aboutsummaryrefslogtreecommitdiffstats
Commit message (Expand)AuthorAgeFilesLines
* Merge remote-tracking branch 'upstream/dev' into devmjfriaza2022-05-172799-136343/+253102
|\
| * update changelogMario Vavti2022-03-291-1/+1
| * Merge branch 'fix-changelog' into 'dev'Mario2022-03-271-2/+3
| |\
| | * Update changelog with missing fix and cveHarald Eilertsen2022-03-251-2/+3
| |/
| * changelogMario2022-03-251-0/+38
| * bump dev versionMario2022-03-231-1/+1
| * stringsMario2022-03-232-860/+933
| * make sure to set comments_closed to the created date if nocomment is setMario Vavti2022-03-231-1/+1
| * streamline comment policy with downstreamMario2022-03-232-33/+5
| * Merge branch 'security-fixes-lfi-xss-open-redirect' into 'dev'Mario2022-03-2315-50/+122
| |\
| | * CVE-2022-27256: Open redirect via rpath query param.Harald Eilertsen2022-03-2010-27/+27
| | * Add function is_local_url() to check if url is local.Harald Eilertsen2022-03-202-0/+41
| | * CVE-2022-27258: XSS via rpath query param.Harald Eilertsen2022-03-2010-20/+20
| | * Add helper to escape URLs.Harald Eilertsen2022-03-202-0/+32
| | * CVE-2022-27257: LFI in Redbasic theme.Harald Eilertsen2022-03-201-3/+2
| * | Merge branch 'dev' of https://framagit.org/hubzilla/core into devMario2022-03-203-5/+1911
| |\ \
| | * \ Merge branch 'volse-redbasic-dark' into 'dev'Mario2022-03-203-5/+1911
| | |\ \ | | | |/ | | |/|
| | | * redbasic/dark: Tune button colours a bit.Harald Eilertsen2022-03-131-5/+5
| | | * redbasic/dark: Use schema colour for dropdown itemHarald Eilertsen2022-03-131-0/+4
| | | * redbasic/dark: Use bootstrap-nightfall for dark schema.Harald Eilertsen2022-03-132-0/+1902
| * | | add the signing algo to zotinfo, and store it in import_xchan() if presentMario2022-03-202-0/+9
| |/ /
| * | Merge branch 'volse-fix-stylesheet-root-path' into 'dev'Mario2022-03-172-42/+7
| |\ \
| | * | Trim trailing & from query_string.Harald Eilertsen2022-03-131-0/+5
| | |/
| | * Remove now unused function script_path.Harald Eilertsen2022-03-031-38/+0
| | * Use correct base url for stylesheets and js.Harald Eilertsen2022-03-031-4/+2
| * | make sure an announce does not overwrite an item we already have and make sur...Mario2022-03-111-0/+7
| * | whitespaceMario2022-03-101-35/+35
| * | support for hs2019Mario2022-03-102-16/+61
| * | move attachments to the topMario2022-03-051-5/+5
| * | remove loggingMario2022-03-041-1/+1
| * | event fixesMario2022-03-042-6/+10
| * | bump versionMario2022-03-041-1/+1
| * | fix regressionMario2022-03-041-2/+2
| * | streamline event activity handlingMario2022-03-042-61/+208
| * | bump versionMario2022-03-041-1/+1
| * | port some ap quirks from the addonMario2022-03-041-15/+50
| * | more work on enhanced content filtersMario2022-03-032-3/+39
| |/
| * fix duplicate ids in login form and move login/register buttons into the hamb...Mario2022-03-036-47/+57
| * collect the accept headers in an arrayMario2022-03-031-2/+6
| * Merge branch 'dev' of https://framagit.org/hubzilla/core into devMario2022-03-021-2/+2
| |\
| | * Merge branch 't0rum-master-patch-68993' into 'master'Mario2022-03-011-2/+2
| * | composer updatesMario2022-03-0210-132/+145
| * | port some peertube tweeks from pubcrawl to lib/activityMario2022-03-021-20/+47
| |/
| * fix feedutils regressionMario2022-03-011-4/+4
| * enhanced content filtersMario2022-03-018-90/+285
| * make gprobe deal with URLs, fix issue in get_actor_protocols and fix missing ...Mario2022-02-283-15/+41
| * missing content region for directoryMario2022-02-231-0/+3
| * widget descriptions and add content region to all pdl files for convenienceMario2022-02-2389-91/+345
| * bump versionMario2022-02-211-1/+1
| * this was required for old style forum posts only and should not be needed any...Mario2022-02-211-9/+11