papereth
2275735fdf
Fix information leak in thread.html ( #377 )
...
Sensitive information can be leaked due to inadequate/absent escaping, if proxy_save enabled
Line 14 is truncating before removing tags, this can cause some tags to be cut and therefore not be removed by the `remove_` functions.
Line 22 is just leaking it all, not removing anything.
2020-08-10 09:50:02 -07:00
Eman Gamer
cf6a733931
Fix Capitalization on setUpControl for Chromium ( #378 )
...
Chromium browsers expect capital U in setUpControl and old version of webm-settings.js has setupControl which causes a error and makes expand-video.js not work and options.js not save when this is in use. This bug is not present on FireFox which automatically fixes this for some reason. Stupid bug, stupid fix. No lines actually added or removed.
2020-08-09 19:25:33 -07:00
papereth
a268004c7a
Fix wrong variable used in ban lookup ( #376 )
...
` $_SERVER['REMOTE_ADDR']` was hardcoded in ban lookup instead of `$ip` variable
2020-08-09 18:31:50 -07:00
Fredrick Brennan
01538ed33a
Close #366
...
I don't know why this works, but this extra whitespace is required on
PHP 7.4.
If you want to know why I hate PHP updates, this is why.
2020-01-21 09:46:29 +08:00
Daniel Saunders
2600298be8
Theme fixes
2020-01-20 10:37:54 +08:00
Daniel Saunders
c7e5cd6814
$board can be NULL here, prevent indexing it
...
Simplest 7.4 fix ever? Possibly.
2020-01-20 10:37:10 +08:00
Fredrick Brennan
5e809047ad
By default, no longer treat deprecations as errors
...
Close #363 .
See also https://www.youtube.com/watch?v=9crnlHLVdno
2020-01-20 10:04:39 +08:00
Fredrick Brennan
a2ba03849f
Fix PHP 7.4 deprecations
2020-01-20 10:04:39 +08:00
Fredrick Brennan
af06cf3737
Disable check_updates
by default
...
It no longer works and never will again, so...
2020-01-15 11:36:51 +08:00
rarjpg
63b0b92690
Move HTML Tidy 'bare' option to the config
2019-11-29 19:21:20 +08:00
rarjpg
0a3bca7dd8
Various fixes
2019-11-29 13:54:08 +08:00
Kureva
1613f6baea
Option to reset thread bump
after last post deleted.
2019-10-14 18:56:13 +08:00
Fredrick Brennan
9fdbc6c1f0
clarify previous commit
2019-09-22 18:58:10 +08:00
Fredrick Brennan
1173f86869
You can now pay for support
2019-09-22 18:54:50 +08:00
Daniel Saunders
e15e966cdb
Fix a bug related to deleting boards (see https://github.com/vichan-devel/vichan/issues/331 )
2019-09-22 16:57:12 +08:00
Fredrick Brennan
3a41c24e6e
Fix PHP 7.3 regression in ?/users
...
This gets rid of the "Case-insensitive constants are deprecated" error
by passing doing |upper before passing to constant().
2019-05-02 12:19:50 +08:00
Fredrick Brennan
23378e2623
Remove refs to abandoned domains; IRC channels
2019-04-19 12:23:47 +08:00
Fredrick Brennan
47e4af1eb1
Moved to vichan-devel/vichan wiki
...
I decided it made more sense to put these in our wiki than to distribute
them with vichan, so right after I added them I removed them.
They can now be read at https://github.com/vichan-devel/vichan/wiki -
and checked out from https://github.com/vichan-devel/vichan.wiki.git
2019-04-18 20:20:38 +08:00
Amsemy Teladi
14384ba1ee
Fix docs
2019-04-18 19:52:50 +08:00
Amsemy Teladi
a99c45de22
Save Tinyboard docs (2012-10-16) from web.archive.org
2019-04-18 19:52:50 +08:00
Brayden
997326af59
fix typo in inc/config.php
2019-03-22 10:02:38 +08:00
Circlepuller
dd5dbe65c7
Close #293
2019-03-09 11:54:18 +08:00
Fredrick Brennan
bcfb39bde8
remove superfluous ``and"
2018-11-21 13:37:33 +08:00
Fredrick Brennan
e0e0edc885
not anymore lol
2018-11-21 13:37:00 +08:00
Fredrick Brennan
84bb3833a6
add fact unix is required to readme
2018-11-21 13:35:57 +08:00
Fredrick Brennan
7514f31b36
count➜length in confeditor for PHP7.2
2018-10-12 14:47:38 +08:00
Fredrick Brennan
a2f938c814
Merge pull request #310 from H1K1CH4N/master
...
