Commit Graph

8314 Commits

Author SHA1 Message Date
Andrew Dolgov 546b419f52 catch plugin JS errors 2016-08-10 12:23:35 +03:00
Andrew Dolgov f6d2787a8e plugins: use require() to hook into dojo 2016-08-10 12:22:55 +03:00
Andrew Dolgov fd539f2800 prefs: use dojo asynchronously 2016-08-10 12:22:30 +03:00
Andrew Dolgov 0dbc20a8d4 load dijit properly, duh 2016-08-10 11:49:05 +03:00
Andrew Dolgov ee5170424e dojo: main UI: load stuff asynchronously 2016-08-10 10:01:05 +03:00
Andrew Dolgov 25a533c432 bump static version to 16.8 2016-08-10 09:15:52 +03:00
Andrew Dolgov 6ff51c1997 Merge branch 'more-info-article-filter' into 'master'
Pass the value of cache_images to plugins in HOOK_ARTICLE_FILTER.

Adds the `$cache_images` value to the `$article['feed']` array before calling HOOK_ARTICLE_FILTER. Allows plugins to know whether images will be cached in case they want to manage them in one way or another.

See merge request !32
2016-08-07 22:22:09 +03:00
Andrew Dolgov 3b4d9619e9 Merge branch 'patch-strip-harmful-tags' into 'master'
Remove href attribute if it executes JavaScript.

Security update to prevent A tags with a `javascript:` href from actually executing the JavaScript.

See merge request !31
2016-08-07 22:21:45 +03:00
JustAMacUser babfadbfd2 Pass the value of cache_images to plugins in HOOK_ARTICLE_FILTER. 2016-08-06 14:16:39 -04:00
JustAMacUser d8b0f06705 Remove href attribute if it executes JavaScript. 2016-08-06 14:07:30 -04:00
Andrew Dolgov 4800746386 tweet embed: force utf-8 2016-08-02 18:08:00 +03:00
Andrew Dolgov 46506d3fd6 af_redditimgur: rework gfycat pages 2016-08-02 17:01:53 +03:00
Andrew Dolgov 8c395462be af_redditimgur: support .mp4 links 2016-08-02 16:45:06 +03:00
Andrew Dolgov e487e92d70 readability: increase maximum source document size, reorganize the reddit plugin code a bit 2016-08-02 12:25:54 +03:00
Andrew Dolgov 49048482d8 af_redditimgur: relax poster image url condition for imgur a bit 2016-08-02 07:56:25 +03:00
Andrew Dolgov 43db5b99eb af_redditimgur: only check embed url variants unless match is found 2016-08-01 21:07:18 +03:00
Andrew Dolgov 8788698b05 basic tweet embedding using oembed 2016-08-01 21:03:36 +03:00
Andrew Dolgov 90e45935bb af_redditimgur: try to guess images to embed using content-type 2016-08-01 16:20:14 +03:00
Andrew Dolgov e97e2ec9f3 Merge branch 'master' of git.tt-rss.org:fox/tt-rss 2016-08-01 08:26:35 +03:00
Andrew Dolgov d419aed543 trgm plugin: increase check distance to 3 days 2016-08-01 08:26:11 +03:00
Andrew Dolgov 9e38b6ca79 Merge branch 'mb4-string-only' into 'master'
Only strings need 4-byte filtering.

Things like booleans, integers, etc. can be excluded as only strings have 4-byte characters.

Keeps the data types consistent.

See merge request !30
2016-07-26 23:38:48 +03:00
Andrew Dolgov a6fde6c99f af_redditimgur: support video elements in imgur albums 2016-07-26 16:29:17 +03:00
Andrew Dolgov 64c24ecb59 add hotkey for toggling VFEED_GROUP_BY_FEED preference 2016-07-26 15:55:00 +03:00
Andrew Dolgov 76ba1df76e af_redditimgur: use browser UA for readability requests 2016-07-26 15:46:54 +03:00
JustAMacUser dae16f72c9 Only strings need 4-byte filtering. 2016-07-26 03:51:22 -04:00
Andrew Dolgov 1818614949 api: fix article guid not being passed to render article hook 2016-07-20 15:38:42 +03:00
Andrew Dolgov 4afcf63563 api host: add session validation 2016-07-20 13:55:51 +03:00
Andrew Dolgov 5d97019d5d api: load user plugins properly 2016-07-20 13:52:22 +03:00
Andrew Dolgov e6905f7f87 test if mb_internal_encoding() is available in functions.php head 2016-07-07 10:02:55 +03:00
Andrew Dolgov eb95d1bddf af_redditimgur: handle i.reddituploads.com as pictures 2016-07-07 09:04:38 +03:00
Andrew Dolgov cfc2fe50cb fix sql error when subscribing to a feed using feed archive 2016-07-05 11:48:36 +03:00
Andrew Dolgov 582ff3cf6e af_redditimgur: make sure content_link is defined even if content dupcheck is disabled 2016-07-05 11:01:36 +03:00
Andrew Dolgov 2e68712261 set referrer policy to 'no-referrer' 2016-06-03 12:08:03 +03:00
Andrew Dolgov 7ac6ab4dda set referrer-policy to none 2016-06-01 16:21:03 +03:00
Heiko Adams 94e3a9ab44
Merge with master 2016-05-18 14:44:39 +02:00
Andrew Dolgov c9a5903bcc disable autocomplete in subscription dialog 2016-05-18 14:48:51 +03:00
Andrew Dolgov ec21abb85d update autocomplete to "new-password" 2016-05-18 12:43:56 +03:00
Andrew Dolgov fa0e0ef315 set feed editor password fields to autocomplete=off 2016-05-18 12:31:25 +03:00
Andrew Dolgov aa4ab8e0bc remove .htaccess files 2016-05-13 09:10:54 +03:00
Andrew Dolgov 638fdf732a update_rss_feed: log warning when attempting to update unknown feed 2016-04-29 22:10:00 +03:00
Andrew Dolgov 2f1a29d9c8 generate_syndicated_feed: sanitize content excerpt 2016-04-29 22:00:02 +03:00
Andrew Dolgov 42f78188d0 sanitize: force strip unnecessary data outside of <body>...</body> tags generated by DOMDocument::saveHTML() 2016-04-29 21:59:34 +03:00
Andrew Dolgov 977cea1438 actually check for failures properly in the dbupdater 2016-04-26 20:04:24 +03:00
Andrew Dolgov 9e84bab449 daemon common: use proper update condition checking for secondary-selected feeds 2016-04-01 18:54:53 +03:00
Andrew Dolgov c71add385d fetch_file_contents: fix shim when invoked with 1 argument only 2016-03-31 09:48:05 +03:00
Andrew Dolgov 465fb16d33 remove fetch_file_contents2, use a compat shim instead 2016-03-30 13:46:32 +03:00
Andrew Dolgov 633fb7ffe2 amend previous 2016-03-30 13:34:26 +03:00
Andrew Dolgov 79c891a8b7 set smallish timeout on update check, exclude update checking on initial load 2016-03-30 13:32:49 +03:00
Andrew Dolgov e3bc4591af add a hash-based fetch_file_contents2() 2016-03-30 13:25:32 +03:00
Andrew Dolgov 00b6b66827 lib/gettext: use proper constructor 2016-03-30 09:56:11 +03:00