Commit Graph

11443 Commits (6626e5bf2451cffed6ead2a0617f2ca947f4eecb)

Author SHA1 Message Date
Alexandre Dulaunoy b1993d210b
chg: [taxonomies] updated to the latest version 2020-03-23 14:10:20 +01:00
iglocska 2b6cb64bcc
chg: [galaxy] bump 2020-03-23 12:12:43 +01:00
iglocska f74f193898
Merge branch '2.4' of github.com:MISP/MISP into 2.4 2020-03-23 12:08:55 +01:00
iglocska 93d26f8789
new: country galaxy generator 2020-03-23 12:08:27 +01:00
mokaddem 1371af6377
chg: [helper:ScopedCSS] Usage of PHP_EOL 2020-03-20 09:11:49 +01:00
Andras Iklody d384cced23
Merge pull request #5707 from MISP/feature-widgets-scoped-css
Scoped css for widget
2020-03-20 09:09:40 +01:00
mokaddem f92f09d80f
chg: [scopedCSS] Added more doc and allow having scoped and not scoped
mix
2020-03-20 08:37:53 +01:00
mokaddem ac678e7e48
chg: [scopedCSS] Simplified usage and added documentation 2020-03-20 08:27:22 +01:00
mokaddem 6f033ee0b5
chg: [widgets:multiline] Switched to scoped css usage 2020-03-20 07:57:03 +01:00
Sami Mokaddem a20728633b
fix: [servers:pull_rules] Allows sync parameter rules to be above 40 chars 2020-03-19 16:06:42 +01:00
mokaddem 4633d25418
new: [helper:scopedCSS] Moved implementation in a helper 2020-03-19 14:39:52 +01:00
mokaddem 96c0d71174
Merge branch '2.4' of github.com:MISP/MISP into feature-widgets-scoped-css 2020-03-19 14:06:23 +01:00
mokaddem f9ae0bef48
chg: [widgets] Added support of scoped CSS 2020-03-19 14:05:37 +01:00
iglocska e5d775e9c8
fix: [message] user creation shouldn't include the "User notified of new credentials" part of the notification mesage if emailing is disabled 2020-03-19 11:08:09 +01:00
iglocska c8a111447c
fix: [suricata] fixed an invalid validation of https hostnames that blocked the attributes from being included in the exports 2020-03-19 09:16:10 +01:00
iglocska fa0eb43120
fix: [dashboard] css conflict resolved
- in a really hacky way for now
2020-03-16 13:57:15 +01:00
iglocska 4ffa61fc66
Merge branch '2.4' of github.com:MISP/MISP into 2.4 2020-03-16 13:24:16 +01:00
iglocska 6e240699ab
new: [dashboard] multi line chart UI added 2020-03-16 13:24:01 +01:00
mokaddem d8f5228d83
fix: [galaxy:view] View altered galaxies/clusters buttton correctly
redirect
2020-03-12 13:43:56 +01:00
mokaddem 9cfd426c8b
chg: [galaxyCluster:index] Migrated to use the genericElement factory +
added sparkline and icon genericIndex fields
2020-03-12 13:39:50 +01:00
mokaddem 93f5a64c97
chg: [galaxyCluster:view] Migrated to use the genericElement factory 2020-03-12 11:51:24 +01:00
mokaddem cd590121f8
chg: [galaxy:index] Cleaned up artifacts from galaxy2.0 2020-03-12 11:24:38 +01:00
mokaddem 020f9fe061
chg: [galaxy:view] Migrated to use the genericElement factory 2020-03-12 11:17:22 +01:00
mokaddem 4ddf991be3
chg: [galaxy:index] Migrated to use the genericElement factory 2020-03-12 11:10:11 +01:00
mokaddem 332f905462
chg: [views:genericElements] Multiple addition and improvements for generic IndexTable, TopBar and Form 2020-03-12 10:41:35 +01:00
chrisr3d cc36cc5991
fix: [side menu] Fixed Dashboard link from the side menu in the statistic view 2020-03-11 16:14:29 +01:00
mokaddem 11ec303a50
fix: [thread:view] Threads are no longer rendered for not related Event
