Checkout Tools
  • last updated a few seconds ago
Constraints
Constraints: committers
 
Constraints: files
Constraints: dates

1. Bug #0000159: Prevent of Execution of System Files of files other, then "index.php" and "admin/index.php"

2. Adding DEFINED FULL_PATH security-check

INP-129

INP-183

  1. … 237 more files in changeset.

Fixes #0000221: Final Changes in "Browse Modes"

INP-181

    • -65
    • +144
    ./languages/phrases_cache.php
  1. … 22 more files in changeset.

Fixes #0000227: Password required mark logic change

INP-187

  1. … 4 more files in changeset.

1. Fixes #0000098: Redo Mod-Rewrite for Better Flexibility.

2. Fixes "kDBItem::Clear" method, so it's now really sets $id given to it.

INP-83

  1. … 3 more files in changeset.

1. Bug #0000182: In-Portal Security Checks and Updates.

2. Minor paths Fix for debugger_responce.php

INP-146

    • -1
    • +1
    ./utility/debugger/debugger_responce.php

1. Bug #0000182: In-Portal Security Checks and Updates.

2. Fix for TemplateParser class for In-Portal < v 4.3.9

INP-146

Fixes #0000224: Password validation logic change

INP-184

1. Bug #0000182: In-Portal Security Checks and Updates (part 1).

2. No path in includes inside site configs, for fckeditor.php.

3. "download_license" step removed from install step presets.

INP-146

    • -0
    • +6
    ./utility/debugger/debugger_responce.php
  1. … 24 more files in changeset.

Fixes #0000212: Additional SELECT SQL when loading Tab Counter in Admin Catalog

INP-174

  1. … 3 more files in changeset.

1. Fixes #0000218: Error reporting in configuration sections is broken.

2. Implemented fully-featured configuration value validation during saving (just put serialized field option array into "Validation" field in ConfigurationAdmin table for given variable). Even "required" check works. Test on "SessionTimeout" variable.

INP-179

  1. … 8 more files in changeset.

1. Fixes #0000159: Prevent of Execution of System Files of files other, then "index.php" and "admin/index.php"

2. Added exclusion for Debugger

INP-129

    • -0
    • +1
    ./utility/debugger/.htaccess

1. Bug #0000159: Prevent of Execution of System Files of files other, then "index.php" and "admin/index.php"

2. Adding .htaccess

INP-129

  1. … 2 more files in changeset.

Fixes #0000205: Ability to Hide any of "Browse Modes" from loaded Site Configs

INP-168

  1. … 3 more files in changeset.

Fixes #0000200: Improvements to Email Events - Functionality and Interfaces

INP-162

  1. … 12 more files in changeset.

1. Fixes #0000208: Move "Time-zones" and "Session Expiration" settings to Website->General.

2. Don't try to send missing file in "kDBEventHandler::OnViewFile" event.

INP-171

  1. … 2 more files in changeset.

Fixes #0000169: Template markup error message in Internet Explorer 8

INP-137

1. Fixes #0000189: Changes in Options for "Section Template" field for Sections.

2. Implemented not exactly the way as planned, because administrator can change "Parent Section" from "Content" (top category, where "Inherit from Parent" option in "Template" field not available) to it's child section, where this option should be available. As a result I always show "Inherit from Parent" option, but when administrator manually selects "Inherit from Parent" in "Template" field and "Content" in "Parent Section" field and tries to save changes, I show him an error about that.

INP-152

  1. … 8 more files in changeset.

1. Fixes #0000209: Escape and Limit all Environment variables passed in GET.

2. We already escape anything, that goes from request to database queries to prevent sql injections.

3. Add check for "../" (prevents going outside In-Portal directory) and for whitespace like symbols (makes sure, that ".tpl" is always added at the end of template name) in template names.

INP-172

Fixes #0000188: Find and remove all places where reffered to "/kernel" folder

INP-151

    • -1
    • +1
    ./utility/formatters/upload_formatter.php
  1. … 9 more files in changeset.

1. Fixes #0000180: Add "Security Check" Step to Installation process.

2. Iframe in thickbox windows was 1px lower, then window as the result vertical scrollbar was overlapping with bottom border of window.

3. Bug #0000073: In-Portal CMS No Color in Header (missed SQL data for skins).

4. ADMIN_DIRECTORY constant converted from safeDefine to define.

INP-61

INP-144

  1. … 8 more files in changeset.

1. Fixes #0000140: Precautions when processing "SectionAdjustments" unit config option.

2. Fixed 2 warnings during section cache rebuild (related to processing of parent section of "in-portal:root" section).

INP-117

  1. … 1 more file in changeset.

Fixes #0000164: Problems when giving ids directly "kDBEventHandler::StoreSelectedIDs" method (using second parameter)

INP-134

1. Fixes #0000171: Automatic Images Folder Cleaning.

2. Errors about array accessing problems from glob function during config cache rebuild.

3. Ability to add agents disabled by default.

INP-139

  1. … 3 more files in changeset.

Fixes #0000174: Tag PredefinedSearchOptions should use GetList instead of GetObject

INP-140

Fixes #0000027: Email validation during user registration

INP-19

  1. … 8 more files in changeset.

Releasing version 'branches/5.0.x' (copy from 'branches/RC')

  1. … 1928 more files in changeset.