Wed, 13 Mar 2013 00:18:23 -0400 |
Dan Fuhry |
Compatibility band-aids
default tip
|
changeset |
files
|
Tue, 12 Jul 2011 22:49:29 -0400 |
Dan Fuhry |
Release: 1.0.6pl4
|
changeset |
files
|
Tue, 12 Jul 2011 22:37:21 -0400 |
Dan Fuhry |
Release prep 1.0.6pl4
1.0.6pl4
|
changeset |
files
|
Tue, 12 Jul 2011 22:13:37 -0400 |
Dan Fuhry |
SECURITY: Fixed several XSS vulns reported by Secunia, mostly in Private Messaging. Also backported CSRF protection API from 1.1.x, and protected Private Messaging and logout functions.
|
changeset |
files
|
Tue, 16 Nov 2010 12:44:22 -0500 |
Dan Fuhry |
Retagged current-stable
|
changeset |
files
|
Tue, 16 Nov 2010 12:43:24 -0500 |
Dan Fuhry |
Tagged release: 1.0.6pl3
|
changeset |
files
|
Tue, 16 Nov 2010 12:42:36 -0500 |
Dan Fuhry |
Version bump to 1.0.6pl3 (the real release number)
1.0.6pl3 current-stable
|
changeset |
files
|
Tue, 16 Nov 2010 12:20:50 -0500 |
Dan Fuhry |
Version bump to 1.0.6pl2
|
changeset |
files
|
Tue, 16 Nov 2010 12:19:13 -0500 |
Dan Fuhry |
SECURITY: Fix SQL injection in banlist check
|
changeset |
files
|
Mon, 28 Jun 2010 11:11:09 -0400 |
Dan Fuhry |
Tagged release: 1.0.6pl2
|
changeset |
files
|
Mon, 28 Jun 2010 11:00:51 -0400 |
Dan Fuhry |
SECURITY: Multiple XSS in Special:ChangeStyle. Reported by Mesut Timur of Mavituna Security - thanks!
1.0.6pl2
|
changeset |
files
|
Mon, 28 Dec 2009 16:52:41 -0500 |
Dan |
Fixed a couple non-security sanitizer and editor bugs
|
changeset |
files
|
Mon, 28 Dec 2009 12:19:47 -0500 |
Dan |
Updated current-stable tag
|
changeset |
files
|
Mon, 24 Aug 2009 12:33:36 -0400 |
Dan |
Stable release: Enano CMS 1.0.6pl1
|
changeset |
files
|
Sat, 22 Aug 2009 13:31:09 -0400 |
Dan |
Fixed lockup on unclosed HTML tags in wikiformat_process_block()
1.0.6pl1
|
changeset |
files
|
Sat, 22 Aug 2009 13:30:39 -0400 |
Dan |
Version bumped to v1.0.6pl1
|
changeset |
files
|
Fri, 21 Aug 2009 11:50:22 -0400 |
Dan |
SECURITY: Comments: fix poor sanitization of subject on initial submit
|
changeset |
files
|
Sat, 21 Mar 2009 18:58:41 -0400 |
Dan |
Merging nighthawk and scribus branches
|
changeset |
files
|
Sat, 21 Mar 2009 18:57:34 -0400 |
Dan |
Fixed typo in function call to check for apache 2.2
|
changeset |
files
|
Sun, 18 Jan 2009 18:59:29 -0500 |
Dan |
Added license block to AmigaLink captcha engine and set this engine as the default; clarified licensing situation for this module in licenses/index.html
|
changeset |
files
|
Sun, 18 Jan 2009 18:13:48 -0500 |
Dan |
Updated current-stable tag
|
changeset |
files
|
Sun, 18 Jan 2009 18:11:42 -0500 |
Dan |
Re-merged 1.0.6 tag
|
changeset |
files
|
Sun, 18 Jan 2009 18:10:48 -0500 |
Dan |
Continuation of previous commit in admin CP; EditSidebar: updated strings to be more accurate (thanks again Vadi)
|
changeset |
files
|
Sun, 18 Jan 2009 18:10:21 -0500 |
Dan |
Pageutils: Also delete page-specific ACL rules when deleting a page (thanks Vadi)
|
changeset |
files
|
Sun, 18 Jan 2009 18:09:55 -0500 |
Dan |
SECURITY: Enforce denied history_view on previous revisions
|
changeset |
files
