- Apr 22, 2012
-
-
Anika Henke authored
-
- Apr 20, 2012
-
-
Andreas Gohr authored
-
- Apr 19, 2012
-
-
Andreas Gohr authored
The error message when a non-existant editor was tried to load wasn't escaped correctly, allowing to introduce arbitrary JavaScript to the output, leading to a XSS vulnerability. Note: the reported second XCRF vulnerability is the same bug, the xploit code simply uses JavaScript to extract a valid CSRF token from the site
-
- Apr 09, 2012
-
-
Anika Henke authored
Attention: Template authors need to adjust their CSS! Original structure: div.search_result > a.wikilink1 > span.search_cnt br div.search_snippet New structure: dl.search_results > dt > a.wikilink1 dd
-
Anika Henke authored
Attention: Template authors need to adjust their CSS! Original structure: div.toc > div#toc__header.tocheader.toctoggle > span#toc__toggle.toc_close|toc_open > span div#toc__inside > ul.toc > li.level1 > div.li > span.li > a.toc New structure: div#dw__toc.open|close > h3 > strong > span ul.toc > li.toc > div.li > a
-
- Apr 08, 2012
-
-
Anika Henke authored
-
- Mar 16, 2012
-
-
Andreas Gohr authored
-
- Feb 17, 2012
-
-
Andreas Gohr authored
-
- Feb 04, 2012
-
-
Anika Henke authored
-
- Oct 31, 2011
-
-
Andreas Gohr authored
When autopasswd is disabled, the resend password option now asks for a new password instead of autogenerating a new one and sending it by mail. Note to translators: the wording for btn_resendpwd and resendpwd changed to be more universal. English and German language files where updated - other languages need to be adjusted. Conflicts: inc/lang/en/lang.php
-
- Oct 17, 2011
-
-
Hakan Sandell authored
-
- Oct 15, 2011
-
-
Hakan Sandell authored
-
- Sep 18, 2011
-
-
Anika Henke authored
-
Anika Henke authored
-
- Sep 17, 2011
-
-
Adrian Lang authored
-
- Aug 24, 2011
-
-
Kate Arzamastseva authored
-
- Aug 19, 2011
-
-
Kate Arzamastseva authored
-
Adrian Lang authored
-
- Aug 15, 2011
-
-
Kate Arzamastseva authored
-
- Aug 03, 2011
-
-
Kate Arzamastseva authored
-
- Aug 02, 2011
-
-
Kate Arzamastseva authored
-
- Aug 01, 2011
-
-
Anika Henke authored
-
- Jul 31, 2011
-
-
Kate Arzamastseva authored
-
- Jul 30, 2011
-
-
Kate Arzamastseva authored
-
- Jul 25, 2011
-
-
Kate Arzamastseva authored
-
- Jul 19, 2011
-
-
Kate Arzamastseva authored
-
- Jul 11, 2011
-
-
Adrian Lang authored
* Fix selector in subtree loading callback * Remove HTML inconsistencies between AJAX and plain PHP lists * Unify icon and CSS class switching in dw_tree and dw_mediamanager
-
- Jul 09, 2011
-
-
Kate Arzamastseva authored
-
- Jul 08, 2011
-
-
Kate Arzamastseva authored
-
- Jul 04, 2011
-
-
Kate Arzamastseva authored
-
- Jun 20, 2011
-
-
Kate Arzamastseva authored
-
- Jun 14, 2011
-
-
Kate Arzamastseva authored
-
- Jun 13, 2011
-
-
Kate Arzamastseva authored
-
- Jun 10, 2011
-
-
Kate Arzamastseva authored
-
- Jun 05, 2011
-
-
Kate Arzamastseva authored
-
Kate Arzamastseva authored
-
- Apr 17, 2011
-
-
Anika Henke authored
-
Anika Henke authored
-
- Apr 16, 2011
-
-
Anika Henke authored
don't use form_makeTag() for blank.gif as empty attributes are not passed on (which resulted in a missing alt attribute)
-
Anika Henke authored
-