Skip to content
Snippets Groups Projects
  1. May 15, 2018
    • JediKev's avatar
      issue: Prevent Click Jacking · 8c3f7a5f
      JediKev authored
      This addresses a vulnerability where there was no `X-Frame-Options` header
      which could potentially allow click jacking. This adds the
      `X-Frame-Options: SAMEORIGIN` header so it will remove any chance of click
      jacking. According to Mozilla Developer Docs:
      ```
      SAMEORIGIN
      The page can only be displayed in a frame on the same origin as the page
      itself.
      ```
      8c3f7a5f
  2. Nov 01, 2016
  3. Dec 18, 2015
  4. Aug 20, 2015
  5. Jul 21, 2015
  6. Jul 08, 2015
  7. May 13, 2015
  8. Apr 07, 2015
  9. Mar 31, 2015
  10. Feb 13, 2015
  11. Feb 06, 2015
  12. Jan 30, 2015
  13. Dec 08, 2014
  14. Sep 01, 2014
  15. Aug 29, 2014
  16. Aug 14, 2014
  17. Aug 06, 2014
  18. Jul 23, 2014
  19. Jul 08, 2014
  20. Jul 07, 2014
  21. Jul 02, 2014
  22. Jun 30, 2014
  23. Jun 25, 2014
    • Thane de Loth's avatar
      Adopt translation work from Thane de Loth · 7042e6c8
      Thane de Loth authored
      Multilanguage Support via gettext
      
      - added gettext encapsulations to all texts i thought necessary
      - added fallback function for the case that the gettext extension isn't loaded
      - added browser language detection
      - added gettext to the list of optional extensions in setup
      - rewritten some of the texts to use sprintf instead of appending strings
      - added german translation file
      - removed mark_overdue-confirm from cannedresponses.inc.php
      
      extend multi language support and a fex fixes
      
      - Better detection of translation files
      - Added functionality to redirect language codes (see redirecting
      language codes)
      - Ticket Status can be translated
      - The Datepicker can be translated
      - Extended functionality of 'testlang.php' to show what language code is
      used to translate
      
      Forgotten to apply a patch from RC5 to RC6
      
      - Forgotten to change $var to $vars in line 380 of class.mailfetch.php
      - Removed unneeded comment
      
      Added php_gettext as primary translation engine
      
      - Added php_gettext support (thanks to Danilo Segan and Steven
      Armstrong)
      - php_gettext is now the primary translation engine
      - Extended language detection functionality
      
      Add error/misconfiguration checks and fix undefined variables
      7042e6c8
  24. May 23, 2014
  25. May 16, 2014
  26. May 02, 2014
  27. Apr 28, 2014
  28. Apr 23, 2014
  29. Apr 21, 2014
  30. Apr 15, 2014
Loading