|
Sun, 18 Jan 2009 18:09:08 -0500 |
Dan |
Removed some crufty CSS classes in enano-shared (thanks Vadi)
|
changeset |
files
|
Sat, 17 Jan 2009 12:08:28 -0500 |
Dan |
Stable release: Enano CMS 1.0.6 (Roane)
|
changeset |
files
|
Sat, 17 Jan 2009 11:57:02 -0500 |
Dan |
Updated readme for Roane
1.0.6
|
changeset |
files
|
Sat, 17 Jan 2009 11:51:17 -0500 |
Dan |
Rebrand as v1.0.6 (Roane)
|
changeset |
files
|
Sat, 17 Jan 2009 11:32:52 -0500 |
Dan |
Merging branches
|
changeset |
files
|
Sat, 17 Jan 2009 11:32:18 -0500 |
Dan |
SECURITY: Fix XSS under IE in closing tags (shared sanitizer)
|
changeset |
files
|
Sat, 17 Jan 2009 11:31:45 -0500 |
Dan |
Minor fix to OS detection in install
|
changeset |
files
|
Sat, 29 Nov 2008 22:50:19 -0500 |
Dan |
Plugins can now register their own custom actions for $_GET["do"]. (Backport from unstable)
|
changeset |
files
|
Thu, 27 Nov 2008 10:57:50 -0500 |
Dan |
Stable release: Enano CMS 1.0.5 (Ferrishyn)
|
changeset |
files
|
Thu, 27 Nov 2008 10:38:00 -0500 |
Dan |
Remove some unused/obsolete release tags
1.0.5
|
changeset |
files
|
Thu, 27 Nov 2008 10:26:49 -0500 |
Dan |
[cosmetic only] lowercase release name in installer splash
|
changeset |
files
|
Thu, 27 Nov 2008 10:21:58 -0500 |
Dan |
Made UX for Windows patch more pleasant including external documentation. Breaking change to dynamic download script.
|
changeset |
files
|
Tue, 25 Nov 2008 22:08:00 -0500 |
Dan |
Updated readme for Ferrishyn
|
changeset |
files
|
Fri, 07 Nov 2008 08:56:53 -0500 |
Dan |
Fixed sanitization of full page IDs with accidental parse of escaped hex character in dirtify_page_id(). Thanks Asterion; see http://forum.enanocms.org/post/20/
|
changeset |
files
|
Tue, 16 Sep 2008 08:20:14 -0400 |
Dan |
Fixed IPv6 address match (the one from phpBB3 did not work)
|
changeset |
files
|
Wed, 10 Sep 2008 06:57:54 -0400 |
Dan |
Fixed SQL parse errors caused by conversion to \r\n by some FTP/zip clients (hackish workaround that isn't Enano's fault)
|
changeset |
files
|
Fri, 22 Aug 2008 01:05:42 -0400 |
Dan |
Forgot to update, merging heads from nighthawk and scribus
|
changeset |
files
|
Fri, 22 Aug 2008 01:04:20 -0400 |
Dan |
Redid tags to match version numbers; only latest release will be tagged as such from now on. Hopefully Mercurial registers this.
|
changeset |
files
|
Sun, 17 Aug 2008 08:38:15 -0400 |
Dan |
Upgrade from 1.0.4 -> 1.0.5 now tolerates errors in user -> user_id transition in tags table
|
changeset |
files
|
Tue, 05 Aug 2008 14:02:26 -0400 |
Dan |
Tagging revision 290 (72ecb951b313) as release, it was never done before.
|
changeset |
files
|
Tue, 05 Aug 2008 14:02:18 -0400 |
Dan |
Backported customizable 404 page from unstable (thanks Vadi); made customizable 404 page have a {STANDARD404} variable available to allow embedding the "default" 404 content.
|
changeset |
files
|
Mon, 04 Aug 2008 11:44:20 -0400 |
Dan |
RNG now uses /dev/urandom instead of /dev/random to fix slowdowns during login. Potentially not as secure, but speed problems on some servers were of blocker severity.