on rare occasion
2020-03-11 14:00:02 +01:00
mokaddem f6c06d8e6b
fix: [user:login] Added support of `RFC822` for older PHP version 2020-03-11 10:48:52 +01:00
chrisr3d 0bc238f8ed Merge branch '2.4' of github.com:MISP/MISP into 2.4 2020-03-10 16:45:35 +01:00
chrisr3d 65048be032
fix: [stix export] Fixed cybox object import 2020-03-10 16:44:55 +01:00
iglocska eaf50ed47e
Merge branch '2.4' of github.com:MISP/MISP into 2.4 2020-03-10 15:11:39 +01:00
iglocska 9c36d5292c
fix: [ACL] added deleteTemplate 2020-03-10 15:11:13 +01:00
Raphaël Vinot 8beec4e383 chg: Bump PyMISP 2020-03-10 14:31:31 +01:00
iglocska 91a8390e5a
chg: [cleanup] removed alert 2020-03-10 11:36:01 +01:00
iglocska 010bc9a692
Merge branch '2.4' of github.com:MISP/MISP into 2.4 2020-03-10 11:34:51 +01:00
iglocska f1faa7845f
fix: [dashboard] grid scope fix 2020-03-10 11:34:30 +01:00
mokaddem 3758b085a4
Merge branch '2.4' of github.com:MISP/MISP into 2.4 2020-03-10 11:22:17 +01:00
mokaddem 495218cea8
fix: [dashboards:edit] Prevent overriding the edited template with data
stored in user-settings
2020-03-10 11:21:35 +01:00
iglocska e0ad3ec9a4
Merge branch '2.4' of github.com:MISP/MISP into 2.4 2020-03-10 10:59:44 +01:00
iglocska 9d3476cb6c
fix: [dashboard] several small fixes
- fixed issue of first few updates failing right after adding a self updating widget
- don't try to reload a removed widget
- fixed the internal random parametrised widget refresh to something more sane
2020-03-10 10:58:41 +01:00
mokaddem 2e2cb08a0b
fix: [dashboard:saveTemplate] Prevent array re-indexing causing issue
with HTML select's option value
2020-03-10 10:52:53 +01:00
Alexandre Dulaunoy f3f468d90d
chg: [misp-warninglists] updated to the latest version 2020-03-10 09:44:33 +01:00
Alexandre Dulaunoy 1f41434290
chg: [misp-objects] updated to the latest version 2020-03-10 09:44:10 +01:00
Alexandre Dulaunoy 6e407bd45d
chg: [misp-taxonimies] updated to the latest version 2020-03-10 09:43:38 +01:00
Alexandre Dulaunoy f5f7fad1a8
Merge branch '2.4' of github.com:MISP/MISP into 2.4 2020-03-09 22:52:40 +01:00
Alexandre Dulaunoy c10baaeefe
chg: [misp-galaxy] updated to the latest version 2020-03-09 22:51:57 +01:00
iglocska b83a238a80
chg: [dashboard] world map scale parameterised 2020-03-09 11:15:56 +01:00
Andras Iklody 0e2babfa04
Merge pull request #5687 from MISP/feature-widget-improvement
chg: [widget:worldmap] Various JS and UI Improvements
2020-03-09 11:08:41 +01:00
mokaddem 8ed6b9786e
chg: [widget:worldmap] Reusage of declated variable 2020-03-09 11:05:28 +01:00
mokaddem 67998be781
chg: [widget:worldmap] Various JS and UI Improvements
- Variables and function have their own scope, not overridin each other
- Scale color ranges from blue to red
- Tooltip picks the correct data instead of the latest declared one
- PHP no longuer printed in JS, avoiding the need of `eval` command
- Widget redraw itself after a page resize
2020-03-09 10:54:55 +01:00
iglocska 8c7bef419d
Merge branch '2.4' of github.com:MISP/MISP into 2.4 2020-03-09 10:36:22 +01:00
iglocska 23f1c9f51d
fix: [logs] pagination settings are lost when flipping pages after a search 2020-03-09 10:35:28 +01:00
mokaddem 83542716e5
Merge branch '2.4' of github.com:MISP/MISP into 2.4 2020-03-09 09:02:55 +01:00
