Commit Graph

26 Commits (a7905b40cededa7fb54e2c735b8196c9aae03f94)

Author SHA1 Message Date
Sami Mokaddem f7238fe5e7
fix: [security] XSS in authkey add
- as reported by Dawid Czarnecki from Zigrin Security
2023-01-10 10:05:22 +01:00
Jakub Onderka 1a589c64f8 chg [authkeys] Add validation 2022-03-27 18:45:32 +02:00
iglocska 9e90513881
new: [CRUD] delete - added the beforeDelete hook 2022-03-16 01:27:42 +01:00
Jakub Onderka dc05fc1302 chg: [internal] Code cleanup 2021-09-20 10:51:10 +02:00
Luciano Righetti 91c2c95e6c fix: only override values that were set in the input. 2021-06-17 17:04:21 +02:00
iglocska 51821b5de2
Merge branch '2.4' into develop 2021-06-10 16:23:02 +02:00
iglocska e729ad9225
fix: [CRUD] accept contain as a parameter for edit, fixes an issue with auth key edits 2021-06-10 16:21:44 +02:00
Jakub Onderka 8dc740cc35 new: Custom warninglist 2021-06-08 17:48:05 +02:00
iglocska 10d75dfcd6
chg: [CRUD] component - added redirect_controller parameter
- redirect to other controllers on demand, not just other actions
2021-04-27 00:42:23 +02:00
iglocska 35fe2ceac3
chg: [CRUD] component, changed two filtering functions to be accessible externally 2021-04-25 17:56:42 +02:00
Jakub Onderka 599819f7f9 new: [authkeys] Allowed IPs 2021-03-03 09:23:07 +01:00
Jakub Onderka b325ec58d4 fix: [UI] Redirect after add role modal to index page 2020-12-22 17:56:00 +01:00
Jakub Onderka 307a273e77 chg: [role] Do not allow delete role when is still assigned to user 2020-12-22 17:52:58 +01:00
Jakub Onderka ba9a33e0a1 chg: [UI] Merge roles index and admin_index 2020-12-22 17:52:58 +01:00
Jakub Onderka 6ea0d644d2
Merge pull request #6581 from JakubOnderka/newsread-loading
chg: [internal] Move user checks to one place
2020-12-21 17:31:48 +01:00
Jakub Onderka 2dab83c18e fix: [UI] Enable quick filter for auth keys 2020-12-17 13:50:25 +01:00
Jakub Onderka 790087ca60 fix: [security] Do not return hashed authentication key after creation 2020-12-17 13:50:25 +01:00
Jakub Onderka c06782226a fix: [security] Auth key must be always random generated at server side 2020-12-17 13:50:25 +01:00
Jakub Onderka f27580f1e6 new: [security] Allow to set key validity 2020-12-17 13:50:25 +01:00
iglocska b5c2261484
fix: [internal] removed function promises in crud component
- to appease EOL php versions...
2020-12-17 12:48:38 +01:00
iglocska a332e1379c
Merge branch '2.4' into cerebrate 2020-11-30 23:49:40 +01:00
iglocska 84afe9f0d3
chg: [CRUD component] call model functions in the afterfind
- added the option to either use anonymous functions or call model functions in the hook
- fixed a bug with a missing modelname in the lookup scope for fields (carryover from cerebrate)
2020-11-30 23:35:02 +01:00
Jakub Onderka 03001303a6 fix: [security] Remove hashed advanced keys from response 2020-11-29 20:34:21 +01:00
Jakub Onderka 000706251b fix: [security] Proper check who can view new authkeys 2020-11-15 18:04:34 +01:00
iglocska cd1217b36e
new: [CRUD component] backport from Cerebrate 2020-11-11 10:45:39 +01:00
iglocska 149487f90e
new: [CRUD] component port from Cerebrate, initial version 2020-10-20 01:53:00 +02:00