|
changeset |
files
|
Thu, 26 Jun 2008 21:00:25 -0400 |
Dan |
Merging scribus and nighthawk branches
|
changeset |
files
|
Thu, 26 Jun 2008 20:59:57 -0400 |
Dan |
Fixed jBox hover event reference to undefined object
|
changeset |
files
|
Thu, 26 Jun 2008 20:59:23 -0400 |
Dan |
Fixed E_STRICT under PHP 5 and 6 (reference operator in instanciation)
|
changeset |
files
|
Thu, 12 Jun 2008 10:58:48 -0400 |
Dan |
Merging in page['visible'] patch from unstable, pages marked as invisible should now be omitted from searches
|
changeset |
files
|
Fri, 09 May 2008 23:33:11 -0400 |
Dan |
Tagging latest revision as rebrand
|
changeset |
files
|
Fri, 09 May 2008 23:32:51 -0400 |
Dan |
Rebrand as 1.0.5 (Ferrishyn)
|
changeset |
files
|
Fri, 09 May 2008 23:32:00 -0400 |
Dan |
Fixed (again) the user -> user_id transition in enano_tags table
|
changeset |
files
|
Sun, 13 Apr 2008 17:03:15 -0400 |
Dan |
Fixed aclScopeSel control in Safari/KHTML
|
changeset |
files
|
Sun, 13 Apr 2008 17:02:42 -0400 |
Dan |
Added enforced warning about PHP4
|
changeset |
files
|
Sun, 16 Mar 2008 21:08:37 -0400 |
Dan |
Filled and updated out the README for 1.0.4
1.0.4
|
changeset |
files
|
Sat, 15 Mar 2008 16:34:28 -0400 |
Dan |
Backporting cron fixes from unstable
|
changeset |
files
|
Sun, 02 Mar 2008 21:34:56 -0500 |
Dan |
Allowed uppercase characters to be used in the database name (thanks Andrew)
|
changeset |
files
|
Sun, 02 Mar 2008 14:52:08 -0500 |
Dan |
Fixed PHP warning in Rijndael RNG code when open_basedir restriction in effect
|
changeset |
files
|
Thu, 28 Feb 2008 12:33:25 -0500 |
Dan |
Tagging latest revision as rebrand
|
changeset |
files
|
Thu, 28 Feb 2008 12:33:01 -0500 |
Dan |
Rebrand as 1.0.4 (Ellyyllon)
|
changeset |
files
|
Fri, 22 Feb 2008 12:46:51 -0500 |
Dan |
Fixed: RenderMan::getPage() failing with access denial when fetching template and view_source results in deny
|
changeset |
files
|
Fri, 01 Feb 2008 22:31:57 -0500 |
Dan |
Made all captcha fields case-insensitive (thanks pkeating)
|
changeset |
files
|
Thu, 31 Jan 2008 22:28:40 -0500 |
Dan |
Merging scribus and nighthawk branches
|
changeset |
files
|
Thu, 31 Jan 2008 22:28:12 -0500 |
Dan |
Fixed jBox menus failing to appear when window scrolled down
|
changeset |
files
|
Thu, 31 Jan 2008 21:52:39 -0500 |
Dan |
Fixed special pages being returned with subpage information inappropriately from $paths->get_pageid_from_url()
|
changeset |
files
|
Mon, 28 Jan 2008 23:07:32 -0500 |
Dan |
Fixed case where HTML comments were getting stripped when opening tag not followed by whitespace (<!--foo--> was stripped, <!-- foo --> was not, neither is stripped now)
|
changeset |
files
|
Mon, 28 Jan 2008 23:06:38 -0500 |
Dan |
Re-applying the revision with the comment fix (bad merge a couple revs back)
|
changeset |
files
|
Sun, 27 Jan 2008 23:43:24 -0500 |
Dan |
Fixed case where HTML comments were getting stripped when opening tag not followed by whitespace (<!--foo--> was stripped, <!-- foo --> was not, neither is stripped now)
|
changeset |
files
|
Wed, 23 Jan 2008 19:36:42 -0500 |
Dan |
Merging in a couple revisions from Nighthawk
|
changeset |
files
|
Wed, 23 Jan 2008 19:36:16 -0500 |
Dan |
Fixed case-sensitive file extensions
|
changeset |
files
|
Sun, 20 Jan 2008 23:18:03 -0500 |
Dan |
Fixed broken regenCaptcha() in Special:Register
|
changeset |
files
|
Sat, 19 Jan 2008 00:47:52 -0500 |
Dan |
Not sure if $taboo was getting sanitized or not. Possibly an SQL injection vulnerability that allows maliciously crafted group names to inject SQL at a later date when the group CP is loaded. Unconfirmed, theoretical fix.
