Age | Commit message (Collapse) | Author | |
---|---|---|---|
2009-09-04 | When changing user preferences, reset the session based locale preferences. | Andy Staudacher | |
2009-09-04 | Add new locale preferences: Adding per session (cookie) locale preferences ↵ | Andy Staudacher | |
and check the browser's / OS' locale preferences. Ticket 582. | |||
2009-09-04 | Simplifying SafeString a bit: From a XSS HTML security point of view, treat ↵ | Andy Staudacher | |
clean() and purify() the same. No longer run a safe HTML string through the HTML purifier (since it's already marked as safe). This also addresses the issue of calling purify() when no purifier is installed. In that case, we'd run clean() on a clean string (double HTML encoding). If this approach doesn't work out, we can still modify the fallback code of purify() to check if the string is already clean before calling clean() instead of purify(). | |||
2009-09-03 | Checkpoint. | Bharat Mediratta | |
2009-09-03 | Fix tests for new purifier API. | Bharat Mediratta | |
2009-09-03 | Fix test for new purifier API. | Bharat Mediratta | |
2009-09-03 | Refactor interaction with the purifier module so that the API is | Bharat Mediratta | |
cleaner and we don't need to know about the module innards. Move the config file over there too. | |||
2009-09-03 | Minor performance improvement: Reduce module var cache lookups in SafeString. | Andy Staudacher | |
2009-09-03 | Ensure that purify isn't applied twice for an already purified SafeString | Andy Staudacher | |
2009-09-03 | Merge branch 'master' into talmdal | Tim Almdal | |
2009-09-03 | fix the expected return value of photos controller | Tim Almdal | |
2009-09-03 | fix the expected return value of album controller | Tim Almdal | |
2009-09-03 | Change the Html_Helper and SafeString tests to change the expeced results ↵ | Tim Almdal | |
based on whether HtmlPurifier module is installed or not | |||
2009-09-02 | Merge branch 'master' into talmdal | Tim Almdal | |
2009-09-02 | Merge branch 'master' of git@github.com:gallery/gallery3 | Chad Kieffer | |
2009-09-02 | Fix bg images in tables bug in webkit and ie. #718 | Chad Kieffer | |
2009-09-02 | Undo rest of the indentation issue accidentally created in 8312eb and | Bharat Mediratta | |
partially fixed in 2c30dc | |||
2009-09-02 | Change graphics::generate() API so that it doesn't return a boolean, | Bharat Mediratta | |
instead it throws an exception if there's a problem. The normal case for graphics::generate is that it's going to succeed. It'll only fail if something un-handleable went wrong, so just use the resulting exception. | |||
2009-09-02 | Merge branch 'master' into talmdal | Tim Almdal | |
2009-09-02 | fix a leading space that was causing the file_structure_test to fail | Tim Almdal | |
2009-09-02 | Merge branch 'master' into talmdal | Tim Almdal | |
2009-09-02 | Fix formatting, and use a properly named file in | Bharat Mediratta | |
change_photo_no_csrf_fails_test() so that GD doesn't bomb. | |||
2009-09-02 | Deal with the aftermath of adding sharpen() calls. Since GD does not | Bharat Mediratta | |
support it, this causes crashes as soon as you try to use it, which breaks a bunch of our tests. Also, give the user some idea that sharpen() is missing in the UI. Fixes #689. | |||
2009-09-02 | Run 'graphics::choose_default_toolkit();' to pick a toolkit, which we | Bharat Mediratta | |
normally do as part of a regular install. | |||
2009-09-02 | Refactor how we use $this->relative_path() so that we're not calling | Bharat Mediratta | |
it twice on both sides of a ternary operator. | |||
2009-09-02 | Remove debugging statementes | Tim Almdal | |
2009-09-02 | Move HTMLPurifier from core to contrib and make it optional. Delete the ↵ | Tim Almdal | |
modules/gallery/lib and HTMLPurifier.php | |||
2009-09-01 | Rename $comment_model to $comments, this time without stomping on the | Bharat Mediratta | |
pre-existing variable. | |||
2009-09-01 | Revert "Rename $comment_model to $comments." | Bharat Mediratta | |
This reverts commit d85a8b20bbe0a5be0a03da70354169d41f418d41. | |||
2009-09-01 | Fix up incorrectly applied html::mark_clean(). Resolves #698, thanks fperwth! | Bharat Mediratta | |
2009-09-01 | Allow anything to be made an album cover, except for direct children | Bharat Mediratta | |
of the root album (which has no visible album cover, so no point in offering that option). This fully resolves #705. | |||
2009-09-01 | Merge branch 'master' of git@github.com:gallery/gallery3 | Bharat Mediratta | |
2009-09-01 | Allow the RSS feed page size to be customizeable, up to 100 items (to | Bharat Mediratta | |
mitigate DoS attacks). Have PicLens request a 100-item page to mitigate the bug where it refuses to load the 2nd page. Mitigates #23. | |||
2009-09-01 | Remove unused l10n message | Andy Staudacher | |
2009-09-01 | Add missing mark_clean() for t() calls with %attr parameter. | Andy Staudacher | |
2009-09-01 | Fix bug #522 - Handle "save settings" correctly in the "share translations" ↵ | Andy Staudacher | |
form. | |||
2009-09-01 | Merge commit 'upstream/master' | Andy Staudacher | |
2009-09-01 | Update XSS scanner golden file | Andy Staudacher | |
2009-09-01 | XSS / style fixes for newly detected issues (after fixing XSS scanner) | Andy Staudacher | |
2009-09-01 | XSS escape in form helper and forge where missing. | Andy Staudacher | |
2009-09-01 | Fix XSS in tags JS | Andy Staudacher | |
2009-09-01 | Remove debugging code | Andy Staudacher | |
2009-09-01 | Fix bug in XSS scanner for <script> block @ position 0 of inline_html | Andy Staudacher | |
2009-08-31 | Add an icon to the context menu option. | Bharat Mediratta | |
2009-08-31 | Set CSS cursor to hand for jQuery UI ui-state-hover elements. Fixes all but ↵ | Chad Kieffer | |
progress bar cursor. #669 | |||
2009-08-31 | Merge branch 'master' of git@github.com:gallery/gallery3 | Chad Kieffer | |
2009-08-31 | Don't include Make this the album's cover in context menu's for albums. #705 | Chad Kieffer | |
2009-08-31 | Update XSS test golden file | Andy Staudacher | |
2009-08-31 | Merge branch 'master' of git@github.com:gallery/gallery3 | Chad Kieffer | |
2009-08-31 | Merge commit 'upstream/master' | Andy Staudacher | |