Andy Miller
2fed02affa
Prepare for release
2019-03-21 14:16:10 -06:00
Andy Miller
fcbd819f48
Added deferred twig extension
2019-03-20 16:31:19 -06:00
Andy Miller
a4801ead6a
Fix for streams with EXIF
2019-03-20 13:52:04 -06:00
Andy Miller
28db98c95d
Prepare for release
2019-03-20 12:04:26 -06:00
Andy Miller
9d8fc4a065
New onPageContent() event
2019-03-20 11:16:18 -06:00
Matias Griese
b4a4b60871
Fixed phpdoc generation
2019-03-13 16:00:00 +02:00
Kirsten Roschanski
c80a3f5568
Update User.php ( #2403 )
2019-03-12 14:15:03 -06:00
Andy Miller
5b34a9bfc4
prepare for release
2019-02-07 16:04:31 -07:00
Matias Griese
2fa5021a0c
Improved User unserialize to not to break the object if serialized data is not what expected
2019-02-01 09:04:01 +02:00
Hamilton Turner
b91574e5c2
Remove unused parameter ( #2357 )
2019-01-30 13:42:34 -07:00
Andy Miller
fbd3bbdbf9
Prepare for release
2019-01-25 14:38:31 -07:00
Raphaël Droz
f1363877d8
preserve accents in fields containing Twig expr. using unicode ( #2279 )
...
When a fields contain accentuated characters, reduce the risk of messing with it by passing unicode characters unescaped.
Twig will deal with them. And fewer backslash-escaping problems will arise.
2019-01-09 13:05:32 -07:00
Basile Trujillo [L0gIn]
e8825beae5
Added support for AWS Cloudfront forwarded scheme header ( #2297 )
...
AWS Cloudfront does not provide HTTP_X_FORWARDED_PROTO header but provide a HTTP_CLOUDFRONT_FORWARDED_PROTO header instead
2019-01-09 13:04:32 -07:00
ranitham
394dfad566
Small bugfix for responsive images ( #2300 )
...
* Replace spaces in image filename with %20 to avoid parse errors with the srcset attribute
* Update system/src/Grav/Common/Page/Medium/ImageMedium.php
Co-Authored-By: ranitham <ranitha.m@gmail.com >
2019-01-07 21:34:00 -07:00
Andy Miller
54a177279f
prepare for release
2018-12-14 15:07:12 -07:00
Matias Griese
708c79cef8
Improved user serialization to use less memory in the session
2018-11-27 10:15:55 +02:00
Stephan Diehl
b6c582ad3a
Update InitializeProcessor.php ( #2268 )
...
fix redirect_trailing_slash in a multi language page
2018-11-23 23:01:47 -07:00
Andy Miller
377751416b
Prepare for release
2018-11-12 15:56:04 -07:00
Aaron Dalton
bf86b5a924
Propagate error code if between 400 and 600 for production sites (errors:display = false or -1) ( #2181 )
2018-11-11 21:22:47 -07:00
Emil Hesslow
d0b34d114d
Register theme prefixes as namespaces in twig ( #2210 )
2018-11-11 21:18:57 -07:00
Makara Sok
b9dc2baef1
Remove hardcoded 302 when redirecting trailing slash ( #2155 )
...
When `system.pages.redirect_trailing_slash` is enabled, it's always a 302 even though `redirect_default_code` is set to something else.
By removing it, it works as intended.
2018-11-09 22:30:35 -07:00
Andy Miller
c56d7ac793
prepare for release
2018-11-05 15:41:54 -07:00
Scott Hamper
e7d660149e
Fixed markdown parsing for telephone links ( #2235 )
...
Telephone links use the `+` character to specify a country code, but Grav was replacing the `+` with a space character.
2018-11-03 14:57:02 -06:00
Matias Griese
d8a627898e
Fixed fatal error if calling $session->invalidate() when there's no active session
2018-10-25 16:29:53 +03:00
MattAppleton
a3caa13c23
fix .webm typo ( #2220 )
...
Media type should be 'video' not file!
2018-10-16 20:18:32 -06:00
Andy Miller
7b5a1b2c14
Prepare for release
2018-10-08 17:41:18 -06:00
Andy Miller
ad1bbba0b3
Added configurable dangerous upload extensions
2018-10-06 16:35:54 -06:00
Matias Griese
b6b5e329aa
Added Utils::getMimeByFilename(), Utils::getMimeByLocalFile() and Utils::checkFilename() methods
2018-10-04 14:44:04 +03:00
Andy Miller
f0e33dc242
prepare for release
2018-10-01 15:32:29 -06:00
Andy Miller
44dbcdf2b1
Added new XSS Twig function
2018-10-01 14:07:14 -06:00
Andy Miller
3216442946
Merge branch 'develop' of github.com:getgrav/grav into develop
2018-10-01 12:34:14 -06:00
Andy Miller
9d4471b196
Security refactor
2018-10-01 12:34:09 -06:00
Matias Griese
c48107acd9
Merge remote-tracking branch 'origin/develop' into develop
2018-10-01 21:02:11 +03:00
Matias Griese
4671518409
Fixed missing slug in Page::init()
2018-10-01 21:02:04 +03:00
Andy Miller
41bf943f49
get raw content for all pages
2018-09-30 21:11:46 -06:00
Andy Miller
fb98ca7b19
Added a new Security CLI command
2018-09-30 18:34:53 -06:00
Andy Miller
451ec49d9c
refactor
2018-09-30 17:45:45 -06:00
Andy Miller
1709eb038c
Fix for array method
2018-09-30 15:24:01 -06:00
Andy Miller
e69d6cefee
ordering
2018-09-30 00:10:44 -06:00
Andy Miller
7abe01ed8c
vertical style
2018-09-30 00:10:04 -06:00
Andy Miller
17a371d86a
lang stuff
2018-09-29 21:37:01 -06:00
Andy Miller
5b787d56e6
Add default XSS security config
2018-09-29 21:24:58 -06:00
Andy Miller
33d98114ba
XSS enhancements
2018-09-29 21:24:21 -06:00
Matias Griese
ca8805683d
Added onHttpPostFilter event to allow plugins to globally clean up XSS in the forms and tasks
2018-09-19 12:09:32 +03:00
Matias Griese
8295bd8243
Added Utils::detectXssFromArray() and Utils::detectXss() methods
2018-09-19 12:06:49 +03:00
Matias Griese
da95d1bb1e
Session expires in 30 mins independent from config settings ( https://github.com/getgrav/grav-plugin-login/issues/178 )
2018-09-13 17:31:11 +03:00
Matias Griese
bbc4fd6c79
Allow twig tags {% script %}, {% style %} and {% switch %} to be placed outside of blocks
2018-09-07 13:13:33 +03:00
Matias Griese
732ff8ecab
Fixed nicetime() twig function
2018-09-07 10:36:56 +03:00
Matias Griese
41b7aadbda
Fixed duplicate language strings (Yaml 4.1)
2018-09-06 12:34:50 +03:00
Matias Griese
834d6938db
Fixed is_safe twig filter option
2018-09-06 10:28:40 +03:00