Commit graph

10167 commits

Author SHA1 Message Date
Johnny
b4b1188081 삭제한 댓글을 다시 삭제하지 않도록 기록 2022-03-24 19:13:59 +09:00
Johnny
e8f431d691 잘못된 번역 수정 2022-03-22 13:11:21 +09:00
Kijin Sung
4a2b494508 Fix #1885 disable SameSite=None if SSL session is not used 2022-03-22 00:24:54 +09:00
Kijin Sung
46136660a8 Disable password algorithms that are too large for the password field 2022-03-22 00:15:46 +09:00
Kijin Sung
03d456c674 Fix #1904 hide parentheses and comma if addon author info is not available 2022-03-22 00:01:00 +09:00
Kijin Sung
048ba47499 Fix #1891 missing boards in RSS module config page 2022-03-21 21:15:42 +09:00
Kijin Sung
88a69f85e8 Fix PHP warning when profile image doesn't exist 2022-03-21 15:51:15 +09:00
Kijin Sung
418c2b9dfa Fix #1901 always delete thumbnail directory when deleting document or comment 2022-03-21 14:14:37 +09:00
Kijin Sung
933175971e Fix #1903 use common methods to cut notification subject and content more consistently 2022-03-21 14:01:45 +09:00
Kijin Sung
b12f2e5863 Increase column sizes and delete unnecessary restrictions in ncenterlite_notify #1903 2022-03-21 13:43:37 +09:00
Kijin Sung
6d58bb79f5 Fix SecurityViolation when trying to preview a layout 2022-03-18 01:51:42 +09:00
Kijin Sung
5b195ce16e Fix mobile external page path 2022-03-16 14:13:57 +09:00
Kijin Sung
65dd68f9f3 Merge branch 'security/opage' into develop 2022-03-16 10:29:43 +09:00
Kijin Sung
031261469e Fix #1900 incorrect detection of non-member vote status 2022-03-16 10:20:15 +09:00
Kijin Sung
9ce7593820 Fix error when loading external page in document root folder 2022-03-16 00:54:10 +09:00
Kijin Sung
63fa80db82 No need to fail hard if unable to write cache file at the end 2022-03-15 22:48:06 +09:00
Kijin Sung
def6166c8e Clean up duplicate path definitions 2022-03-15 22:39:55 +09:00
Kijin Sung
e8eece5730 Enable PHP execution of external document if template parsing is enabled 2022-03-15 22:31:49 +09:00
Kijin Sung
09abdfa88a Implement safe order of parsing template code and including as PHP 2022-03-15 22:29:07 +09:00
Kijin Sung
d13241ed7c Parse external document as PHP and/or Rhymix template if configured 2022-03-15 21:30:36 +09:00
Kijin Sung
9edd52c328 Add option to control whether to execute external page as PHP and/or Rhymix template 2022-03-15 21:14:55 +09:00
Johnny
0fec44222d 레이아웃에서 알림센터 위젯 사용시 알림 발생할 경우 겹치는 문제 고침 2022-03-15 02:10:04 +09:00
Kijin Sung
0272c5d27a Prevent '_getContent method is not exists' error when page info is improperly cached 2022-03-15 02:00:14 +09:00
Kijin Sung
d4a1be1ef0 Merge duplicate code paths in PageView and PageMobile classes
보안 체크가 한 곳에서 이루어지도록 중복되는 메소드 제거
2022-03-15 01:46:47 +09:00
Kijin Sung
9170d9444c Throw SecurityViolation if anyone tries to exploit RVE-2022-2 with GET/POST vars 2022-03-15 01:36:13 +09:00
Kijin Sung
1ab9a2899b Adjust cache paths to prevent loading old cache 2022-03-15 01:28:59 +09:00
Kijin Sung
0c1ee32073 Disable template compilation in external page content 2022-03-14 02:29:18 +09:00
Kijin Sung
a28a8e29e1 More cleanup 2022-03-14 02:17:16 +09:00
Kijin Sung
063d38487e Clean up some dirty code in page.view.php 2022-03-14 02:11:57 +09:00
Kijin Sung
7b46deb973 Fix #1886 clean up incorrect use of getMemberInfo* methods 2022-03-14 01:40:43 +09:00
Kijin Sung
05ac2ec558 Fix #1889 remove unnecessary form field with typo in name 2022-03-11 01:50:09 +09:00
Kijin Sung
7a20ab3692 Fix #1989 remove old limit of 60 chars for temporary password hash 2022-03-11 01:48:19 +09:00
Kijin Sung
9c07104eb2 Reduce file download key expiration to 5 minutes #1890 2022-03-11 01:45:13 +09:00
dewekk
072fd82dd0
Fix typo
그룹 리스트가  캐시되지 않는 문제 수정
2022-03-10 17:02:19 +09:00
Kijin Sung
f67568d34c Fix #1895 uninitialized variable in poll.controller.php 2022-03-07 12:00:04 +09:00
dewekk
fd3c75a2a2
getExtraVars()의 return을 항상 array()로 일관되게 수정
DocumentModel::getExtraVars에서 항상 array()로 반환하고 있음
2022-02-11 13:23:18 +09:00
Kijin Sung
a840e26b71 Merge branch 'pr/extra-content' into develop 2022-02-09 02:52:26 +09:00
Kijin Sung
f3ac70d3b2 Fix #1874 standalone attribute for device actions 2022-02-08 22:08:23 +09:00
Kijin Sung
fc14a04173 Clean up getMemberMenu() method 2022-02-07 21:43:35 +09:00
Kijin Sung
9e67b5b010 Determine administrator status more accurately #1851 2022-02-07 21:43:14 +09:00
Kijin Sung
4eced6daf0 Merge branch 'develop' into pr/1851 2022-02-07 21:31:45 +09:00
Kijin Sung
024c69390d #1851 보완 2022-02-07 21:31:42 +09:00
Kijin Sung
0970a7d7ad Also separate target actions when auto-inserting CAPTCHA into forms #1815 2022-02-07 21:25:45 +09:00
Kijin Sung
2dc3e5e19b Also add CAPTCHA action conditions to default board skin #1815 2022-02-07 21:07:19 +09:00
Kijin Sung
9aea72b1c3 Separate CAPTCHA actions #1815 2022-02-07 21:04:09 +09:00
Kijin Sung
37aa3dea3b Add target actions to CAPTCHA object #1815 2022-02-07 20:52:54 +09:00
Kijin Sung
dba78c46fe Make CAPTCHA work on act=dispBoardContent 2022-02-07 20:49:10 +09:00
Kijin Sung
ba33e59897 Clean up code concerning multilang document support 2022-02-07 02:22:59 +09:00
Kijin Sung
a30647d988 Fix #1853 move non-BMP character encoding before multilang juggling 2022-02-07 02:15:50 +09:00
Kijin Sung
df1438ea04 Move XSS filtering before multilang juggling 2022-02-07 02:13:59 +09:00