Andreas Fischer
1a3350619f
Merge remote-tracking branch 'phpbb-security/ticket/security-180' into prep-release-3.0.14
...
* phpbb-security/ticket/security-180:
[ticket/security-180] Add tests for redirecting to main URL
[ticket/security-180] Always fail when redirecting to an insecure URL
[ticket/security-180] Make sure that redirect goes to full URL plus slash
[ticket/security-180] Check if redirect URL contains board URL
2015-04-28 21:54:50 +02:00
Joas Schilling
463c62df18
[ticket/13765] Verify SERVER_PROTOCOL has the expected format before using it.
...
PHPBB3-13765
2015-04-25 17:22:10 +02:00
Joas Schilling
ee658bfe7b
[ticket/security-180] Always fail when redirecting to an insecure URL
...
SECURITY-180
2015-04-11 17:08:28 +02:00
Marc Alexander
bca1b96b2e
[ticket/security-180] Make sure that redirect goes to full URL plus slash
...
SECURITY-180
2015-04-11 16:41:20 +02:00
Marc Alexander
eed355b798
[ticket/security-180] Check if redirect URL contains board URL
...
SECURITY-180
2015-04-10 18:10:32 +02:00
Nathaniel Guse
f3d8dfd1e3
[ticket/12202] Can't call htmlspecialchars before checking for quotes
...
PHPBB3-12202
2014-03-09 17:17:33 -05:00
Nathan Guse
f2d3879da4
[ticket/12202] Apply htmlspecialchars to style.cfg data
...
PHPBB3-12202
2014-03-09 15:19:52 -05:00
Joas Schilling
cba28c39ad
[ticket/11873] Do not hash very large passwords in order to safe resources.
...
PHPBB3-11873
2013-09-28 03:12:50 +02:00
Joas Schilling
38dbfc17a7
[ticket/11545] Remove DIRECTORY_SEPARATOR dependency from is_absolute
...
The given path is an absolute path in general, just not on our current system.
PHPBB3-11545
2013-05-16 17:30:23 +02:00
Joas Schilling
06edf15ac3
[ticket/11546] Fix is_absolute() throws E_NOTICE for empty string
...
PHPBB3-11546
2013-05-15 14:05:56 +02:00
gamerchan
d680aac7c5
[ticket/11105] Added spaces between ; and "url=" to adhere to w3c conventions.
...
There was no space between ; and the string "url=". But according to w3c, we
should have atleast one space between them. So, added space characters
accordingly.
PHPBB3-11105
2013-05-12 22:57:40 +02:00
Gaëtan Muller
828d3b6b68
[ticket/11144] Add missing {FORUM_NAME} variable
...
The template variable {FORUM_NAME} was missing from
the login page of a password protected forum
PHPBB3-11144
2013-05-06 21:31:16 +02:00
Andreas Fischer
6bf64d5620
[ticket/7262] Add note about set_config() not updating is_dynamic.
...
PHPBB3-7262
2013-02-24 13:39:48 +01:00
Andreas Fischer
a9037a68c1
[ticket/7262] Add $is_dynamic example to set_config() and set_config_count().
...
The logic is the other way around here in comparison to develop's
phpbb_config_db class, so add examples to make things more clear.
PHPBB3-7262
2013-02-24 13:08:00 +01:00
Andreas Fischer
e8b3e8498d
[ticket/7262] Backport set_config() and set_config_count() docs from develop.
...
PHPBB3-7262
2013-02-24 13:07:37 +01:00
Oleg Pudeyev
65253a3023
[ticket/11227] @return void -> @return null in develop-olympus.
...
PHPBB3-11227
2012-11-29 15:37:12 -05:00
Andreas Fischer
efd6f1df63
[ticket/11192] Update $value parameter description to support other types.
...
PHPBB3-11192
2012-11-16 14:56:15 +01:00
Andreas Fischer
7cbd440e7a
[ticket/11192] Mark negative byte numbers as unsupported.
...
PHPBB3-11192
2012-11-16 14:56:15 +01:00
Andreas Fischer
c699b88bc5
[ticket/11192] Add Tebibyte to get_formatted_filesize().
...
PHPBB3-11192
2012-11-11 14:35:31 +01:00
Oleg Pudeyev
bb09cd9c8e
[ticket/10848] Add phpbb_ prefix.
...
PHPBB3-10848
2012-10-17 15:13:35 -04:00
Oleg Pudeyev
c630480ca1
[ticket/10848] Redirect from adm to installer correctly.
...
PHPBB3-10848
2012-10-17 15:08:09 -04:00
Senky
1f89fc9cb6
[ticket/11112] updating links to phpbb.com to use SSL
...
PHPBB3-11112
2012-10-01 15:38:16 +02:00
David King
7dfe26dd78
[task/functional] Allow tests to bypass certain restrictions with DEBUG_TEST
...
PHPBB3-10758
2012-09-01 10:37:44 -04:00
Andreas Fischer
037b95eccc
[ticket/10162] Increase maximum length of email address TLD from 6 to 63.
...
Increase maximum length of email address top level domains from 6 to 63.
PHPBB3-10162
2012-05-30 21:11:17 +02:00
Andreas Fischer
896b43aa5b
[ticket/10565] Add line breaks to query in order to follow coding guidelines.
...
PHPBB3-10565
2012-05-22 03:11:53 +02:00
Andreas Fischer
efbf14f029
[ticket/10565] update_forum_tracking_info(): Remove unnecessary GROUP BY clause
...
