Steve Boyd
|
cb76f312a4
|
Merge branch '4.11' into 4.12-release
|
2022-11-21 13:44:23 +13:00 |
|
Steve Boyd
|
dc98cad48a
|
Merge branch '4.10' into 4.11
|
2022-11-21 13:43:59 +13:00 |
|
Steve Boyd
|
fe13856769
|
[CVE-2022-37429] Sanitise XSS
|
2022-11-21 13:06:40 +13:00 |
|
Guy Sartorelli
|
17f1c7ceed
|
Merge pull request #10585 from creative-commoners/pulls/4.11/cve-2022-37430
Sanitise mixed case javascript
|
2022-11-21 13:03:30 +13:00 |
|
Guy Sartorelli
|
e5b81109de
|
Merge pull request #10584 from creative-commoners/pulls/4.11/cve-2022-38462
Don't allow CRLF in header values
|
2022-11-21 13:02:25 +13:00 |
|
Steve Boyd
|
4308a93cc8
|
[CVE-2022-38148] Validate SortColumn exists
|
2022-11-21 13:01:32 +13:00 |
|
Guy Sartorelli
|
b17b29eea1
|
Merge pull request #10583 from creative-commoners/pulls/4.11/cve-2022-38724-embed-shortcode
Restrict embed shortcode attributes
|
2022-11-21 13:01:23 +13:00 |
|
Steve Boyd
|
49e637d244
|
MNT Explicitly test with blowfish
|
2022-11-10 11:36:56 +13:00 |
|
Guy Sartorelli
|
ed63beeeee
|
Merge branch '4.11' into 4
|
2022-11-09 10:53:09 +13:00 |
|
Steve Boyd
|
7cfd827776
|
MNT Use restore_error_handler()
|
2022-11-03 16:19:17 +13:00 |
|
Steve Boyd
|
128f78c1cf
|
FIX Filter out E_USER_DEPRECATED unrelated to unit test
|
2022-11-02 11:40:34 +13:00 |
|
Steve Boyd
|
b1dc861aac
|
NEW Record deprecated config
|
2022-10-31 19:00:59 +13:00 |
|
Steve Boyd
|
a3c1cb0ddf
|
ENH Set PasswordEncryption on default admin
|
2022-10-27 13:57:27 +13:00 |
|
Guy Sartorelli
|
168ca00555
|
[CVE-2022-38724] Restrict embed shortcode attributes
|
2022-10-26 09:31:12 +13:00 |
|
Steve Boyd
|
59b980edd7
|
Merge branch '4.11' into 4
|
2022-10-21 11:46:39 +13:00 |
|
Steve Boyd
|
bd2eb15c72
|
FIX Ensure Deprecation works with 1.x branches
|
2022-10-20 13:14:58 +13:00 |
|
Steve Boyd
|
e3a6cad8a8
|
FIX Allow passing objects to InjectionCreator::create()
Co-authored-by: Nate Devereux <nate@daveclark.co.nz>
|
2022-10-19 18:04:48 +13:00 |
|
Christian Bünte
|
e24fb3f86c
|
Fix i18nTextCollector produces corrupt output / namespaces when running under PHP8.0 (#10228)
* FIX i18nTextCollector produces corrupt output / namespaces when running under PHP8.0
|
2022-09-29 13:40:40 +13:00 |
|
Guy Sartorelli
|
421864d111
|
Merge branch '4.11' into 4
|
2022-09-29 09:41:06 +13:00 |
|
Guy Sartorelli
|
4a598ded51
|
FIX Allow removing named extensions in yaml config
|
2022-09-27 13:15:28 +13:00 |
|
Guy Sartorelli
|
d3c28579b7
|
[CVE-2022-38462] Don't allow CRLF in header values
|
2022-09-07 11:22:07 +12:00 |
|
Steve Boyd
|
2b5420ee7d
|
[CVE-2022-37430] Sanitise mixed case javascript
|
2022-08-23 15:36:48 +12:00 |
|
Sergey Shevchenko
|
ebb1601d5d
|
fix: misc suggested changes
* disable resolve_relative_css_refs by default
* variable naming
* using proper path joiner
* test comment typo
|
2022-08-05 15:35:26 +12:00 |
|
Sergey Shevchenko
|
bc9a323418
|
fix: more tests, improved paths detection, readability
|
2022-08-05 15:35:26 +12:00 |
|
Sergey Shevchenko
|
a2906cd02c
|
ENH Requirements_Backend::resolveCSSReferences(): Tests, config, doc, safety.
