| Age | Commit message (Expand) | Author |
| 2009-09-02 | Change graphics::generate() API so that it doesn't return a boolean, | Bharat Mediratta |
| 2009-09-02 | Fix formatting, and use a properly named file in | Bharat Mediratta |
| 2009-09-02 | Deal with the aftermath of adding sharpen() calls. Since GD does not | Bharat Mediratta |
| 2009-09-02 | Refactor how we use $this->relative_path() so that we're not calling | Bharat Mediratta |
| 2009-09-01 | Fix up incorrectly applied html::mark_clean(). Resolves #698, thanks fperwth! | Bharat Mediratta |
| 2009-09-01 | Allow anything to be made an album cover, except for direct children | Bharat Mediratta |
| 2009-09-01 | Remove unused l10n message | Andy Staudacher |
| 2009-09-01 | Fix bug #522 - Handle "save settings" correctly in the "share translations" f... | Andy Staudacher |
| 2009-09-01 | Merge commit 'upstream/master' | Andy Staudacher |
| 2009-09-01 | Update XSS scanner golden file | Andy Staudacher |
| 2009-09-01 | XSS / style fixes for newly detected issues (after fixing XSS scanner) | Andy Staudacher |
| 2009-09-01 | Remove debugging code | Andy Staudacher |
| 2009-09-01 | Fix bug in XSS scanner for <script> block @ position 0 of inline_html | Andy Staudacher |
| 2009-08-31 | Set CSS cursor to hand for jQuery UI ui-state-hover elements. Fixes all but p... | Chad Kieffer |
| 2009-08-31 | Merge branch 'master' of git@github.com:gallery/gallery3 | Chad Kieffer |
| 2009-08-31 | Don't include Make this the album's cover in context menu's for albums. #705 | Chad Kieffer |
| 2009-08-31 | Update XSS test golden file | Andy Staudacher |
| 2009-08-31 | Merge branch 'master' of git@github.com:gallery/gallery3 | Chad Kieffer |
| 2009-08-31 | Merge commit 'upstream/master' | Andy Staudacher |
| 2009-08-31 | Fix XSS vectors in HTML attributes (mostly t() calls) | Andy Staudacher |
| 2009-08-31 | Add icons to context menu for albums. I'm open to other options, if folks thi... | Chad Kieffer |
| 2009-08-31 | Add XSS check for HTML attributes | Andy Staudacher |
| 2009-08-31 | Merge branch 'master' of git@github.com:gallery/gallery3 | Bharat Mediratta |
| 2009-08-31 | Stay on the same page when editing albums/movies/photos. Fixes ticket | Bharat Mediratta |
| 2009-08-31 | Add XSS check to ensure that html::js_string() is not preceded by a quote. | Andy Staudacher |
| 2009-08-31 | XSS review fixes (mostly adding missing html::mark_clean()) calls. | Andy Staudacher |
| 2009-08-31 | Adding XSS test for href="javascript: and onclick="..." | Andy Staudacher |
| 2009-08-31 | Rename mark_safe() to mark_clean() | Andy Staudacher |
| 2009-08-31 | Merge commit 'upstream/master' | Andy Staudacher |
| 2009-08-30 | Updating golden XSS-test data file | Andy Staudacher |
| 2009-08-30 | Check for href="<?= $foo ?>" (malicious "javascript:..." string) | Andy Staudacher |
| 2009-08-30 | Updating XSS golden file | Andy Staudacher |
| 2009-08-30 | Merge commit 'upstream/master' | Andy Staudacher |
| 2009-08-30 | Tabs to spaces cleanup | Andy Staudacher |
| 2009-08-30 | Finish this pass at the Admin Maintenance view. Re-introduce status icons, pu... | Chad Kieffer |
| 2009-08-30 | Merge branch 'master' of git@github.com:gallery/gallery3 | Chad Kieffer |
| 2009-08-30 | Apply hover effect to buttons in progress indicator dialog. | Chad Kieffer |
| 2009-08-30 | Updating uses of html::js_string and SafeString::for_js (value now contains s... | Andy Staudacher |
| 2009-08-30 | Rename clean_js to js_string and have it return a complete JS string (with de... | Andy Staudacher |
| 2009-08-30 | Use is_descendant() API inside move_to() for clarity. | Bharat Mediratta |
| 2009-08-30 | Improve no_tabs test to print out a complete list of files + line numbers + l... | Andy Staudacher |
| 2009-08-30 | Add $theme-> methods to Xss whitelist for HTML safety. | Andy Staudacher |
| 2009-08-30 | Change all instances of SafeString::of_safe_html() to html::mark_safe() in vi... | Andy Staudacher |
| 2009-08-30 | Fixing typo | Andy Staudacher |
| 2009-08-29 | Minor cleanup | Andy Staudacher |
| 2009-08-29 | Update all code to use helper method html::clean(), html::purify(), ... inste... | Andy Staudacher |
| 2009-08-29 | Adding html::clean(), ::purify(), etc. | Andy Staudacher |
| 2009-08-29 | Remove try/catch in resize() since that will swallow any exceptions | Bharat Mediratta |
| 2009-08-29 | Undo url helper changes - url methods no longer return a SafeString. | Andy Staudacher |
| 2009-08-29 | you can close the l10n client directly from its interface now, without going ... | jhilden |