647 Commits

Author SHA1 Message Date
Thomas Hochstein
75a7c78927 Release preparations.
Signed-off-by: Thomas Hochstein <thh@inter.net>
2019-05-01 19:30:33 +02:00
Thomas Hochstein
1c9d4d09d6 Update NEWS file.
Signed-off-by: Thomas Hochstein <thh@inter.net>
2019-05-01 19:23:45 +02:00
onli
a35aa1b5fa Fix XSS from image comment exif field (#598).
Backported from master branch.

Signed-off-by: Thomas Hochstein <thh@inter.net>
2019-04-28 14:01:12 +02:00
Thomas Hochstein
c89b5903f5 Add NEWS item for fixed button.
Signed-off-by: Thomas Hochstein <thh@inter.net>
2019-04-28 14:01:12 +02:00
onli
c310da1ffd fix: Escape EXIF tags in ML properties view (#598)
Backported from master branch.

Signed-off-by: Thomas Hochstein <thh@inter.net>
2019-04-28 13:49:21 +02:00
Thomas Hochstein
b350c6ed25 Add NEWS items.
(These have to be added to the NEWS file in the
master branch after release of 2.1.5, too.)

Signed-off-by: Thomas Hochstein <thh@inter.net>
2018-09-30 12:18:01 +02:00
Garvin Hicking
1805c5cb36 Next release 2018-09-20 13:12:38 +02:00
Garvin Hicking
3f3c3acb25 Prepare release 2018-09-20 09:41:21 +02:00
Garvin Hicking
7317d27292 News release header 2018-08-16 15:25:24 +02:00
Garvin Hicking
3fb74929c4 prepare release 2018-08-16 14:06:58 +02:00
Garvin Hicking
9aec2ade38 Proper NEWS for 2.1 branch 2018-07-19 09:30:13 +02:00
Garvin Hicking
6b435cdf0b Cherry pick: Adjust fetchLimit to ensure integer content 2018-07-19 09:28:40 +02:00
Garvin Hicking
1455842192 Cherrypick: Security fixes 2018-07-19 09:27:58 +02:00
Garvin Hicking
5d2fcfa6a4 backport 2018-04-23 12:02:17 +02:00
Garvin Hicking
eca937afd4 Add new "legal" properties for affected plugins.
Disable subtome by default.
2018-04-03 11:16:41 +02:00
Garvin Hicking
8c7ab8c9f4 Fixed SQL statement for creation of serendipity_groupconfig DB table (did not work in my MySQL 5.7.17) 2018-03-28 10:39:31 +02:00
Thomas Hochstein
b89b34b106 Increment version, update NEWS file for release.
Signed-off-by: Thomas Hochstein <thh@inter.net>
2018-03-25 08:19:07 +02:00
Garvin Hicking
3f18e40cfe document removing netmirror 2018-01-10 11:05:06 +01:00
Garvin Hicking
5871f698eb Exclude documentation from rewrites in .htaccess
* Change .htaccess default rules.
* Add an upgrader task.

Fixes isse #521.

Cherry-picked and rebased from master.

Signed-off-by: Thomas Hochstein <thh@inter.net>
2017-07-23 20:36:12 +02:00
Thomas Hochstein
f5636b9b1e Add Net/DNS2.php 1.4.3 to core.
Fixes issue 459.

See https://pear.php.net/package/Net_DNS2/

Cherry-picked from master.

Signed-off-by: Thomas Hochstein <thh@inter.net>
2017-05-20 23:04:28 +02:00
Garvin Hicking
757e538fe4 next release 2017-04-09 09:39:44 +02:00
Garvin Hicking
8fee805ca1 Prepare release 2.1.1 2017-04-09 09:15:55 +02:00
Garvin Hicking
2bedc9243e next version 2017-04-08 18:47:50 +02:00
Garvin Hicking
a385c10890 bump version 2017-04-08 18:23:46 +02:00
Garvin Hicking
7832c364d7 IteratorIteratorIteratorIterator iterated iteration fix. To understand iteration, you first need to understand recursion and iteration and iteration and iteration and iteration. 2017-04-08 17:38:47 +02:00
Garvin Hicking
c2cebad52b issue #442 2017-01-30 14:58:37 +01:00
Garvin Hicking
2b5de12b38 Issue #437 2017-01-26 08:25:06 +01:00
Garvin Hicking
97277cfd1a issue #430 2017-01-26 08:23:17 +01:00
Garvin Hicking
5bf0cf9fea Merge branch 'master' of github.com:s9y/Serendipity 2017-01-26 08:16:22 +01:00
Garvin Hicking
69d8a34c90 document 2017-01-26 08:16:14 +01:00
Garvin Hicking
c62d667287 * [Security] Fix missing integer casting for inserting new categories
(thanks to cdxy)
2017-01-16 11:29:15 +01:00
Garvin Hicking
6285933470 * [Security] Redirection of comment.php now checks the referrer
and only allows the blog's host (thanks to Lee Sheldon Victor)
2017-01-12 12:02:27 +01:00
Garvin Hicking
a48708021c * [Security] Reject %0D/%0A in exit tracking and other places
(Issue #434)
2017-01-03 09:21:25 +01:00
Garvin Hicking
edfc8bcff1 disable selenium test files 2017-01-02 09:42:37 +01:00
Garvin Hicking
4e8c310156 Issue #435, fix missing escaping of HTTP referer to prevent XSS 2017-01-02 09:37:45 +01:00
Garvin Hicking
6b1348a7f1 improve hidding password from recent chrome 2016-12-23 10:13:40 +01:00
Garvin Hicking
e2a665e13b Sync changes 2016-11-28 15:34:10 +01:00
Garvin Hicking
dc3eb1e735 Merge branch 'master' of github.com:s9y/Serendipity 2016-11-02 12:18:58 +01:00
Garvin Hicking
26de428c18 Enhanced media upload check to also check redirects for local files, thanks to Xu Yue (again!) 2016-11-02 12:18:49 +01:00
Matthias Mees
a81c480d5e Document my recent changes, oops 2016-10-26 11:35:31 +02:00
Garvin Hicking
929fe9ade7 bump version, prep release 2016-09-26 10:28:20 +02:00
Garvin Hicking
06e33c5421 Merge branch 'master' of github.com:s9y/Serendipity 2016-09-25 15:30:10 +02:00
Garvin Hicking
1bb335dc17 Merge branch 'master' of github.com:s9y/Serendipity 2016-09-22 12:51:41 +02:00
Garvin Hicking
cfd75ec877 Security patch, see docs/NEWS 2016-09-22 12:51:00 +02:00
Garvin Hicking
c1e4f4c533 Add serendipity_request_url() 2016-09-22 12:35:48 +02:00
Matthias Mees
40d4dc986e Document (re)moving outdated themes
Closes #422
2016-09-21 19:12:36 +02:00
Matthias Mees
16c98885b7 Document adding Skeleton theme
Oops, I forgot. /o\
2016-09-21 12:54:28 +02:00
onli
2797bfdf02 Document preview_iframe cleanup + cache IE fix 2016-09-12 17:36:37 +02:00
onli
f15cb17755 Document recent changes
fallback chain changes, preview fixes, getFile function in plugin api,
frontend-param in smarty {getFile}
2016-09-09 15:12:13 +02:00
Garvin Hicking
fb7896b2bd prepare release 2016-06-08 09:15:07 +02:00