1
0
Fork 0
mirror of https://we.phorge.it/source/phorge.git synced 2024-11-24 07:42:40 +01:00
phorge-phorge/src/applications
epriestley 02e8a322dc Defuse XSS in Calendar
Summary: `addDetail()` takes HTML because we have links there fairly often. :/ This design is iffy.

Test Plan: Reloaded `/calendar/status/`, verified no XSS.

Reviewers: btrahan, vrana

Reviewed By: vrana

CC: aran

Maniphest Tasks: T139

Differential Revision: https://secure.phabricator.com/D4074
2012-12-03 16:46:56 -08:00
..
audit fix feed story publishing for audit comments 2012-11-19 17:25:45 -08:00
auth Support to bind to an anonymous LDAP user before searching. 2012-11-30 04:22:13 -08:00
base Fix a redirect-on-login issue by allowing logged-out users to view 404 pages 2012-11-21 14:43:35 -08:00
cache/storage Delete license headers from files 2012-11-05 11:16:51 -08:00
calendar Defuse XSS in Calendar 2012-12-03 16:46:56 -08:00
chatlog Delete license headers from files 2012-11-05 11:16:51 -08:00
conduit Add Conduit method for getting Diffusion lint messages 2012-11-27 17:57:57 -08:00
countdown Delete license headers from files 2012-11-05 11:16:51 -08:00
daemon Delete license headers from files 2012-11-05 11:16:51 -08:00
differential Don't delete tasks attached by freeform fields in Maniphest Tasks field 2012-12-03 16:28:19 -08:00
diffusion Filter all lint messages by owner 2012-12-03 14:25:07 -08:00
directory/controller Delete license headers from files 2012-11-05 11:16:51 -08:00
diviner Delete license headers from files 2012-11-05 11:16:51 -08:00
draft/storage Delete license headers from files 2012-11-05 11:16:51 -08:00
drydock Make drydock case sensitive in attribute parsing 2012-11-29 06:05:35 -08:00
fact Delete license headers from files 2012-11-05 11:16:51 -08:00
feed Delete license headers from files 2012-11-05 11:16:51 -08:00
files Add support for S3 endpoint regions. 2012-11-16 04:08:14 -08:00
flag Delete license headers from files 2012-11-05 11:16:51 -08:00
harbormaster/storage Delete license headers from files 2012-11-05 11:16:51 -08:00
help/controller Delete license headers from files 2012-11-05 11:16:51 -08:00
herald Delete license headers from files 2012-11-05 11:16:51 -08:00
macro Delete license headers from files 2012-11-05 11:16:51 -08:00
mailinglists Delete license headers from files 2012-11-05 11:16:51 -08:00
maniphest Allow users to set whether or not textareas are monospaced. 2012-11-27 14:06:42 -08:00
meta Delete license headers from files 2012-11-05 11:16:51 -08:00
metamta Fix a bug with T1643 2012-11-30 12:09:37 -08:00
notification Delete license headers from files 2012-11-05 11:16:51 -08:00
oauthserver Delete license headers from files 2012-11-05 11:16:51 -08:00
owners Delete license headers from files 2012-11-05 11:16:51 -08:00
paste Delete license headers from files 2012-11-05 11:16:51 -08:00
people Allow disabling editing multiple files at once 2012-12-03 16:02:52 -08:00
phame Allow users to set whether or not textareas are monospaced. 2012-11-27 14:06:42 -08:00
phid Add very basic scaffolding for Pholio 2012-11-21 17:22:36 -08:00
pholio Allow users to set whether or not textareas are monospaced. 2012-11-27 14:06:42 -08:00
phortune Delete license headers from files 2012-11-05 11:16:51 -08:00
phriction Allow users to set whether or not textareas are monospaced. 2012-11-27 14:06:42 -08:00
policy Delete license headers from files 2012-11-05 11:16:51 -08:00
ponder Allow users to set whether or not textareas are monospaced. 2012-11-27 14:06:42 -08:00
project Delete license headers from files 2012-11-05 11:16:51 -08:00
repository Minor, extend the lease time of Herald task leases. 2012-11-30 11:02:42 -08:00
search Add support for differential field specifications to be indexed in search 2012-11-07 13:31:52 -08:00
settings Allow disabling editing multiple files at once 2012-12-03 16:02:52 -08:00
slowvote Delete license headers from files 2012-11-05 11:16:51 -08:00
status Delete license headers from files 2012-11-05 11:16:51 -08:00
subscriptions Add subscriber/mention support to Pholio 2012-11-21 17:38:57 -08:00
typeahead Delete license headers from files 2012-11-05 11:16:51 -08:00
uiexample Build PhabricatorTagView 2012-11-24 06:47:06 -08:00
xhpastview Delete license headers from files 2012-11-05 11:16:51 -08:00
xhprof Delete license headers from files 2012-11-05 11:16:51 -08:00