|
changeset |
files
|
Fri, 18 Jan 2008 10:35:33 -0500 |
Dan |
Removed all PostgreSQL support from the installer as per http://enanocms.org/News:1200114064; installer support for Postgres is available in the 1.1 branch now
|
changeset |
files
|
Wed, 09 Jan 2008 22:23:09 -0500 |
Dan |
PHP4 fix: sidebar missing in installer UI: problem was wrongly named constructor for templateIndividualSafe
|
changeset |
files
|
Wed, 09 Jan 2008 22:13:42 -0500 |
Dan |
Fix undefined E_STRICT under PHP 4; add PHP 4 deprecation notice in admin panel
|
changeset |
files
|
Tue, 01 Jan 2008 22:50:49 -0500 |
Dan |
Installer works again now (for MySQL only)
|
changeset |
files
|
Tue, 01 Jan 2008 22:30:53 -0500 |
Dan |
Adding a few stray files and removing the no-longer-needed Creative Commons Attribution 2.0 license (no more libraries under that license are included with Enano); adding hooks pageprocess_render_{head,tail} to be run before and after the final page render, respectively.
|
changeset |
files
|
Mon, 31 Dec 2007 21:16:27 -0500 |
Dan |
Integrating patch for PHP 6.0-dev compatibility
|
changeset |
files
|
Thu, 27 Dec 2007 11:35:00 -0500 |
Dan |
Fixed search indexer causing duplicate keys when two "words" of 64+ characters encountered and first 64 characters are the same (thanks Vadi); attempt to fix onunload confirmation during page editing
|
changeset |
files
|
Sun, 23 Dec 2007 17:58:21 -0500 |
Dan |
Corrected licensing issue on YoungPup's DOM-Drag (it is now public domain -> GPLv2+ for Enano); fixed wrongful access denial under specific circumstances (fetch_page_acl() on nonexistent page + wiki mode)
|
changeset |
files
|
Wed, 19 Dec 2007 17:15:48 -0500 |
Dan |
Fixed: $paths->page_id not set when the page doesn't exist; finally fixed garbled page names for IP addresses
|
changeset |
files
|
Tue, 18 Dec 2007 23:47:33 -0500 |
Dan |
Merging in a few stray changes from the MySQL branch
|
changeset |
files
|
Tue, 18 Dec 2007 23:45:43 -0500 |
Dan |
A number of updates to the graphing code (it should actually work now)
|
changeset |
files
|
Tue, 18 Dec 2007 23:44:55 -0500 |
Dan |
Many changes. Installer with PostgreSQL is broken badly and will be for some time.
|
changeset |
files
|
Sat, 15 Dec 2007 18:11:59 -0500 |
Dan |
Set Content-type on AJAX login key request to application/json to hopefully block ad injection
|
changeset |
files
|
Sat, 15 Dec 2007 18:10:14 -0500 |
Dan |
SURPRISE! Preliminary PostgreSQL support added. The required schema file is not present in this commit and will be included at a later date. No installer support is implemented. Also in this commit: several fixes including <!-- SYSMSG ... --> was broken in template compiler; set fixed width on included images to prevent the thumbnail box from getting huge; added a much more friendly interface to AJAX responses that are invalid JSON
|
changeset |
files
|
Wed, 12 Dec 2007 21:46:28 -0500 |
Dan |
Stable release: Enano CMS 1.0.3 (Dyrad)
1.0.3
|
changeset |
files
|
Wed, 12 Dec 2007 21:37:40 -0500 |
Dan |
Tagging latest revision for rebrand
|
changeset |
files
|
Wed, 12 Dec 2007 21:37:23 -0500 |
Dan |
Rebrand as 1.0.3 (Dyrad)
|
changeset |
files
|
Wed, 12 Dec 2007 21:04:20 -0500 |
Dan |
SECURITY: CRITICAL: Fix SQL injection in admin CP page editor
|
changeset |
files
|
Tue, 11 Dec 2007 19:15:26 -0500 |
Dan |
Fixed focus of AJAX login form fields in IE; removed stale/unused call to $template->makeParserText() in paginate_array(); added hook page_create_request to possibly help control creation of pages of certain namespaces from plugins; fixed critical bug in user CP that prevented plugins from adding custom CP modules
|
changeset |
files
|
Mon, 03 Dec 2007 18:45:37 -0500 |
Dan |
Improved physical pages: they support comments and have their own dedicated namespace now. Still some consistency fixes to make.
|
changeset |
files
|
Mon, 03 Dec 2007 17:36:25 -0500 |
Dan |
Deprecated debugConsole and removed all calls to it. Added a lot of comments to common.php. Added support for "anonymous pages" that are created when the Enano API is loaded from an external script. Fixed missing border-bottom on Type 2 sidebar blocks in Oxygen.
