summaryrefslogtreecommitdiff
path: root/doc/security.mdwn
AgeCommit message (Expand)Author
2010-03-12htmlscrubber: Security fix: In data:image/* uris, only allow a few whiteliste...Joey Hess
2009-08-30CVEJoey Hess
2009-08-30still mispelling josh's name..Joey Hess
2009-08-30teximg security problemJoey Hess
2008-12-31Fix version.JoshTriplett
2008-11-12note fix versionsJoey Hess
2008-11-12check for invalid utf-8, and toss it back to avoid crashesJoey Hess
2008-07-26remove ikiwiki.setupJoey Hess
2008-07-21Migrate everything else via prefix_directivesSimon McVittie
2008-07-02updateJoey Hess
2008-05-31cve idJoey Hess
2008-05-30fix linkJoey Hess
2008-05-30more on the security holeJoey Hess
2008-05-29documentation for use of hashed passwordsJoey Hess
2008-04-20add CVE linkJoey Hess
2008-04-10releasing version 2.42Joey Hess
2008-04-10Fix CSRF attacks against the preferences and edit forms. Closes: #475445Joey Hess
2008-04-10fix what I think is a typoJoey Hess
2008-02-20add CVE idsJoey Hess
2008-02-10some updates about the recent holeJoey Hess
2008-02-10a few thoughts on data: securityJoey Hess
2008-02-10document security fixJoey Hess
2007-12-22typoJoey Hess
2007-11-27moreJoey Hess
2007-11-27remove svn-ismsJoey Hess
2007-11-27add some documentation about how to safely allow multiple committers to anJoey Hess
2007-11-26releasing version 2.14Joey Hess
2007-03-21* Fix a security hole that allowed insertion of unsafe content via the metajoey
2007-03-21* Fix a few bugs around page titles containing html. The worst of thesejoey
2007-02-14document recent security holejoey
2006-12-27web commit by JeremyReed: typo fixjoey
2006-11-21web commit by http://id.kurokatta.org/david: Copyedit.joey
2006-10-22some notes about the security (or lack thereof) of pluginsjoey
2006-08-28* Add toc (table of contents) plugin.joey
2006-08-28updatejoey
2006-08-27* Patch from James Westby to add a --sslcookie switch, which forcesjoey
2006-08-23* Allow preprocessor directives to contain python-like triple-quotedjoey
2006-08-18updatejoey
2006-08-05misc changesjoey
2006-08-02releasing version 1.13joey
2006-07-30security notejoey
2006-07-02web commit by ThomasSchwinge: Typo fixes.www-data
2006-07-02web commit by joeywww-data
2006-07-02* Parse svn log as xml for improved utf8 and security. Note that this makesjoey
2006-06-01* More security review.joey
2006-05-26typojoey
2006-05-05* Removed --sanitize and --no-sanitize, replaced with --plugin htmlscrubberjoey
2006-05-02* Added plugin system, currently only supporting for PreProcessorDirectives.joey
2006-04-25web commit by joeywww-data
2006-04-25web commit by joeywww-data