294b8804a4Fix source code escaping in comments
rugk
2020-03-04 13:29:06 +01:00
005d223c0dFix source code being not rendered
rugk
2020-03-04 11:45:56 +01:00
f05e5c2e29documenting change
El RIDO
2020-03-01 16:14:19 +01:00
879a2a9255tweaking German translation for email strings
El RIDO
2020-03-01 08:55:24 +01:00
f391773c65generalize date string handling, replacing hardcoded lookups, fixes#586
El RIDO
2020-03-01 08:54:48 +01:00
5340f417e0in Helper.urls2links(), encode HTML entities, find and insert links, partially decoding only the href property of it
El RIDO
2020-02-29 09:37:54 +01:00
d2e9e47b67refactor switch into nested if/else, to improve readability - no functional change
El RIDO
2020-02-29 08:45:56 +01:00
b0800060c2fix change log
El RIDO
2020-02-16 13:33:48 +01:00
15f66870d1Merge branch 'php7.4-ci'
El RIDO
2020-02-16 13:27:16 +01:00
afd82ac34dMerge branch 'master' into php7.4-ci
El RIDO
2020-02-16 13:23:11 +01:00
adece1d784incrementing version
1.3.3
El RIDO
2020-02-16 11:15:28 +01:00
dd12fbf3a3upgrade DOMpurify to 2.0.8
El RIDO
2020-02-04 18:43:35 +01:00
d2d471278cfix FAQ links, tweaking the subtext display, add link to modern browser FAQ, fixes#577
El RIDO
2020-02-02 07:35:33 +01:00
4058558399document backport of server side HTML encoding fixes
El RIDO
2020-02-16 08:59:57 +01:00
ba2363d66bapply StyleCI recommendation
El RIDO
2020-02-01 09:39:14 +01:00
35be3aabf8ensuring consistent use of php side encoding, testing all encoding cases, correctly report the language in the <html> tag
El RIDO
2020-02-01 09:15:14 +01:00
d3082c36d7add HTML entity encoding to PHP translation logic, remove exception to allow <br/> tags in DOMpurify by eliminating the single case that made use of it
El RIDO
2020-02-01 08:46:59 +01:00
79d30c9410adding test that expects parameters of php translation to get HTML entities to get encoded
El RIDO
2020-02-01 08:09:30 +01:00
e56edb6c6bFeature FAQ link in Readme & remove legacy things
rugk
2020-01-27 15:28:40 +01:00
6ccbad612dbackporting double encoding fixes from #560
El RIDO
2020-02-16 08:37:33 +01:00
e74d786a68update change log
El RIDO
2020-02-16 07:23:20 +01:00
f190317d95remove obsolete sudo key
El RIDO
2020-02-05 19:35:46 +01:00
5d54006c9eupdate minimum required PHP version to 5.6 and replace slowEquals() with native hash_equals() function
El RIDO
2020-02-05 19:30:14 +01:00
2870023e9cupdating composer requirements und identicon library
El RIDO
2020-02-05 19:17:22 +01:00
df7a06315fdrop php 5.5 tests, allowing us to use current ubuntu bionic based environment and adding php 7.4 incl. GD library
El RIDO
2020-02-05 19:15:43 +01:00
aa377038a0fixing DOMpurify 2.0.8 SRI after removing map line in file (which causes unnecessary requests to missing files in the browser)
El RIDO
2020-02-05 19:05:37 +01:00
7038fd5712Revert "add 7.4 to travis CI tests"
El RIDO
2020-02-05 18:52:53 +01:00
81194f6bd6add 7.4 to travis CI tests
El RIDO
2020-02-05 16:50:08 +01:00
00438ec1abupgrade DOMpurify to 2.0.8
El RIDO
2020-02-04 18:43:35 +01:00
87423abd7cFix ARIA for Editor/preview tabs.