|
changeset |
files
|
Sat, 01 Dec 2007 02:39:49 -0500 |
Dan |
Fixed: sanitation loop on ampersands in encodeAttribute() (this was MediaWiki's fault)
|
changeset |
files
|
Sat, 01 Dec 2007 00:35:42 -0500 |
Dan |
Stable release: Enano CMS 1.0.2 (Coblynau)
1.0.2
|
changeset |
files
|
Sat, 01 Dec 2007 00:35:15 -0500 |
Dan |
Dummy revision to artificially increment build number
|
changeset |
files
|
Sat, 01 Dec 2007 00:34:03 -0500 |
Dan |
Fix missing dependency on search.php in upgrade script
|
changeset |
files
|
Sat, 01 Dec 2007 00:32:58 -0500 |
Dan |
Detagging release due to stupid upgrade fix
|
changeset |
files
|
Fri, 30 Nov 2007 23:09:44 -0500 |
Dan |
Stable release: Enano CMS 1.0.2 (Coblynau)
|
changeset |
files
|
Fri, 30 Nov 2007 22:16:26 -0500 |
Dan |
How could I forget the TRADEMARK SIGN?
|
changeset |
files
|
Fri, 30 Nov 2007 22:13:03 -0500 |
Dan |
Updated artwork with finalized new/revised logo; finalized upgrade schema
|
changeset |
files
|
Wed, 28 Nov 2007 15:24:23 -0500 |
Dan |
Add installer pop-help topic for URL scheme, in response to http://forum.enanocms.org/viewtopic.php?f=5&t=19
|
changeset |
files
|
Wed, 28 Nov 2007 14:47:42 -0500 |
Dan |
Oops, never merged in updates from ee1fc84f12a8 (240)
|
changeset |
files
|
Wed, 28 Nov 2007 14:46:03 -0500 |
Dan |
Hopefully now all calls to escape() are replaced with ajaxEscape() in response to Tomasz's forum post; remove deprecated version of show_category_info() from functions.php
|
changeset |
files
|
Sun, 25 Nov 2007 21:40:42 -0500 |
Dan |
SECURITY: Tighten default allowed file types; make sure search index rebuild is performed on upgrade
|
changeset |
files
|
Sun, 25 Nov 2007 21:18:52 -0500 |
Dan |
Final development freeze for release: 1.0.2 (Coblynau); only critical bugs fixed until GA
|
changeset |
files
|
Sun, 25 Nov 2007 20:24:16 -0500 |
Dan |
Add warning in installer for PHP < 5.2.0; hopefully fix validation of e-mail addresses with dashes
devel-freeze
|
changeset |
files
|
Sun, 25 Nov 2007 19:23:50 -0500 |
Dan |
Nothing special. ksort()ing list of allowed filetypes in the admin panel to make editing the list marginally easier
|
changeset |
files
|
Sun, 25 Nov 2007 19:03:50 -0500 |
Dan |
Added OpenDocument MIME types and extensions; make sql_report page show total time taken for SQL queries
|
changeset |
files
|
Sun, 25 Nov 2007 17:53:03 -0500 |
Dan |
Fixed highlighting in search results; changed search algorithm to give more score for terms found in page title; hopefully (hackishly) fixed login_key_cache getting too long
|
changeset |
files
|
Sat, 24 Nov 2007 13:16:20 -0500 |
Dan |
A couple of minor tweaks to the upgrade schema; tests pending
|
changeset |
files
|
Sat, 24 Nov 2007 02:11:43 -0500 |
Dan |
The template-cache incompatibility bug has finally been isolated, so a function to clear the template cache was added into the upgrade script for 1.0.2
|
changeset |
files
|
Sat, 24 Nov 2007 01:35:12 -0500 |
Dan |
Fixed a few major bugs with the upgrade script and the config file not getting loaded properly due to IN_ENANO_INSTALL
|
changeset |
files
|
Sat, 24 Nov 2007 01:04:30 -0500 |
Dan |
Hopefully once again fix scriptPath detection in dbal.php
|
changeset |
files
|
Sat, 24 Nov 2007 01:02:55 -0500 |
Dan |
Fix missing REPORT_URI variable in template_nodb
|
changeset |
files
|
Sat, 24 Nov 2007 00:53:23 -0500 |
Dan |
Fixed a number of issues with SQL query readability and some undefined index-ish errors; consequently the SQL report feature was added
|
changeset |
files
|
Fri, 23 Nov 2007 17:59:24 -0500 |
Dan |
Changed all urlname/page_id columns to varchar(255) because 63 characters just isn't long enough
|
changeset |
files
|
Thu, 22 Nov 2007 02:10:12 -0500 |
Dan |
Made the username validation regexp in install less picky since it was blacklisting two of the letters in my name. >.<
|
changeset |
files
|
Wed, 21 Nov 2007 22:50:08 -0500 |
Dan |
