AsmBB

Check-in [0ae1a653c6]
Login

Many hyperlinks are disabled.
Use anonymous login to enable hyperlinks.

Overview
Comment:Some additional armoring of the critical pages.
Downloads: See separate download page
Timelines: family | ancestors | descendants | both | trunk
Files: files | file ages | folders
SHA1: 0ae1a653c69265282ab73c673896d4c2745458cf
User & Date: johnfound 2023-03-21 16:30:56.634
Context
2023-05-17
15:04:36
Merged with unieditor2 branch. check-in: d8c75d8f5b user: johnfound tags: trunk
2023-03-24
07:36:54
Merged with the recent trunk. closed check-in: 5676cd9c0c user: johnfound tags: unieditor
2023-03-21
16:30:56
Some additional armoring of the critical pages. check-in: 0ae1a653c6 user: johnfound tags: trunk
2023-03-18
21:53:46
Normalize the path for [include:] and [raw:] template commands in order to prevent directory traversal. Fix a double rendering bug. It removes a template injection vulnerability and actually increases the speed. check-in: 375d29e3ff user: johnfound tags: trunk
Changes
Unified Diff Side-by-Side Diff Patch
Changes to source/accounts.asm.
Changes to source/chat.asm.
Changes to source/commands.asm.
Changes to source/delete.asm.
Changes to source/edit.asm.
Changes to source/engine.asm.
Changes to source/history.asm.
Changes to source/post.asm.
Changes to source/search.asm.
Changes to source/userinfo.asm.
Changes to source/users_online.asm.