summaryrefslogtreecommitdiff
path: root/modules/gallery
AgeCommit message (Collapse)Author
2009-08-29Minor cleanupAndy Staudacher
2009-08-29Update all code to use helper method html::clean(), html::purify(), ... ↵Andy Staudacher
instead of SafeString directly.
2009-08-29Adding html::clean(), ::purify(), etc.Andy Staudacher
2009-08-29Undo url helper changes - url methods no longer return a SafeString.Andy Staudacher
Adding SafeString::of_safe_html() calls where urls are passed as parameters to t() and t2().
2009-08-29XSS fixesAndy Staudacher
2009-08-29L10n fixes for the admin_languages page, and JS/XSS cleanup of the organize ↵Andy Staudacher
views.
2009-08-29Fix link in l10n UI (for SafeString changes)Andy Staudacher
2009-08-29Merge commit 'upstream/master'Andy Staudacher
Conflicts: modules/akismet/views/admin_akismet.html.php modules/comment/helpers/comment_rss.php modules/gallery/helpers/gallery_rss.php modules/gallery/libraries/I18n.php modules/gallery/views/permissions_browse.html.php modules/gallery/views/simple_uploader.html.php modules/info/views/info_block.html.php modules/organize/controllers/organize.php modules/organize/views/organize.html.php modules/organize/views/organize_album.html.php themes/default/views/album.html.php themes/default/views/movie.html.php themes/default/views/photo.html.php
2009-08-29Fixing all detected XSS vectors in PHP->JS code.Andy Staudacher
Xss: Rename UNKNOWN back to DIRTY, JS_XSS to DIRTY_JS. (using a different flag value to highlight potential XSS vectors in JS)
2009-08-29Merge branch 'master' of git@github.com:gallery/gallery3Chad Kieffer
2009-08-29Update status message styles. Lighten backgrounds, don't show background on ↵Chad Kieffer
Admin Maintenance rows, and added gModuleStatus class.
2009-08-29Bugfix: Don't forget to copy the _is_purified_html flag when cloning a ↵Andy Staudacher
SafeString.
2009-08-29Refactor all calls of p::clean() to SafeString::of() and p::purify() to ↵Andy Staudacher
SafeString::purify(). Removing any p::clean() calls for arguments to t() and t2() since their args are wrapped in a SafeString anyway.
2009-08-29Add more factory methods for convenience:Andy Staudacher
SafeString::purify() and SafeString::of_safe_html(). Removing SafeString::mark_html_safe() since it's no longer needed.
2009-08-29Merge branch 'talmdal_branch' of git@github.com:gallery/gallery3Bharat Mediratta
2009-08-29Clean up the test and get it working.Bharat Mediratta
2009-08-29Adding SafeString::for_html_attr()Andy Staudacher
2009-08-29Fix for 641... extend viewable functionality to comments. Viewable unit test ↵Tim Almdal
is not working.
2009-08-29Have url::site() and other methods return a SafeString, just as t() and t2().Andy Staudacher
Benefits: - url::site() is often used in views and we can ensure in the url class that returned strings are indeed safe for use in HTML. Makes the list of vars of unknown safety status shorter. - url::site() is often used as message parameter to t() and t2(). The parameter would be HTML-escaped if it wasn't marked as safe HTML already. Makes the usage simpler / shorter.
2009-08-29Merge branch 'master' of git@github.com:gallery/gallery3jhilden
2009-08-29* created new generic "Add" dropdown in the site menu. this should take care ↵jhilden
of ticket #537 * removed start/stop translation menu items from the admin, since they are on the languags admin page now
2009-08-29Standardize the access to the create_random_item methodTim Almdal
2009-08-29improved translation interface so that it now can be closed without going to ↵jhilden
the admin
2009-08-29Merge branch 'master' of git@github.com:gallery/gallery3Bharat Mediratta
2009-08-29Adding SafeString which is going to replace p::clean() and p::purify().Andy Staudacher
Refactoring of Xss_Security_Test. t() and t2() return a SafeString instance. TODO: - Update all code to use SafeString where appropriate. - Update golden fole of Xss_Security_Test - Stop reporting CLEAN vars in Xss_Security_Test
2009-08-29Using SafeString in album controller / viewAndy Staudacher
2009-08-28improved translations admin interfacejhilden
2009-08-28Display the sort order in the Organize dialog, and allow users toBharat Mediratta
change the sort order on the fly.
2009-08-28improved UI for the languages adminjhilden
this should take care of bug #329
2009-08-28Rename sort columns:Bharat Mediratta
* Order Added => Manual * Capture Date => Date captured * Creation Date => Date uploaded * Updated Date => Date modified Set the default sort order to "created" which mimics what we had before, expt that it is not manual.
2009-08-28Don't record mail failures when we throw the exception, record themBharat Mediratta
when we catch the exception instead.
2009-08-28Merge branch 'master' of git@github.com:talmdal/gallery3Bharat Mediratta
2009-08-28Add logging to sendmail library when exception encounteredTim Almdal
2009-08-28Merge branch 'master' of git@github.com:gallery/gallery3jhilden
2009-08-27Merge branch 'master' of git://github.com/gallery/gallery3Tim Almdal
2009-08-27fixed CSS bug in the simple uploader #629jhilden
and improved permissions UI to include breadcrumbs (consistent with the uploader dialog)
2009-08-27Properly deal with invalid images. This fixes ticket #611 which showsBharat Mediratta
a BMP masquerading as a .jpg causing us to be unable to rebuild resizes and thumbnails. Now if that happens, we discard the file, log it and move on.
2009-08-27Merge branch 'master' of git://github.com/gallery/gallery3Tim Almdal
2009-08-27Remove 'ENGINE=InnoDB' specification from tables that we create. UseBharat Mediratta
the system's default table specification. Fixes ticket #597.
2009-08-27Convert tabs to spaces.Bharat Mediratta
2009-08-27Convert tabs to spaces.Bharat Mediratta
2009-08-25Merge branch 'master' of git://github.com/gallery/gallery3Tim Almdal
2009-08-25Workaround to make G3 work with Turkish locale.Andy Staudacher
Thanks to katpatuka for providing the fix.
2009-08-20Fix the setting of the mime type header. as perTim Almdal
http://gallery.menalto.com/node/90306 Thanks rWatcher Signed-off-by: Tim Almdal <tnalmdal@shaw.ca>
2009-08-19Fix the setting of the mime type header. as perTim Almdal
http://gallery.menalto.com/node/90306 Thanks rWatcher
2009-08-19Change the setting of page type from "item" to "photo". Thre is no page typeTim Almdal
of item. All other references use photo for non album and non dynamic pages. Signed-off-by: Tim Almdal <tnalmdal@shaw.ca>
2009-08-19Merge branch 'master' of git://github.com/gallery/gallery3Tim Almdal
2009-08-18Merge branch 'master' of git@github.com:gallery/gallery3Chad Kieffer
2009-08-18Merge branch 'master' of git://github.com/gallery/gallery3Tim Almdal
2009-08-18Don't call dirname() on the toolkit dir, it's already a directory! (Thanks ↵Bharat Mediratta
Kaare)