Feature freezing repository for Coblynau release
|
changeset |
files
|
Wed, 21 Nov 2007 22:49:37 -0500 |
Dan |
Entering feature freeze for Coblynau release
feature-freeze
|
changeset |
files
|
Wed, 21 Nov 2007 21:56:49 -0500 |
Dan |
AJAX login box now briefly shows the message "success" when a login is successful
|
changeset |
files
|
Wed, 21 Nov 2007 20:40:26 -0500 |
Dan |
Deprecated and removed Oxygen css-simple/bleu.css
|
changeset |
files
|
Wed, 21 Nov 2007 20:14:14 -0500 |
Dan |
Re-sync Oxygen and Mint and Oxygen simple with Oxygen main; a couple improvements to the redirect-on-no-config code
|
changeset |
files
|
Wed, 21 Nov 2007 15:18:15 -0500 |
Dan |
Re-add search_results hook and changed column type of search_index.word to varchar(64) in installer schema
|
changeset |
files
|
Wed, 21 Nov 2007 15:13:06 -0500 |
Dan |
Merging in new search algo from Scribus
|
changeset |
files
|
Wed, 21 Nov 2007 15:11:51 -0500 |
Dan |
Minor fix for the password meter in Admin:UserManager
|
changeset |
files
|
Wed, 21 Nov 2007 15:10:57 -0500 |
Dan |
Searching sucks, and Enano's search algorithm was complete bullcrap. So I rewrote it. No, it does not use Google search technology. Like they have a patent for using the Arial font on search result pages anyway.
|
changeset |
files
|
Sun, 18 Nov 2007 18:44:55 -0500 |
Dan |
Major fixes to the ban system - large IP match lists don't slow down the server miserably anymore.
|
changeset |
files
|
Sat, 17 Nov 2007 23:30:23 -0500 |
Dan |
Fixed a couple of renaming issues in the installer
|
changeset |
files
|
Sat, 17 Nov 2007 23:09:12 -0500 |
Dan |
Hopefully managed to put enough hacks in there to make renaming the config file the last step, so if it fails, it can be done manually
|
changeset |
files
|
Sat, 17 Nov 2007 22:56:26 -0500 |
Dan |
Removed stray debug message in installer
|
changeset |
files
|
Sat, 17 Nov 2007 21:09:31 -0500 |
Dan |
Well I'm an idiot - the fulltext index on page_text was missing from a default installation. It didn't break searches but probably slowed them down tremendously. Also set engine to MyISAM on page_text to avoid cryptic error messages from MySQL.
|
changeset |
files
|
Sat, 17 Nov 2007 20:31:01 -0500 |
Dan |
Major improvements in the security of the CAPTCHA system (no SQL injection or anything like that); fixed denied form submission due to _af_acting on form object wrongly switched to true
|
changeset |
files
|
Sat, 17 Nov 2007 18:54:13 -0500 |
Dan |
Javascript validation for install DB info form didn't allow dashes
|
changeset |
files
|
Sat, 17 Nov 2007 18:51:06 -0500 |
Dan |
Changed default content for the main page to something a lot more user-friendly and helpful
|
changeset |
files
|
Sat, 17 Nov 2007 15:40:04 -0500 |
Dan |
Rewrote some security code in PageUtils::savepage to accommodate the ACL system better; there was an issue with non-admin users saving pages on which they have edit rights but wiki mode is turned off
|
changeset |
files
|
Sat, 17 Nov 2007 15:02:08 -0500 |
Dan |
Fixed: secure-cookie option is no longer set if $_SERVER['HTTPS'] is set but == "off"
|
changeset |
files
|
Sat, 17 Nov 2007 14:57:00 -0500 |
Dan |
Patched in dash-in-database-name fix from unstable
|
changeset |
files
|
Thu, 15 Nov 2007 18:02:14 -0500 |
Dan |
Merge in installer fixes from 204 (ba28d43a6b86)
|
changeset |
files
|
Thu, 15 Nov 2007 18:00:39 -0500 |
Dan |
Merging in all changes from revision 185 (90b7a52bea45)
|
changeset |
files
|
Thu, 15 Nov 2007 17:52:53 -0500 |
Dan |
Fixed a few (more) MySQL issues with the installer and dashes in the database name
|
changeset |
files
|
Fri, 09 Nov 2007 23:36:49 -0500 |
Dan |
Database name can now contain dashes (as per requested at http://forum.enanocms.org/viewtopic.php?f=5&t=14); corrected some installer behavior issues with connecting as root and setting up permissions resulting in logs not being flushed, configs not being inserted, and what have you.
