summaryrefslogtreecommitdiffstats
Commit message (Expand)AuthorAgeFilesLines
* PDF Viewer: Double encode link.Thomas Tanghus2012-06-161-1/+1
* files_imageviewer: Double encode paths. Fixes oc-1016.Thomas Tanghus2012-06-161-1/+1
* fix merge conflictsGeorg Ehrke2012-06-1623-38/+21
* remove a closing php tag in calendarGeorg Ehrke2012-06-161-1/+0
* Check for '\' as well when searching for parent folders, because Windows retu...Michael Gapczynski2012-06-151-1/+1
* Move user import to personal settings. Fix user migration between servers.Tom Needham2012-06-155-129/+90
* fixed xss vulnerabilityBjoern Schiessle2012-06-151-1/+1
* Files: Double encode download links. Fix for oc-1016.Thomas Tanghus2012-06-151-1/+1
* applied merge request #128: fixed some sorting and display issues with galler...Bjoern Schiessle2012-06-152-24/+45
* reverting 8c7fa15aaf98e31646e4306e7819d1d2b725a7e1, differs between OC3 and 4Arthur Schiwon2012-06-141-2/+2
* Remove debug statements.Thomas Tanghus2012-06-142-20/+0
* Merge branch 'stable4' of git://gitorious.org/owncloud/owncloud into stable4Thomas Tanghus2012-06-143-6/+5
|\
| * fixed bug #996: first picture in folder is repeated in the last position beha...Bjoern Schiessle2012-06-141-4/+2
| * prevent xss attacks also if some javascript ends up in the alt-tagBjoern Schiessle2012-06-142-2/+3
* | Contacts: Implement CSRF prevention.Thomas Tanghus2012-06-1418-32/+45
|/
* Merge branch 'stable4' of git://gitorious.org/owncloud/owncloud into stable4Thomas Tanghus2012-06-146-68/+23
|\
| * fixed xss vulnerability in un-packed version of jquery.fancybox and repack itBjoern Schiessle2012-06-142-794/+3
| * debugging output removedBjoern Schiessle2012-06-141-1/+0
| * xss vulnerability fixed for fancybox image viewerBjoern Schiessle2012-06-142-29/+777
| * suppress warning if /dev/urandom is not readable (bug #997)Bjoern Schiessle2012-06-141-1/+1
| * fix another ui bug of calendarGeorg Ehrke2012-06-131-4/+6
| * another ui fixGeorg Ehrke2012-06-131-9/+4
| * fix a ui bug for calendar sharingGeorg Ehrke2012-06-131-1/+1
| * show username of the body who shares in the summaryGeorg Ehrke2012-06-132-7/+9
* | Backport CSRF prevention.Thomas Tanghus2012-06-146-4/+125
|/
* Remove check for encryption.Thomas Tanghus2012-06-131-5/+0
* Allow same host redirects (/somepath).Thomas Tanghus2012-06-131-1/+2
* Redirect HTTP Auth requests to REQUEST_URI. Partial fix for http://bugs.owncl...Thomas Tanghus2012-06-131-0/+1
* urlencode link fort password reset (bug #970)Bjoern Schiessle2012-06-131-1/+1
* Fix incorrect creation of filesystem for user@group in data folder during sharesMichael Gapczynski2012-06-121-4/+4
* increase version of calendar app to force db upgradeGeorg Ehrke2012-06-121-1/+1
* increase possible size of uri in database - fix oc-140Georg Ehrke2012-06-121-2/+2
* Label the delete operation "unshare" for files in the "Shared" folder to reduceBjoern Schiessle2012-06-121-1/+5
* block slashes only for new files and new folders but not for file upload from...Bjoern Schiessle2012-06-121-1/+1
* Contacts: Final (for now) fix to encoding probs on import.Thomas Tanghus2012-06-121-1/+2
* Merge branch 'stable4' of git://gitorious.org/owncloud/owncloud into stable4Arthur Schiwon2012-06-127-59/+90
|\
| * committed patch (bug #967) to add missing translations for file actionsBjoern Schiessle2012-06-121-2/+2
| * applied patch provided by bug #966 to fix broken user specific quota settingsBjoern Schiessle2012-06-123-48/+76
| * Add .vimrc to .gitignore.Thomas Tanghus2012-06-111-0/+3
| * Fix copy/paste error.Thomas Tanghus2012-06-111-2/+2
| * Fix js for missing address fields.Thomas Tanghus2012-06-111-6/+6
| * Contacts: Fix encoding errors, import errors, developer headache, paint cute ...Thomas Tanghus2012-06-111-1/+1
* | LDAP: offer config option for Group Display Name attributeArthur Schiwon2012-06-112-1/+3
|/
* Contacts: Fix NOTE also on add, not just save.Thomas Tanghus2012-06-111-2/+11
* Merge branch 'stable4' of git://gitorious.org/owncloud/owncloud into stable4Arthur Schiwon2012-06-1113-16/+23
|\
| * Merge branch 'stable4' of gitorious.org:owncloud/owncloud into stable4Lukas Reschke2012-06-112-10/+12
| |\
| * | Sanitzing user inputLukas Reschke2012-06-111-1/+1
| * | Using POST instead of GET.Lukas Reschke2012-06-119-11/+18
| * | Sanitize user inputLukas Reschke2012-06-111-1/+1
| * | Sanitizing user inputLukas Reschke2012-06-112-3/+3