mokaddem 2ccf3dab76
fix: [user:resetAuthkey] Allows the function to be called 2020-03-09 09:02:06 +01:00
mokaddem e44c77ef88
fix: [flashErrorMessage] Sanitized error message printed by session that
should never contains user-made text

- Better safe than sorry
2020-03-09 08:57:27 +01:00
iglocska 584d2c1fdf
fix: [widgets] worldmap fixed 2020-03-09 00:32:21 +01:00
iglocska bebc70a012
chg: [dashboard] show owner email of template to site owners and the owner themselves 2020-03-09 00:14:59 +01:00
iglocska bf2694c490
new: [dashboard] added template delete functionality 2020-03-09 00:08:23 +01:00
iglocska 6773b8d799
fix: [dashboards] fixed invalid recall of dashboard template 2020-03-08 23:54:02 +01:00
iglocska 8d02332b31
new: [dashboard] persistence package
- export dashboard state
- import dashboard state
- save dashboard state
  - make it available to others on the instance on demand
  - admins can set a default password for users that don't have anything configured yet
  - load another template based on what the community has shared
- added Whoami widget which was an outcome of the ESDC training
- various improvements, new fields for genericElements, etc
2020-03-08 23:36:27 +01:00
mokaddem 5e15ab1ef1
Merge branch '2.4' of github.com:MISP/MISP into 2.4 2020-03-06 16:38:22 +01:00
mokaddem 6fad7028b3
fix: [user:edit] Prevent password change with the current password
- As reported by an external pentest company on behalf of the Centre for Cyber security Belgium (CCB)
2020-03-06 16:19:12 +01:00
mokaddem 40560b8873
fix: [user:edit] Correctly re-insert form data wipping password
information
2020-03-06 16:17:28 +01:00
mokaddem fc0ed4c9a0
chg: [login] Display last time the user logged in 2020-03-06 16:12:40 +01:00
mokaddem 431ccc6a04
chg: [response header] Added `X-XSS-Protection` header
- As reported by an external pentest company on behalf of the Centre for Cyber security Belgium (CCB)
2020-03-06 16:06:35 +01:00
mokaddem e24a9eb44c
fix: [security] Fixed presistent xss in the sighting popover tool
- As reported by an external pentest company on behalf of the Centre for Cyber security Belgium (CCB)
2020-03-06 16:05:26 +01:00
mokaddem de80d340cf
fix: [user:resetauthkey] Method can only be accessed via POST request
- As reported by an external pentest company on behalf of the Centre for Cyber security Belgium (CCB)
2020-03-06 15:58:08 +01:00
mokaddem 43a0757fb3
fix: [security] Fix reflected xss via unsanitized URL parameters
- As reported by an external pentest company on behalf of the Centre for Cyber security Belgium (CCB)
2020-03-06 15:44:58 +01:00
mokaddem 31827905ec
fix: [settings] `require_password_confirmation` set to true
by default
2020-03-06 15:41:38 +01:00
iglocska 6c4ea364db
fix: [ACL] added new function to ACL 2020-03-06 15:02:44 +01:00
iglocska 9770555c39
new: [workers] restart all dead workers 2020-03-06 14:56:35 +01:00
mokaddem 9bab7d8217
chg: [server:rest] Query builder gets loaded with body after the POST
fix #5680
2020-03-06 11:24:13 +01:00
mokaddem 4f3ed331f0
chg: Removed unwanted indentation 2020-03-06 10:58:50 +01:00
mokaddem 2061707932
fix: [attribute:validation] Better validation of IPv6-[dst/src] and
improved display.