|
changeset |
files
|
Fri, 09 Nov 2007 11:14:20 -0500 |
Dan |
Cleaned up some HTML in the installer; corrected some phpDoc syntax errors
|
changeset |
files
|
Mon, 05 Nov 2007 20:00:41 -0500 |
Dan |
Fix installation with MySQL root option
|
changeset |
files
|
Mon, 05 Nov 2007 19:50:40 -0500 |
Dan |
Out with the old, in with the new. Welcome to Enano's new installer framework!
|
changeset |
files
|
Mon, 05 Nov 2007 17:11:37 -0500 |
Dan |
Second try (need config.php to exist before the API can be started, duh)
|
changeset |
files
|
Mon, 05 Nov 2007 17:07:22 -0500 |
Dan |
Renaming config.php and .htaccess to *.new to allow tarbombing an Enano installation with no adverse effects; first attempt, may not work right.
|
changeset |
files
|
Sat, 03 Nov 2007 21:32:26 -0400 |
Dan |
"Fix" e-mail parse bugs in installer
|
changeset |
files
|
Sat, 03 Nov 2007 18:26:24 -0400 |
Dan |
Fix PHP4 compatibility (function def. of password_score)
|
changeset |
files
|
Sat, 03 Nov 2007 14:15:14 -0400 |
Dan |
Alternate scaling using GD is implemented now; images will be scaled with ImageMagick if enabled and working; else, GD will be used. No UI changes to speak of, but a check in the installer will be added in a later commit
|
changeset |
files
|
Fri, 02 Nov 2007 15:38:20 -0400 |
Dan |
Fixed: invalid smartform input to Admin:UserManager when errors present and changing own account; [demo mode] default user can no longer change password
|
changeset |
files
|
Thu, 01 Nov 2007 15:13:27 -0400 |
Dan |
F'ing private message message_read column...
|
changeset |
files
|
Thu, 01 Nov 2007 10:06:19 -0400 |
Dan |
Fixed: radiobutton state in Admin:GeneralConfig not remembered when registration disabled
|
changeset |
files
|
Tue, 23 Oct 2007 12:30:08 -0400 |
Dan |
Slight HTTPS compatibility improvements
|
changeset |
files
|
Sun, 21 Oct 2007 21:26:11 -0400 |
Dan |
Nothing special at all. Unnamed sidebar blocks will show the text <Unnamed> instead of just showing nothing, thus making them renamable
|
changeset |
files
|
Sun, 21 Oct 2007 02:33:25 -0400 |
Dan |
[minor] added bottom margin for enanocms.org fading button
|
changeset |
files
|
Sun, 21 Oct 2007 01:45:00 -0400 |
Dan |
Nothing real special. The AJAX loading icon can be changed using the Javascript variable ajax_load_icon in header.tpl.
|
changeset |
files
|
Sat, 20 Oct 2007 22:21:46 -0400 |
Dan |
Fixing permissions
|
changeset |
files
|
Sat, 20 Oct 2007 22:16:25 -0400 |
Dan |
That merge did NOT go well.