PHPBB3-10565
2012-05-22 03:08:39 +02:00
Fyorl
0ceb77fb99
[ticket/10607] Added 'Powered by' translation string.
...
Added POWERED_BY line to common.php and modified the templates
to use it.
PHPBB3-10607
2012-04-04 11:38:15 +08:00
James King
35d5d527db
[ticket/10606] Fix incorrect hidden fields array name in page_header().
...
Regression from dfb7cc625a
.
PHPBB3-10606
2012-02-09 15:32:35 +01:00
Vjacheslav Trushkin
4aef6ea979
[ticket/10616] Ignore template inheritance that points to self
...
Ignore template inheritance if it points to self
PHPBB3-10616
2012-02-03 16:09:48 +02:00
Oleg Pudeyev
b6999237f4
[ticket/9079] Always log backtrace to error log when logging errors.
...
PHPBB3-9079
2011-12-24 01:24:09 -05:00
Andreas Fischer
d9fef488af
[ticket/9079] Display backtrace on all E_USER_ERROR errors, not only SQL errors
...
PHPBB3-9079
2011-12-24 01:14:25 -05:00
Oleg Pudeyev
37fa5e56f3
Merge remote-tracking branch 'cyberalien/ticket/10399' into develop-olympus
...
* cyberalien/ticket/10399:
[ticket/10399] Correctly encoding template component urls (3.0)
[ticket/10399] Correctly encoding template component urls (3.0)
2011-12-22 15:45:48 -05:00
Vjacheslav Trushkin
dfb7cc625a
[ticket/10319] Missing hidden fields in search form
...
Missing hidden fields in search form (bug added in 3.0.9)
PHPBB3-10319
2011-12-09 01:31:41 +01:00
Vjacheslav Trushkin
74ae7d0339
[ticket/10399] Correctly encoding template component urls (3.0)
...
Correctly encoding template component urls
PHPBB3-10399
2011-12-01 01:46:33 +02:00
rxu
77e00d14a1
[ticket/10497] Fix SQL error when guest visits forum with unread topic
...
Regression from the ticket PHPBB3-9008 fix.
When topic marking was enabled for guests, and a guest visited a forum with
a new topic which is marked unread, the built SQL missed an alias for a
TOPICS_TABLE which resulted in the following error:
Unknown column 't.topic_approved' in 'where clause' [1054]
The fix is to add an alias for the table.
PHPBB3-10497
PHPBB3-9008
2011-11-27 23:11:22 +08:00
Joas Schilling
a7d7083d75
Merge remote-tracking branch 'remotes/rxu/ticket/9008' into develop-olympus
2011-11-18 15:22:01 +01:00
Andreas Fischer
f31da015fc
Merge remote-tracking branch 'nickvergessen/ticket/9066' into develop-olympus
...
* nickvergessen/ticket/9066:
[ticket/9066] Move regex into get_preg_expression function and add tests
[ticket/9066] Disallow some database prefix to prevent same errors and problems
2011-11-14 15:46:50 +01:00
Joas Schilling
3302305cd4
[ticket/9066] Move regex into get_preg_expression function and add tests
...
PHPBB3-9066
2011-11-14 15:10:25 +01:00
Vjacheslav Trushkin
12882084d4
[ticket/10397] Pagination inconsistency fix
...
Fixing inconsistency in code generated by generate_pagination()
PHPBB3-10397
2011-10-04 11:55:25 +03:00
rxu
e0869b39a3
[ticket/9008] Incorrect unread topic tracking for unapproved topics
...
PHPBB3-9008
2011-09-25 10:59:41 +08:00
Andreas Fischer
79ad3a3f32
[ticket/10370] Add function documentation for get_stacktrace().
...
PHPBB3-10370
2011-09-19 17:45:32 +02:00
Andreas Fischer
fc2af460ee
[ticket/10370] Explain that we are not the ones hiding backtrace pieces.
...
Taken from 2db54cf7e809e731e4440377bcc06e2aa05f190d.
PHPBB3-10370
2011-09-19 17:37:16 +02:00
Andreas Fischer
19ce73c884
[ticket/10370] Call htmlspecialchars() after phpbb_filter_root_path().
...
PHPBB3-10370
2011-09-19 17:37:16 +02:00
Andreas Fischer
8a84f42f7d
[ticket/10370] Add require_once to whitelisted functions.
...
PHPBB3-10370
2011-09-19 17:37:15 +02:00
Andreas Fischer
7965387201
[ticket/10370] Use single string instead of an array for arguments.
...
PHPBB3-10370
2011-09-19 17:37:15 +02:00
Andreas Fischer
0df7e5eefa
[ticket/10370] Ease up code checking for arguments of include etc.
...
PHPBB3-10370
2011-09-19 17:37:10 +02:00
Andreas Fischer
12530a763b
[ticket/10370] Use unset() on the first backtrace instead of checking in loop.
...
PHPBB3-10370
2011-09-19 16:58:25 +02:00
Andreas Fischer
9c0f75fd65
[ticket/10370] Use phpbb_filter_root_path() in get_backtrace().
...
PHPBB3-10370
2011-09-19 16:57:09 +02:00
Andreas Fischer
1b390f0b49
[ticket/10369] Replace root path with "[ROOT]" as per IRC.
...
PHPBB3-10369
2011-09-18 23:03:28 +02:00
Andreas Fischer
c8564e6ce9
[ticket/10369] Add warning about paths outside of phpBB root not being filtered
...
PHPBB3-10369
2011-09-18 22:41:02 +02:00