El RIDO
2020-02-04 18:29:14 +01:00
347e7e03e1Merge pull request #582 from RoiArthurB/patch-1
El RIDO
2020-02-04 11:24:59 +01:00
6e08d8a497Update fr.json
Arthur Brugiere
2020-02-04 14:54:47 +07:00
3fdd42487afix FAQ links, tweaking the subtext display, add link to modern browser FAQ, fixes#577
El RIDO
2020-02-02 07:35:33 +01:00
2cbb8bf3cain translation, allow links to be inserted unencoded into href attribute, simplfy sanitation by allowing only <a> tags in DOMpurify for plain text and comments and avoid DOMpurify removing magnet links, fixes#579
El RIDO
2020-02-02 07:08:38 +01:00
3996f82404relax encoding of slashes just for plaintext display, so links can be detected
El RIDO
2020-02-01 16:30:41 +01:00
d7fd6667fdMerge branch 'displayEncoding2'
El RIDO
2020-02-01 16:16:05 +01:00
21ca30af3capply StyleCI recommendation
El RIDO
2020-02-01 09:39:14 +01:00
1b206e8495ensuring consistent use of php side encoding, testing all encoding cases, correctly report the language in the <html> tag
El RIDO
2020-02-01 09:15:14 +01:00
cc0920fc09add HTML entity encoding to PHP translation logic, remove exception to allow <br/> tags in DOMpurify by eliminating the single case that made use of it
El RIDO
2020-02-01 08:46:59 +01:00
428ea2f34eadding test that expects parameters of php translation to get HTML entities to get encoded
El RIDO
2020-02-01 08:09:30 +01:00
f940f17bbaMerge branch 'displayEncoding'
El RIDO
2020-02-01 07:53:32 +01:00
91003d6597Merge remote-tracking branch 'origin/master' into displayEncoding
El RIDO
2020-02-01 07:52:48 +01:00
9a4018bffejsverify rngState 8270695ec83abf412d was a false positive, due to incorrect test logic
El RIDO
2020-02-01 07:40:14 +01:00
1d8b0d6189Merge branch 'rylebrun-mail_fr_translation'
El RIDO
2020-01-20 19:39:13 +01:00
72e96c7147german translation of send to mail messages
El RIDO
2020-01-20 19:38:52 +01:00
1ae4f4f0fcupdating all languages with missing translation, addresses failing unit test in previous commit
El RIDO
2020-01-20 19:24:28 +01:00
28c387074fAdd mail fr translation for buttons
rylebrun
2020-01-20 12:11:03 +01:00
3993b47e06Add mail fr translation
rylebrun
2020-01-20 12:03:11 +01:00
42130e0468prevent potentially non-encoded string from getting returned
El RIDO
2020-01-18 10:53:58 +01:00
685c354d0eseveral changes: - added tests for all 4 cases: output to string or into element vs first param contains link or not - cleaned up logic - skip HTML entity encoding only if we can ensure insertion to text node / when output to string, we always encode - DOMpurify sanitizes gopher, ws & wss links, which we previosly had tested for
El RIDO
2020-01-18 10:44:35 +01:00
fa9d3037bafixing logic & indentation
El RIDO
2020-01-18 07:44:32 +01:00
7b87dc3ca9cleanup revert
El RIDO
2020-01-18 07:36:43 +01:00
0d08edbe55Revert "getting rid of htmlEntities (except for tests)" a0740ff79f
El RIDO
2020-01-18 07:30:01 +01:00
cec5cb41d7Partial revert "Do not double-encode HTML in i18n", only revert the removal of required encoding logic - still has to be moved
El RIDO
2020-01-18 07:20:05 +01:00
76eff6a87aRevert "[TEST] Try to disallow vulnerable cases" to remove accidentally committed file and statement that breaks the tests
El RIDO
2020-01-18 07:12:03 +01:00
fd4492f229ensuring that both critical branches get tested
El RIDO
2020-01-18 07:09:56 +01:00
5daba16333Merge branch 'ensag-dev-master'
El RIDO
2020-01-16 05:28:17 +01:00