Aleksander Machniak
46d3cae2ff
Security: Fix cross-site scripting (XSS) via malicious XML attachment
5 years ago
Aleksander Machniak
bda02002de
Security: Better fix for CVE-2020-12641
5 years ago
Aleksander Machniak
ecabb1e667
Security: Fix XSS issue in template object 'username' ( #7406 )
5 years ago
Aleksander Machniak
31249d932d
Security: Fix couple of XSS issues in Installer ( #7406 )
5 years ago
Aleksander Machniak
e05c69afab
Fix bug where PDF attachments marked as inline could have not been attached on mail forward ( #7382 )
5 years ago
Aleksander Machniak
6436c22d2d
Elastic: Fix aspect ratio of a contact photo in mail preview ( #7339 )
5 years ago
Aleksander Machniak
da2bb8af6d
Fix error when user-configured skin does not exist anymore ( #7271 )
...
We fallback to the system skin not the default one.
5 years ago
Aleksander Machniak
f6586c7cf7
Fix PHP warning: count(): Parameter must be an array or an object... in ID command handler ( #7392 )
5 years ago
Aleksander Machniak
82ee69df15
Update changelog
...
[ci skip]
5 years ago
johndoh
34a0af8964
Allow array in smtp_host config ( #7296 )
5 years ago
Aleksander Machniak
30d31c323b
Improve UX on custom header input ( #7207 )
5 years ago
Aleksander Machniak
a47c558df4
Fix typo
5 years ago
Aleksander Machniak
14a8a99ee2
Update changelog
...
[ci skip]
5 years ago
Christopher Gurnee
40ecd47f90
Show Encrypt button w/Mailvelope, even if disabled
...
Before the Elastic skin would keep it hidden until enabled, closes #7353
5 years ago
Aleksander Machniak
06a1964ef6
Fix changelog
...
[ci skip]
5 years ago
Christopher Gurnee
24d0cf5d34
Let Mailvelope use sender's address to find pubkeys to check signatures
5 years ago
Christopher Gurnee
c3d4598985
Add missing \'s to regexes in rcube_check_email()
5 years ago
Aleksander Machniak
7dcba95605
Update changelog
...
[ci skip]
5 years ago
vaaguirre
9bec8dd506
Fix issue with Modoboa driver for password plugin ( #7372 )
...
Was having trouble with updating a password with the Modoboa API (1.9.1). API responded with an error message but 200 HTTP status code, so roundcube displayed a success message even though the password wasn't being updated. Added a line to include a required field in the update request.
5 years ago
Aleksander Machniak
663f7a8c58
Fix default keyservers (use keys.openpgp.org), add note about CORS ( #7373 , #7367 )
5 years ago
johndoh
3af6303ad7
Remove depreciated jquery.trim function ( #7371 )
5 years ago
Aleksander Machniak
35c29be9b2
Remove use of ext-iconv
5 years ago
Aleksander Machniak
87f42677c2
Don't resize alert and confirm dialogs
5 years ago
Aleksander Machniak
7ead0bb227
Fix empty attachment size handling ( #7370 )
5 years ago
Aleksander Machniak
014659b600
CS fixes, mostly around undefined variables
5 years ago
Aleksander Machniak
f0f6234a1a
Use merge instead of append ( #7341 )
5 years ago
Aleksander Machniak
87ca7a09dc
Fix missing flag indication on collapsed thread in Larry and Elastic ( #7366 )
5 years ago
Aleksander Machniak
377239fa8e
Display a warning and do not try to open empty attachments ( #7332 )
5 years ago
Aleksander Machniak
a2ee9f7eab
Merge branch 'master' of github.com:roundcube/roundcubemail
5 years ago
Aleksander Machniak
1aebb1985c
Fix recipient rename/delete after drag'n'drop, also keep the order
5 years ago
Aleksander Machniak
09848515fe
Merge branch 'master' of https://github.com/chilek/roundcubemail into chilek-master
5 years ago
Sander Nilsen
0efa899d6c
Grammar correction ( #7346 )
5 years ago
Aleksander Machniak
55343ffd7d
Update changelog
...
[ci skip]
5 years ago
johndoh
ec86e3cb7f
Markasjunk: Fix regression in jsevent driver #7361 ( #7365 )
5 years ago
Aleksander Machniak
8fac36e2c2
Fix so the database setup description is compatible with MySQL 8 ( #7340 )
...
[ci skip]
5 years ago
Aleksander Machniak
3d2bb47f8d
Clarify des_key length requirement ( #7350 )
...
[ci skip]
5 years ago
Aleksander Machniak
c39081b6a1
Fix bug in extracting required plugins from composer.json that led to spurious error in log ( #7364 )
5 years ago
Aleksander Machniak
12d4705935
Update changelog
...
[ci skip]
5 years ago
Tomasz Chiliński
0b09b24a55
enhancement: elastic skin: allow to drag & drop addresses between address input fields during compose message (code simplification)
5 years ago
Aleksander Machniak
8344f07d7f
Fix CSRF bypass that could be used to log out an authenticated user ( #7302 )
5 years ago
Aleksander Machniak
219e353ac1
Fix local file inclusion (and code execution) via crafted 'plugins' option
5 years ago
Aleksander Machniak
4951d6603a
Fix remote code execution via crafted 'im_convert_path' or 'im_identify_path' settings
5 years ago
Aleksander Machniak
87e4cd0cf2
Fix XSS issue in handling of CDATA in HTML messages
5 years ago
Tomasz Chiliński
8db9b8b6e2
enhancement: elastic skin: allow to drag & drop addresses between address input fields during compose message (code simplification)
5 years ago
Tomasz Chiliński
682cea5cc5
enhancement: elastic skin: allow to drag & drop addresses between address input fields during compose message (code simplification)
5 years ago
Tomasz Chiliński
aae1189dbf
enhancement: elastic skin: allow to drag & drop addresses between address input fields during compose message (update source list address input field to)
5 years ago
Tomasz Chiliński
6f8663f7ef
enhancement: elastic skin: allow to drag & drop addresses between address input fields during compose message
5 years ago
Aleksander Machniak
6b5fc8db95
Fix so Print button for PDF attachments works on Firefox >= 75 ( #5125 )
5 years ago
Aleksander Machniak
b35b5a1a26
Fix typo
5 years ago
Aleksander Machniak
bf34e8cf9c
Fix performance issue of parsing big HTML messages by disabling HTML5 parser for these ( #7331 )
5 years ago