Age | Commit message (Collapse) | Author | |
---|---|---|---|
2007-03-21 | * Fix a security hole that allowed insertion of unsafe content via the meta | joey | |
plugins's support for inserting html link and meta tags. Now such content is passed through the htmlscrubber like everything else. * Unfortunatly, that means that some valid uses of those tags are no longer usable, and special case methods needed to be added for including stylesheets, and for doing openid delegation. If you use either of these in your wiki, it will need to be modified. See the meta plugin docs for details. | |||
2007-03-21 | the real bug turned out to be in the meta plugin | joey | |
2007-03-21 | oh, this is confusing, it needs escaping in <title>, but not when it's used | joey | |
inline, already escaped there | |||
2007-03-21 | * Fix a few bugs around page titles containing html. The worst of these | joey | |
is an actual security hole as it allows insertion of html into the title element of a page, which is not processed by the htmlscrubber. | |||
2007-03-18 | response | joey | |
2007-03-18 | * Applied a patch from Michał to make the mercurial backend pass --quiet to | joey | |
hg. | |||
2007-03-17 | * Detect the case of two people independently creating the same page at the | joey | |
same time, and let the second person resolve the conflict. | |||
2007-03-17 | * Make ikiwiki -verbose -setup with a setup file that enabled syslog logging | joey | |
output the verbose build log to stdout, rather than to the syslog. | |||
2007-03-17 | * Fix some broken logic in cgi creation of a subpage when a toplevel page | joey | |
with the same name already exists, and generally simplify the edit code. | |||
2007-03-12 | * French update. Closes: #414597 | joey | |
2007-03-11 | * Fix a bug with inlined create page links, including Discussion links on | joey | |
blog post pages. The links will now create pages relative to the page that actually contains the link. | |||
2007-03-11 | releasing version 1.45 | joey | |
2007-03-11 | add postsparkline plugin, providing sparkliney stats goodness for blog | joey | |
posts | |||
2007-03-08 | * Correct a deadlock that could occur in post-commit if the aggregate plugin | joey | |
was enabled and tried to lock the already locked wiki. | |||
2007-03-08 | * The underscore escaping support exposed a bug in edit links: Such links | joey | |
were titlepage escaped in the urls, and then doubly escaped by the CGI when editing. To fix this, I removed the titlepage escaping in the edit urls. * That means that *every edit link* on the wiki is potentially changed. Rebuilding wikis on upgrade to this version therefore necessary; enabled that in postinst. | |||
2007-03-07 | * Add a table plugin, derived from the one written by Victor Moral. | joey | |
2007-03-07 | My fix to support encoded underscores in page titles broke links to pages | joey | |
with underscores in their filenames, since the link code also used titlepage. Create a new linkpage function and have the link code use that instead. | |||
2007-03-07 | * The slash escaping when adding to a blog from the CGI was not working | joey | |
since it ended up being double-escaped. Instead, just remove slashes. * Fix some nasty issues with page name escaping during previewing (introduced in 1.44). | |||
2007-03-07 | typo sparline => sparkline | joey | |
2007-03-07 | * Add a sparline plugin. | joey | |
2007-03-06 | * Add preview parameter to preprocesser calls, use this rather than the | joey | |
previous ugly hack used to avoid writing rss feeds in previews. * Fix the img plugin to avoid overwriting images in previews. Instead it does all the work to make sure the resizing works, and dummys up a resized image using width and height attributes. * Also fixes img preview display, the links were wrong in preview before. | |||
2007-03-06 | * Add titlepage template for inline plugin. | joey | |
2007-03-02 | * Add "template" option to inline plugin to allow for use of customised | joey | |
templates. | |||
2007-03-02 | * Allow for underscores to appear in page titles, if encoded appropriately | joey | |
(__95__) in filenames. Previously, all underscores were replaced with spaces. Thanks, Enrico Zini for noticing that bug. | |||
2007-02-25 | releasing version 1.44 | joey | |
2007-02-24 | * Patch from Ethan to improve behavior if a page is deleted or moved while | joey | |
someone is editing it. * Some cleanup of field setting in the failed edit and conflict handling code. | |||
2007-02-24 | * Correct a bug that could lead to infinite looping after signin in some | joey | |
circumstances. | |||
2007-02-23 | * Patch from HenrikBrixAndersen to fix a broken use of foreach in the | joey | |
search plugin. | |||
2007-02-21 | * French translation update. Closes: #411899 | joey | |
2007-02-21 | * Since the CGI had to drop the wiki lock to avoid deadlocking the | joey | |
commit hook, it was possible for one CGI to race another one and "win" the commit of both their files. This race has been fixed by adding a new commitlock, which when locked by the CGI, disables the commit hook (except for commit mails). The CGI then takes care of the updates the commit hook would have done. | |||
2007-02-21 | * Elegant patch from Ethan to clean up the display of page names in the | joey | |
dropdown when creating a new page. | |||
2007-02-20 | * Smarter detection of no-op changes to po files. | joey | |
2007-02-20 | * perl is broken: print "" || die fails! Work around this insanity. | joey | |
2007-02-20 | test commit | joey | |
2007-02-20 | typo | joey | |
2007-02-20 | build ikiwiki.out and use it to build the wiki, so that NOTAINT can take ↵ | joey | |
effect during the build too if necessary | |||
2007-02-20 | I belive that this patch was from Ben | joey | |
2007-02-20 | * Detect old versions of xgettext and avoid using them. | joey | |
2007-02-20 | * Make img plugin not fail immediately if Image::Magick is not available. | joey | |
This lets ikiwiki not build depend on perlmagic. | |||
2007-02-20 | * Don't error out if estcmd fails, just print a warning message. estcmd is | joey | |
to fragile to let it kill ikiwiki. | |||
2007-02-20 | * Changed calling convention for httmllink slightly. The first three | joey | |
parameters remain the same, but additional options are now passed in using named parameters. * Change plugin interface version to 1.02 to reflect this change. * Add a new anchor option to htmllink. Thanks Ben for the idea. * Support anchors in wikilinks. * Add a "more" plugin based on one contributed by Ben to allow implementing those dreaded "Read more" links in blogs. | |||
2007-02-20 | fix a bug | joey | |
2007-02-20 | * Allow setting NOTAINT=1 when building the wiki to remove taint checking | joey | |
flags, which can be useful on some hosting providers. | |||
2007-02-19 | * Add a openidlogin-bg.gif to wikiicons and have the stylesheet use it for the | joey | |
OpenID login form rather than linking to a remote logo, to avoid various issues. Since there is not yet a license for the actual OpenID logo, this file is currently a blank image. Users who want to can copy http://openid.net/login-bg.gif into their wiki. | |||
2007-02-19 | * Patch to fix validaton of atom feeds by fixing the category tags. | joey | |
2007-02-19 | releasing version 1.43 | joey | |
2007-02-18 | * New domain name for ikiwiki: ikiwiki.info. Update your links. | joey | |
2007-02-18 | * Add explicit module prereqs to Makefile.PL | joey | |
2007-02-17 | * Avoid potential syslog format string issue, although only older versions | joey | |
of perl are vulnerable and it is not known to really be exploitable from ikiwiki. | |||
2007-02-17 | * Updated Czech translation. | joey | |