Commit graph

14408 commits

Author SHA1 Message Date
Kijin Sung
f983335833 Add function aliases for URL and path conversion 2016-03-15 13:54:33 +09:00
Kijin Sung
9d2fe0270b Add URL-to-path and clean path conversion 2016-03-15 13:48:07 +09:00
Kijin Sung
86e91d116e Merge pull request #376 from kijin/pr/debug-own-ip
디버그 IP 제한에 localhost는 항상 포함시킴
2016-03-15 11:23:12 +09:00
Kijin Sung
7298adf855 Include visitor IP address in debug output 2016-03-15 10:57:57 +09:00
Kijin Sung
a6a1b25f2d Always allow debugging from localhost 2016-03-15 10:21:40 +09:00
Kijin Sung
f4b35e3717 Fix typo 2016-03-15 10:06:33 +09:00
Kijin Sung
93b045fa17 Fix incorrect use of global constant in Debug class 2016-03-15 09:59:38 +09:00
BJRambo
ae22067208 Merge pull request #365 from bjrambo/pr/taeyeon0309-1
업데이트로그를 활용하여 수정하는 기능 추가.
2016-03-14 22:32:34 +09:00
Kijin Sung
4f015f7bbc Merge pull request #366 from kijin/pr/security-refactor
보안관련 클래스 전반적 정리 및 기능 개선 프로젝트
2016-03-14 22:19:59 +09:00
Kijin Sung
3e728dc6c2 Exclude more attributes from widget and editor component detection 2016-03-14 22:13:19 +09:00
Kijin Sung
cb229c2d66 Clean up namespaces 2016-03-14 21:04:27 +09:00
Kijin Sung
4407af2b0f Use utf8_check to check variables in Security class 2016-03-14 20:54:27 +09:00
Kijin Sung
251b43cd00 Always format media filter prefixes in exactly the same way 2016-03-14 16:07:40 +09:00
Kijin Sung
6944b64643 Add wildcard support and customization method to media filter 2016-03-14 16:02:21 +09:00
Kijin Sung
26138c25da Perform more thorough unit test of HTMLFilter 2016-03-14 15:33:07 +09:00
Kijin Sung
804fd0515b Also apply embed filter to <audio> and <video> tags 2016-03-14 15:32:39 +09:00
Kijin Sung
19ad1d1ac4 Use encryption and URL functions to improve SSO 2016-03-14 13:16:02 +09:00
Kijin Sung
13a67f3496 Implement URL::modifyURL() 2016-03-14 11:51:32 +09:00
BJRambo
aab6b2ad62 Language improvement 2016-03-14 11:12:56 +09:00
BJRambo
39cc333f33 add index is_admin column, and more improving. 2016-03-14 11:10:43 +09:00
BJRambo
e9acd7fe14 Improved problem reverting records didn't write 2016-03-14 10:03:58 +09:00
BJRambo
e37a7adcc7 rename update method. 2016-03-14 09:51:47 +09:00
BJRambo
f15a4c8861 rename method. 2016-03-14 09:44:59 +09:00
BJRambo
9c653d210b added a column for administrators. 2016-03-14 09:41:34 +09:00
Kijin Sung
de0d49b9f3 Add more algorithms to unit test 2016-03-13 23:56:04 +09:00
Kijin Sung
69c5147888 Add phpass and update composer libraries 2016-03-13 23:52:26 +09:00
Kijin Sung
9d6284faad Update all references to old Password class 2016-03-13 23:39:31 +09:00
Kijin Sung
f4dc7e6b21 Move all functionality of old Password class to new Password class 2016-03-13 23:23:48 +09:00
Kijin Sung
642f048f64 Improve encoding and decoding of widget and editor component attributes 2016-03-13 23:01:49 +09:00
Kijin Sung
ddab5ce8d8 Fix unit tests for Security::getRandomNumber() 2016-03-13 22:11:30 +09:00
Kijin Sung
647bc7c112 Implement new Password class and related unit tests 2016-03-13 22:08:56 +09:00
Kijin Sung
90dcc4a2e8 Implement encryption, decryption, and CSPRNG in Security class 2016-03-13 20:40:23 +09:00
Kijin Sung
544170b530 Move IpFilter class to Security namespace 2016-03-13 10:24:52 +09:00
Kijin Sung
0adb13ca30 Add inRanges() and validateRanges() methods to IpFilter class 2016-03-13 10:18:52 +09:00
Kijin Sung
2effbea06f Update all other places to use new MediaFilter class 2016-03-13 09:59:26 +09:00
Kijin Sung
7ecd9230c2 Add MediaFilter class to absorb most EmbedFilter functionality 2016-03-13 09:51:15 +09:00
MinSoo Kim
d1a7dfca7e Merge pull request #369 from misol/color-of-no-color
input type=color can not be empty
2016-03-13 00:42:13 +09:00
MinSoo Kim
f41e3f5907 input type=color can not be empty
https://www.w3.org/TR/2012/WD-html5-20120329/states-of-the-type-attribute.html#color-state-type-color
2016-03-13 00:37:04 +09:00
BJRambo
3272c5a021 Merge branch 'offical/develop' into pr/taeyeon0309-1 2016-03-13 00:20:18 +09:00
Kijin Sung
3d3fa6d7d3 Use HTMLFilter::clean() directly in unit tests 2016-03-13 00:11:47 +09:00
Kijin Sung
1841a8d3cb Merge branch 'pr/codeception' into develop 2016-03-13 00:06:04 +09:00
MinSoo Kim
64ce9520e7 Merge pull request #301 from misol/lets-date
날짜 선택기 개선 작업
2016-03-12 23:50:43 +09:00
Kijin Sung
31080ddc04 Add unit tests for removeEmbeddedMedia() 2016-03-12 23:24:00 +09:00
Kijin Sung
ef6f0c839f Absorb core functionality of stripEmbedTagForAdmin() into HTMLFilter class 2016-03-12 23:17:37 +09:00
Kijin Sung
616d894021 Clean up deprecated functions in common/legacy.php 2016-03-12 22:48:05 +09:00
Kijin Sung
93629d1311 Refactor widget and editor component encoding with preg_replace_callback() 2016-03-12 22:44:09 +09:00
Kijin Sung
6f53a3f068 Check object whitelist in HTMLFilter class, not EmbedFilter class 2016-03-12 22:35:43 +09:00
Kijin Sung
143b65e840 Perform tag filtering after HTMLPurifier is done with the content 2016-03-12 22:18:33 +09:00
Kijin Sung
f577b456ec Absorb removeSrcHack() into HTMLFilter postprocessing method 2016-03-12 22:15:55 +09:00
Kijin Sung
598722b0cd Remove checkXmpTag() and blockWidgetCode() because HTMLPurifier does it better 2016-03-12 21:33:42 +09:00