* Changed to ignore absolute paths altogether
* Improve tests
* Added config flag
* Changed docs
|
2022-08-05 15:35:26 +12:00 |
|
Sergey Shevchenko
|
8370ffc2a0
|
ENH Test for Requirements_Backend::resolveCSSReferences()
|
2022-08-05 15:35:26 +12:00 |
|
Guy Sartorelli
|
a57eeb614b
|
MNT Fix broken unit test
|
2022-08-03 15:47:14 +12:00 |
|
Steve Boyd
|
c466ca5ca5
|
Merge pull request #9341 from unclecheese/pulls/4/come-on-baby-make-it-search-so-good
NEW: Allow search field customisation
|
2022-08-02 11:59:55 +12:00 |
|
Guy Sartorelli
|
11595952f4
|
NEW Search across multiple searchable fields by default (#10382)
* NEW Search across multiple searchable fields by default
* ENH Split search query and search each term separately.
|
2022-08-01 12:19:02 +12:00 |
|
Guy Sartorelli
|
c7504aa337
|
Merge pull request #10331 from creative-commoners/pulls/4/gridfield-keep-state
ENH Restore gridfield state from get vars (POC)
|
2022-07-29 11:33:19 +12:00 |
|
Loz Calver
|
d79564751f
|
Merge pull request #10406 from creative-commoners/pulls/4/manymany-extra-fields
NEW Set many_many_extraFields data via the ORM
|
2022-07-28 09:02:13 +01:00 |
|
Steve Boyd
|
bd2ba1e18a
|
Merge branch '4.11' into 4
|
2022-07-28 14:05:28 +12:00 |
|
Steve Boyd
|
b24c289892
|
Merge branch '4.10' into 4.11
|
2022-07-28 14:05:07 +12:00 |
|
Steve Boyd
|
bdf7d09144
|
MNT Update Utf8TestHelper for MySQL 8.0.30
|
2022-07-28 13:21:23 +12:00 |
|
Sabina Talipova
|
7a9bc7f577
|
ENH Keep Request in URL
|
2022-07-28 10:14:43 +12:00 |
|
Guy Sartorelli
|
af3c50c9da
|
NEW Set many_many_extraFields data via the ORM
|
2022-07-28 09:29:36 +12:00 |
|
Guy Sartorelli
|
1253ab82af
|
Merge pull request #10415 from kinglozzer/10413-php81-enums
NEW: Add support for autoloading PHP 8.1 enums
|
2022-07-27 11:38:51 +12:00 |
|
Steve Boyd
|
3547a5600d
|
Merge branch '4.11' into 4
|
2022-07-26 16:34:37 +12:00 |
|
Steve Boyd
|
ce46e2da47
|
MNT No longer mark tests as skipped if running mysql 8
|
2022-07-26 13:54:10 +12:00 |
|
Aaron Carlino
|
07a6c1191a
|
NEW: Allow search field customisation in GridFieldFilterHeader
|
2022-07-25 17:33:09 +12:00 |
|
Steve Boyd
|
24daf3ae83
|
MNT Skip test if Page class missing
|
2022-07-25 16:35:28 +12:00 |
|
Loz Calver
|
d3f104382d
|
NEW: Add support for autoloading PHP 8.1 enums
|
2022-07-22 15:59:55 +01:00 |
|
Steve Boyd
|
d4d1ff3450
|
Merge branch '4.11' into 4
|
2022-07-22 11:21:15 +12:00 |
|
Steve Boyd
|
f6693d4ea5
|
Merge branch '4.10' into 4.11
|
2022-07-22 11:20:22 +12:00 |
|
Steve Boyd
|
5eb8d3e25f
|
MNT Skip test in MySQL8
|
2022-07-22 11:16:32 +12:00 |
|
Steve Boyd
|
674e6d9b7b
|
MNT Update utf8 aliases for mysql 8 and mariadb 10.6
|
2022-07-21 15:19:16 +12:00 |
|
Sabina Talipova
|
2262d84a73
|
Merge pull request #9952 from creative-commoners/pulls/4.7/allow-class-to-inject-over-parent
All works perfect.
|
2022-07-12 15:29:17 +12:00 |
|
Steve Boyd
|
b62c4a9f53
|
Merge branch '4.11' into 4
|
2022-07-08 17:13:31 +12:00 |
|
Guy Sartorelli
|
0482444342
|
MNT Add tests for overriding DataObject via injection
|
2022-07-07 09:49:25 +12:00 |
|
Sabina Talipova
|
babc811381
|
FIX Remove unexpected message
|
2022-07-04 16:05:57 +12:00 |
|