JustAMacUser
905ff10dc9
Allow abbr tag when sanitizing.
7 years ago
Andrew Dolgov
e7c9bc60ec
fix previous wrt if-modified-since being added to context options headers
7 years ago
Metallizzer
dd597297cb
Обновить 'include/functions.php'
...
The "Connection: close" header is added to the context_options
7 years ago
Andrew Dolgov
3d7db21602
Merge branch 'master' of git.fakecake.org:tt-rss
7 years ago
Andrew Dolgov
8babb8e75a
sanitize: disallow width and height attributes for images
7 years ago
fox
1aeb282be1
Merge branch 'save-effective-url' of JustAMacUser/tt-rss into master
7 years ago
JustAMacUser
7ae05ed790
Have fetch_file_contents() save the effective URL.
7 years ago
Andrew Dolgov
2eaf2a1f36
tag_is_valid: simplify code
7 years ago
Andrew Dolgov
7f4a404566
include: convert some spaces to tabs
7 years ago
martin scharm
32dc9ec854
undocumenting the proxy settings [see #36 ]
...
in response to https://git.tt-rss.org/git/tt-rss/pulls/36#issuecomment-119
7 years ago
martin scharm
213c01d459
some proxies require `request_fulluri` set to true [see #36 ]
...
at least polipo won't work for plain HTTP URLs (HTTPS strangely also works without `request_fulluri`..?)
see https://git.tt-rss.org/git/tt-rss/pulls/36
7 years ago
martin scharm
ea55f2e11c
Add proper support for proxies
...
There are situations where you want tt-rss to use a proxy (e.g.
because of network restrictions, or privacy concerns).
tt-rss already comes with an undocumented `_CURL_HTTP_PROXY`
variable (see eg https://binfalse.de/2015/05/06/ttrss-with-proxy/ ),
however that won't have an effect when, for example, php-curl is
not installed, see
c30f5e1811/include/functions.php (L377)
In this case it would use the `file_get_contents` with a stream
context without a proxy definition:
c30f5e1811/include/functions.php (L487)
Here I propose to properly support proxies, and I introduced a
`PROXY` variable, that is respected in both scenarios, with and
without curl installed.
7 years ago
Andrew Dolgov
9274109c19
search_to_sql: quote fallback search language
7 years ago
JustAMacUser
56c2216295
Add missing quotes to array_map.
7 years ago
Andrew Dolgov
bed2d6e054
force-cast some variables used in queries to integer
...
do not display SQL query in headlines debug mode
7 years ago
Andrew Dolgov
7651b6e2cd
sanitize: disable referrer via referrerpolicy for img elements
7 years ago
Andrew Dolgov
4d10b4abca
merge login form css into default.css
...
update more hardcoded colors to use @color-accent
update @color-accent
7 years ago
Andrew Dolgov
f8db5bb4db
installer: use PDO, improve wording for some notices
...
PDO wrapper: allow working with blank DB_HOST
7 years ago
Andrew Dolgov
76fc7a2d9c
bool_to_sql_bool: for some reason PDO really likes integers for boolean columns
...
incidentally this fixes OPML filter import
7 years ago
Andrew Dolgov
c4a08e4ff0
remove mentions of deprecated.js
7 years ago
Andrew Dolgov
e6532439d6
force strip_tags() on all user input unless explicitly allowed
7 years ago
Andrew Dolgov
fa3bcfa379
queryfeedheadlines: there's no need to quote order_by/override_order
...
else: feedicon cache busting etc
7 years ago
Andrew Dolgov
7c0eb1b621
add defaultPasswordWarning nag dialog
7 years ago
Andrew Dolgov
bfebf57c5f
get_theme_path: fallback to css/default.css if default theme is selected
7 years ago
Andrew Dolgov
2cf93c046c
pref-users: fix sorting the table
7 years ago
Andrew Dolgov
3eecebc34f
sanity_check: do not invoke PDO without checking that it exists
7 years ago
Andrew Dolgov
97a5e13370
add sanity check for PDO
7 years ago
Andrew Dolgov
83303f20e0
update version static for css & db changes
7 years ago
Andrew Dolgov
09bc54c690
further stylesheet simplification related fixes
7 years ago
Andrew Dolgov
8ff3cbb32e
filters: remove sql_bool_to_bool()
...
checkbox_to_sql_bool: return ints (???)
7 years ago
Andrew Dolgov
ed5cd6eae5
get_feed_access_key: param type bullshit
7 years ago
Andrew Dolgov
6cf3a57282
login: fix profile dropdown popping out in a weird place
7 years ago
Andrew Dolgov
7d960ce7e9
auth_internal: use PDO + other fixes
7 years ago
Andrew Dolgov
4ee398a41e
Merge branch 'master' of git.fakecake.org:tt-rss into pdo-experimental
7 years ago
Andrew Dolgov
1e78803c44
search_to_sql: leftover tsquery query fix for pgsql
7 years ago
Andrew Dolgov
a2d77092fe
search_to_sql: quoting fix
7 years ago
Andrew Dolgov
0002e598f8
sql_bool_to_bool: backwards compat fix
7 years ago
Andrew Dolgov
e4befe6bf4
fix label cache being double escaped on save
...
remove some old-style escaping
7 years ago
Andrew Dolgov
ef83c69404
more boolean fixes
7 years ago
Andrew Dolgov
da9ea57d1c
checkbox to sql bool related changes, some more boolean fixes
7 years ago
Andrew Dolgov
7ccb4e91ff
boolean handling changes which probably won't break everything
7 years ago
Andrew Dolgov
c949a9282e
OPML: use PDO; minor fixes
7 years ago
Andrew Dolgov
fbe7cb0a48
rpc: switch to PDO
7 years ago
Andrew Dolgov
ecf6baaa1c
fix add_feed_category
7 years ago
Andrew Dolgov
cc9450c309
ccache, misc: fixes
...
feeds: start PDO transition
7 years ago
Andrew Dolgov
1271407eea
public: partial conversion to PDO, misc fixes
7 years ago
Andrew Dolgov
cab58c44ae
some minor PDO-related fixes
7 years ago
Andrew Dolgov
c9d5c26041
auth/base: PDO
...
functions: fix small pdo-related bug
7 years ago
Andrew Dolgov
d068111a37
controls: PDO
7 years ago
Andrew Dolgov
bbd9e5045e
controls: start pdo stuff
7 years ago