fix #5682
2020-03-06 10:54:06 +01:00
iglocska cd4b6936c8
new: [widgets] Whoami widget added 2020-03-06 10:06:31 +01:00
iglocska 60640f4916
fix: [js] fixed invalid defaults passed from php 2020-03-05 10:16:10 +01:00
iglocska 5e56e7dfc7
new: [dashboard] various fixes / improvements
- simple list now accepts arrays for values
- fixed margin issues
- fixed empty sync test issues
2020-03-05 10:08:15 +01:00
iglocska c0e25c28ad
chg: [dashboard] cleanup
prevent @mokaddem's and @rommelfs's eyes from bleeding
2020-03-04 15:08:18 +01:00
iglocska 1fe4d0dd57
Merge branch '2.4' of github.com:MISP/MISP into 2.4 2020-03-04 14:46:40 +01:00
iglocska 218ea0333c
new: [dashboard] added a way to auto reload widgets
- has to be defined in the code of the widget
2020-03-04 14:46:01 +01:00
Alexandre Dulaunoy 95d6d07c49
chg: [misp-object] updated to the latest version 2020-03-04 14:26:59 +01:00
Alexandre Dulaunoy fd9155239c
Merge branch '2.4' of github.com:MISP/MISP into 2.4 2020-03-04 14:09:19 +01:00
Alexandre Dulaunoy eb1cbb823d
chg: [misp-objects] updated to the latest version 2020-03-04 14:08:56 +01:00
iglocska 14e2e68db8
fix: [cleanup] removed disabling the caching of dashboard widgets for debug purposes 2020-03-04 11:48:09 +01:00
iglocska 52e8924e6f
chg: [dashboard] Allow for the use of subdirectories in /app/Lib/Dashboard/Custom to be able to git clone repos 2020-03-04 11:46:45 +01:00
iglocska 6d3801d43b
fix: [dashboard] Some widget visualisation fixes 2020-03-03 06:54:37 +01:00
iglocska 33990b1923
fix: [cleanup] 2020-03-02 23:33:57 +01:00
iglocska a40c227ca4
chg: [querystring] bumped 2020-03-02 23:14:55 +01:00
iglocska 03dc9a8206
fix: [synctool] tests improved 2020-03-02 23:09:47 +01:00
iglocska 183812756f
new: [widget] World map widget added 2020-03-02 23:09:10 +01:00
iglocska 1c915cd077
chg: [dashboard] views for widgets updated 2020-03-02 23:07:23 +01:00
iglocska 44ff66445d
new: [dashboard] Resource widget added 2020-03-02 23:06:31 +01:00
iglocska 0e635548b9
new: [favourite] glow orange when on the page that is already bookmarked
- thanks to @mokaddem (graphman) for the idea
2020-03-02 23:05:40 +01:00
iglocska 612897d26f
chg: [clenaup] removed old dashboard 2020-03-02 23:05:08 +01:00
iglocska 556efcbf5b
new: [dashboard] Added cachelifetimg setting as opposed to hard-coded value 2020-03-02 23:04:36 +01:00
iglocska 9f3f50544f
fix: [CLI] change authkey description fixed 2020-03-02 23:02:57 +01:00
iglocska 1bcc7cdf2b
fix: [homepage] redirects fixed 2020-03-02 10:30:24 +01:00
iglocska 13926c83eb
fix: [user settings] fixed unlocking of API routes 2020-03-02 00:43:07 +01:00
iglocska 7b5374a81d
new: [dashboard] Added server resource module and some fixes 2020-03-02 00:32:26 +01:00
iglocska 750843725f
new: [Dashboard] added hook to check for permissions on module load
- allows for modules to have role / host org restrictions
2020-03-01 23:56:40 +01:00