotes in authtype warning message | Anika Henke | 2013-05-27 |
| | |||
* | Fix wrong config key in deprecated auth message | Klap-in | 2013-05-15 |
| | |||
* | tar library: another fix for lone zero blocks | Andreas Gohr | 2013-05-09 |
| | |||
* | ensure security token is included in media url when resize parameter is ↵ | Christopher Smith | 2013-05-06 |
| | | | | passed in string form, e.g. 'w=80' | ||
* | Indexer: Remove broken and dead readdircache code FS#2771 | Michael Hamann | 2013-05-05 |
| | | | | | | | | | | | | | The code that is removed in this commit has either never been used (listIndexLenghts) or was completely broken (cacheIndexDir) and was introduced in the indexer rewrite in 2010. The idea of the rewrite was to update the readdir cache after every index change instead of on demand. What the code actually did was removing every updated index from the cache as it used a wrong if condition. Simply fixing the condition wouldn't fix the problem as then only updated indexes would be added to the cache and furthermore the rewrite simply ignored the readdircache setting. For now the safest solution seems to be removing the code. It could be added again in a changed form in a future version. | ||
* | Indexer: Fix wrong suffix parameter | Michael Hamann | 2013-05-05 |
| | | | | | The suffix parameter is only for the word length in the word index and not for the metadata index. | ||
* | Japanese language update | Satoshi Sahara | 2013-05-05 |
| | |||
* | Czech language update | Miroslav Kučera | 2013-05-05 |
| | |||
* | fixed exception call FS#2772 | Andreas Gohr | 2013-05-05 |
| | |||
* | make sure loaded text has the right encoding | Andreas Gohr | 2013-05-05 |
| | | | | | | | | When pages contain non-UTF8 chars (eg. when posted through a script or when edited on the filesystem, parts of DokuWiki can break resulting in missing page content. This fixes these problems by forcing the content to UTF-8 on load. This will result in bad characters for input that is not latin1 but contents will at least be visible. | ||
* | Tar: avoid lone zero blocks when adding 0 byte files | Andreas Gohr | 2013-05-03 |
| | |||
* | use correct endpoint in tpl_actiondropdown FS#2760 | Andreas Gohr | 2013-05-03 |
| | |||
* | Russian language update | Ivan I. Udovichenko | 2013-04-26 |
| | |||
* | removed debug statement | Andreas Gohr | 2013-04-25 |
| | | | | thanks @Klap-in | ||
* | authad: capabilities depend on userdomain specific config | Andreas Gohr | 2013-04-25 |
| | |||
* | Japanese language update | 이명진 | 2013-04-22 |
| | |||
* | Korean language update | 이명진 | 2013-04-22 |
| | |||
* | Merge pull request #211 from splitbrain/nonwikidiffs | Michael Hamann | 2013-04-21 |
|\ | | | | | Fix double encoding of html diff output in syndicated feeds and subscrition emails | ||
| * | FS#2748, fix double encoding of html entities in subscription email diffs ↵ | Christopher Smith | 2013-04-10 |
| | | | | | | | | (updates subscription.php for changes to Diff class introduced in PR#179) | ||
| * | add comment to Unified Diff Formatter making it clear the output is unsafe ↵ | Christopher Smith | 2013-04-10 |
| | | | | | | | | for use in HTML as is | ||
* | | de/de-informal: Re-apply the updates of ba09710ad34bb383ae3526e84490a3d545f78866 | Mateng Schimmerlos | 2013-04-21 |
| | | |||
* | | Revert "German language update" | lupo49 | 2013-04-21 |
| | | | | | | | | | | | | | | This reverts commit ba09710ad34bb383ae3526e84490a3d545f78866. Conflicts: lib/plugins/authad/lang/de/settings.php | ||
* | | removed Satisfy All directive FS#2750 | Andreas Gohr | 2013-04-19 |
| | | |||
* | | strip specials from file name in codeblock downloads FS#2757 | Andreas Gohr | 2013-04-19 |
| | | |||
* | | Finnish language update | Otto Vainio | 2013-04-15 |
| | | |||
* | | German language update | Martin Terber | 2013-04-15 |
|/ | |||
* | Merge pull request #203 from splitbrain/fetchissues3 | Christopher Smith | 2013-04-07 |
|\ | | | | | prevent third-party requests from using fetch | ||
| * | code changes in the rest of the code base to support testing fetch | Christopher Smith | 2013-03-22 |
| | | |||
| * | refactor fetch to support unittesting | Christopher Smith | 2013-03-22 |
| | | |||
| * | add a token to fetch urls requiring image resize/crop to prevent external ↵ | Christopher Smith | 2013-03-22 |
| | | | | | | | | DDOS via fetch | ||
* | | Merge pull request #201 from splitbrain/fetchissues | Christopher Smith | 2013-04-07 |
|\ \ | | | | | | | process a crop as a resize when possible | ||
| * | | don't resize images when resize dimensions match native image dimensions | Christopher Smith | 2013-03-22 |
| | | | |||
| * | | avoid creating an intermediate crop image when the final image will match a ↵ | Christopher Smith | 2013-03-19 |
| | | | | | | | | | | | | resize | ||
* | | | Merge pull request #199 from splitbrain/authcomp | Christopher Smith | 2013-04-07 |
|\ \ \ | | | | | | | | | backward compatibility for old authtype settings | ||
| * | | | change nomenclature from 'show' to 'allow' (fn from canshow to allowed) | Christopher Smith | 2013-04-07 |
| | | | | |||
| * | | | for completeness (& defensive coding), test ['show'] against MSG_PUBLIC in ↵ | Christopher Smith | 2013-04-01 |
| | | | | | | | | | | | | | | | | case its redefined to a non-zero value | ||
| * | | | restrict 'authtype deprecated' alert to superusers only | Christopher Smith | 2013-04-01 |
| | | | | |||
| * | | | add capability to restrict recipients of dokuwiki 'msg' alerts. This is ↵ | Christopher Smith | 2013-04-01 |
| | | | | | | | | | | | | | | | | useful where message is added to the queue before authentication is initialized | ||
| * | | | backward compatibility for old authtype settings | Guy Brand | 2013-03-17 |
| | | | | |||
* | | | | Dutch language update | André Koot | 2013-04-04 |
| | | | | |||
* | | | | Latvian language update | Aivars Miška | 2013-04-04 |
| | | | | |||
* | | | | Korean language update | 이명진 | 2013-04-04 |
| | | | |