|
changeset |
files
|
Sat, 20 Oct 2007 21:59:27 -0400 |
Dan |
Merging in changes from 9e205056f825
|
changeset |
files
|
Sat, 20 Oct 2007 21:58:56 -0400 |
Dan |
Merging in changes from 9b4279c25d33
|
changeset |
files
|
Sat, 20 Oct 2007 21:51:26 -0400 |
Dan |
Merging in changes from db8a849ad4c9
|
changeset |
files
|
Sat, 20 Oct 2007 21:46:05 -0400 |
Dan |
SECURITY: Fixed possible SQL injection in PageUtils page protection; general cleanup of PageUtils; blocked using Project: prefix for page URL strings
|
changeset |
files
|
Sat, 20 Oct 2007 11:11:40 -0400 |
Dan |
Implemented cron image into Oxygen and St Patty as promised; fixed way-outdated version numbers in plugins
|
changeset |
files
|
Fri, 19 Oct 2007 21:39:33 -0400 |
Dan |
Added a cron framework. Currently tasks will not be run; will implement into templates in next commit
|
changeset |
files
|
Fri, 19 Oct 2007 21:07:54 -0400 |
Dan |
Sidebar blocks can be renamed now (untested except in Fx2)
|
changeset |
files
|
Wed, 17 Oct 2007 21:54:11 -0400 |
Dan |
Automatic set of state on Oxygen sidebar portlets should work now; reimplemented parts of the template parser (again) to workaround some PHP/PCRE issues and add support for parser plugins
|
changeset |
files
|
Mon, 15 Oct 2007 00:11:51 -0400 |
Dan |
SECURITY: Fix failure to log login failure on no row match
|
changeset |
files
|
Sun, 14 Oct 2007 20:47:01 -0400 |
Dan |
Merge between Scribus and Nighthawk
|
changeset |
files
|
Sun, 14 Oct 2007 01:07:07 -0400 |
Dan |
Coupla cheap hacks in St. Patty to make developing more color themes easier
|
changeset |
files
|
Fri, 12 Oct 2007 14:41:51 -0400 |
Dan |
Replaced autocompleting username with a much more efficient algorithm and caching system
|
changeset |
files
|
Tue, 09 Oct 2007 16:14:55 -0400 |
Dan |
Fixed some regular expressions in HTML optimization algorithm; regex page groups can be edited now (oops)
|
changeset |
files
|
Sun, 07 Oct 2007 17:22:25 -0400 |
Dan |
More minor Ux improvements
|
changeset |
files
|
Sun, 07 Oct 2007 16:56:14 -0400 |
Dan |
AJAX login box is now used in userprefs panel; Spry shake effect and general UX on auth fail is smoother now; added ajaxLoginNavTo() JS function
|
changeset |
files
|
Sun, 07 Oct 2007 08:39:40 -0400 |
Dan |
SECURITY: remove debug message in session manager; implemented alternate MediaWiki syntax for template embedding; added Adobe Spry for "shake" effect on unsuccessful login
|
changeset |
files
|
Sat, 06 Oct 2007 20:47:09 -0400 |
Dan |
Minor text change + link to docs for "about keep-alive" help dialog
|
changeset |
files
|
Sat, 06 Oct 2007 20:44:24 -0400 |
Dan |
"Perhaps you were looking for" box now only shows if strlen($q) >= 4
|
changeset |
files
|
Sat, 06 Oct 2007 20:39:18 -0400 |
Dan |
Dummy commit to (hopefully) revert merge of unstable code
|
changeset |
files
|
Sat, 06 Oct 2007 20:36:52 -0400 |
Dan |
Added tag rebrand for changeset d53cc29308f4
|
changeset |
files
|
Sat, 06 Oct 2007 20:36:40 -0400 |
Dan |
Rebrand as 1.1.1; everything should now be bumped to "unstable" status
|
changeset |
files
|
Sat, 06 Oct 2007 14:45:00 -0400 |
Dan |
Fixed external links in tplWikiFormat to use my monster HTTP request regex
|
changeset |
files
|
Sat, 06 Oct 2007 13:18:30 -0400 |
Dan |
Fixed comment stripping in sanitize_html()
|
changeset |
files
|
Sat, 06 Oct 2007 13:01:46 -0400 |
Dan |
Improvements and fixes (hacks?) for HTML sanitization
|
changeset |
files
|
Fri, 05 Oct 2007 01:57:00 -0400 |
Dan |
Major revamps to the template parser. Fixed a few security holes that could allow PHP to be injected in untimely places in TPL code. Improved Ux for XSS attempt in tplWikiFormat. Documented many functions. Backported much cleaner parser from 2.0 branch. Beautified a lot of code in the depths of the template class. Pretty much a small-scale Extreme Makeover.
|
changeset |
files
|
Thu, 04 Oct 2007 08:22:25 -0400 |
Dan |
Fixed text colors on pages when dark system themes are used (bug could be seen using MurrinaNightOrange on an Ubuntu system)
|
changeset |
files
|
Mon, 01 Oct 2007 23:52:25 -0400 |
Dan |
Fixed: wiki mode edit notice should be shown on fallback editor now
|
changeset |
files
|
Mon, 01 Oct 2007 23:48:24 -0400 |
Dan |
Fixed: RenderMan::parse_internal_links() problems with prepending Project: instead of Site_name: to project page alias-namespace links
|
changeset |
files
|
Mon, 01 Oct 2007 22:18:51 -0400 |
Dan |
SECURITY: tightened up validation for rollbacks
|
changeset |
files
|
Mon, 01 Oct 2007 19:29:52 -0400 |
Dan |
Creating pages doesn't insert that crappy javascript hack anymore
|
changeset |
files
|
Sun, 30 Sep 2007 20:20:07 -0400 |
Dan |
Feature add: new page group type: regular expression match (PCRE)
|
changeset |
files
|