Commit Graph

11730 Commits (46d3cae2ffa420638709acecf8d5c659da109de0)
 

Author SHA1 Message Date
Aleksander Machniak 46d3cae2ff Security: Fix cross-site scripting (XSS) via malicious XML attachment 5 years ago
Aleksander Machniak bda02002de Security: Better fix for CVE-2020-12641 5 years ago
Aleksander Machniak ecabb1e667 Security: Fix XSS issue in template object 'username' (#7406) 5 years ago
Aleksander Machniak 31249d932d Security: Fix couple of XSS issues in Installer (#7406) 5 years ago
Aleksander Machniak e05c69afab Fix bug where PDF attachments marked as inline could have not been attached on mail forward (#7382) 5 years ago
Aleksander Machniak 6436c22d2d Elastic: Fix aspect ratio of a contact photo in mail preview (#7339) 5 years ago
Aleksander Machniak da2bb8af6d Fix error when user-configured skin does not exist anymore (#7271)
We fallback to the system skin not the default one.
5 years ago
Aleksander Machniak f6586c7cf7 Fix PHP warning: count(): Parameter must be an array or an object... in ID command handler (#7392) 5 years ago
Aleksander Machniak 82ee69df15 Update changelog
[ci skip]
5 years ago
johndoh 34a0af8964
Allow array in smtp_host config (#7296) 5 years ago
Aleksander Machniak 30d31c323b Improve UX on custom header input (#7207) 5 years ago
Aleksander Machniak a47c558df4 Fix typo 5 years ago
Aleksander Machniak 14a8a99ee2 Update changelog
[ci skip]
5 years ago
Christopher Gurnee 40ecd47f90 Show Encrypt button w/Mailvelope, even if disabled
Before the Elastic skin would keep it hidden until enabled, closes #7353
5 years ago
Aleksander Machniak 06a1964ef6 Fix changelog
[ci skip]
5 years ago
Christopher Gurnee 24d0cf5d34 Let Mailvelope use sender's address to find pubkeys to check signatures 5 years ago
Christopher Gurnee c3d4598985 Add missing \'s to regexes in rcube_check_email() 5 years ago
Aleksander Machniak 7dcba95605 Update changelog
[ci skip]
5 years ago
vaaguirre 9bec8dd506
Fix issue with Modoboa driver for password plugin (#7372)
Was having trouble with updating a password with the Modoboa API (1.9.1). API responded with an error message but 200 HTTP status code, so roundcube displayed a success message even though the password wasn't being updated. Added a line to include a required field in the update request.
5 years ago
Aleksander Machniak 663f7a8c58 Fix default keyservers (use keys.openpgp.org), add note about CORS (#7373, #7367) 5 years ago
johndoh 3af6303ad7
Remove depreciated jquery.trim function (#7371) 5 years ago
Aleksander Machniak 35c29be9b2 Remove use of ext-iconv 5 years ago
Aleksander Machniak 87f42677c2 Don't resize alert and confirm dialogs 5 years ago
Aleksander Machniak 7ead0bb227 Fix empty attachment size handling (#7370) 5 years ago
Aleksander Machniak 014659b600 CS fixes, mostly around undefined variables 5 years ago
Aleksander Machniak f0f6234a1a Use merge instead of append (#7341) 5 years ago
Aleksander Machniak 87ca7a09dc Fix missing flag indication on collapsed thread in Larry and Elastic (#7366) 5 years ago
Aleksander Machniak 377239fa8e Display a warning and do not try to open empty attachments (#7332) 5 years ago
Aleksander Machniak a2ee9f7eab Merge branch 'master' of github.com:roundcube/roundcubemail 5 years ago
Aleksander Machniak 1aebb1985c Fix recipient rename/delete after drag'n'drop, also keep the order 5 years ago
Aleksander Machniak 09848515fe Merge branch 'master' of https://github.com/chilek/roundcubemail into chilek-master 5 years ago
Sander Nilsen 0efa899d6c
Grammar correction (#7346) 5 years ago
Aleksander Machniak 55343ffd7d Update changelog
[ci skip]
5 years ago
johndoh ec86e3cb7f
Markasjunk: Fix regression in jsevent driver #7361 (#7365) 5 years ago
Aleksander Machniak 8fac36e2c2 Fix so the database setup description is compatible with MySQL 8 (#7340)
[ci skip]
5 years ago
Aleksander Machniak 3d2bb47f8d Clarify des_key length requirement (#7350)
[ci skip]
5 years ago
Aleksander Machniak c39081b6a1 Fix bug in extracting required plugins from composer.json that led to spurious error in log (#7364) 5 years ago
Aleksander Machniak 12d4705935 Update changelog
[ci skip]
5 years ago
Tomasz Chiliński 0b09b24a55
enhancement: elastic skin: allow to drag & drop addresses between address input fields during compose message (code simplification) 5 years ago
Aleksander Machniak 8344f07d7f Fix CSRF bypass that could be used to log out an authenticated user (#7302) 5 years ago
Aleksander Machniak 219e353ac1 Fix local file inclusion (and code execution) via crafted 'plugins' option 5 years ago
Aleksander Machniak 4951d6603a Fix remote code execution via crafted 'im_convert_path' or 'im_identify_path' settings 5 years ago
Aleksander Machniak 87e4cd0cf2 Fix XSS issue in handling of CDATA in HTML messages 5 years ago
Tomasz Chiliński 8db9b8b6e2
enhancement: elastic skin: allow to drag & drop addresses between address input fields during compose message (code simplification) 5 years ago
Tomasz Chiliński 682cea5cc5
enhancement: elastic skin: allow to drag & drop addresses between address input fields during compose message (code simplification) 5 years ago
Tomasz Chiliński aae1189dbf
enhancement: elastic skin: allow to drag & drop addresses between address input fields during compose message (update source list address input field to) 5 years ago
Tomasz Chiliński 6f8663f7ef
enhancement: elastic skin: allow to drag & drop addresses between address input fields during compose message 5 years ago
Aleksander Machniak 6b5fc8db95 Fix so Print button for PDF attachments works on Firefox >= 75 (#5125) 5 years ago
Aleksander Machniak b35b5a1a26 Fix typo 5 years ago
Aleksander Machniak bf34e8cf9c Fix performance issue of parsing big HTML messages by disabling HTML5 parser for these (#7331) 5 years ago