Adds a new theme called "Index"
2018-10-12 14:39:35 +08:00
H1K1CH4N
b1842dfe10
removed NPFchan copyright
2018-09-29 04:19:36 +02:00
H1K1CH4N
6f15b56b65
made the image header a little bit better in index theme
2018-09-27 04:58:05 +02:00
H1K1CH4N
44dcbca6c9
improved index theme css
2018-09-27 03:02:21 +02:00
H1K1CH4N
b8f1c219f0
Adds a new theme called "Index"
...
adds an option to use textarea in theme settings.
Merged most Basic, Recent and Frameset theme functions in one.
you can add a video picture icon and quote in the homepage.
@ctrlcctrlv feel free to add suggestions and fix bladly formed code or let me know and I will try to fix.
i installed it on my demo site: https://hikichan.com/
2018-09-27 00:41:22 +02:00
Fredrick Brennan
a510ebcab9
Remove "Donations" section, add note about php7.2
2018-09-18 14:15:41 +08:00
Fredrick Brennan
aeb4a31194
Close #304
2018-09-18 14:08:06 +08:00
Fredrick Brennan
f6cc993bce
Update README.md
...
+and other serious bugs
2018-08-08 18:51:56 +08:00
Fredrick Brennan
ac971f36d5
Fix capcodes in PHP7.2. Close #299
2018-07-27 20:08:03 +08:00
Fredrick Brennan
41cfd500de
Fix dashboard Countable on non-countable error
...
Only affected PHP7.2, was due to a sloppy template. PHP7.2 is much more
strict than previous versions so these kinds of bugs are coming to the
fore.
2018-07-27 19:40:44 +08:00
Fredrick Brennan
be2eafd4fc
Fix reports under PHP7.2
...
You'll need to delete all reports made before applying this patch for it
to work right. However, all reports made after applying this patch will
appear correctly in `mod.php?/reports`.
This closes #300 .
2018-07-27 19:40:32 +08:00
Fredrick Brennan
524d48110b
Fix bans of form "5d", "1y", etc. for PHP7.2
...
This closes #301 .
2018-07-27 19:06:31 +08:00
Fredrick Brennan
814b9246d4
Fix broken link in install.php
2018-07-27 18:48:27 +08:00
Fredrick Brennan
0aa4e3badc
Update Twig. This closes #295
2018-05-10 18:25:37 +08:00
Fredrick Brennan
b078ffb1e4
Close #282
2018-05-10 17:33:07 +08:00
Fredrick Brennan
ce72d9c8ee
Merge pull request #287 from antedeguemon/master
...
Update license and copyright dates
2018-03-02 14:55:56 +00:00
antedeguemon
b94bf5ec19
Update license and copyright dates
2018-03-01 22:57:53 -03:00
Fredrick Brennan
693fa1bdfa
Fix #284 for new installations _only_
...
Users with existing installations are still required to follow the
advice in security bulletin #284 .
This commit isn't perfect -- PHP installations below 7.0 and w/o OpenSSL
cannot be fully secured in my estimation. . .
2018-01-29 18:19:16 +08:00
Fredrick Brennan
6ae0f45c31
warn against new vichan installations
2018-01-23 18:57:25 +08:00
Fredrick Brennan
d55721d033
add my email to README for security problems
2018-01-15 22:18:17 +08:00
H0K4
b3e16cfa0d
fixed banned redirect i think ( #270 )
...
* fixed banned redirect i think
my tinyboard script has been altered a lot but i think this is the fix for the wrong ban redirect.
* maybe it's just this
2017-11-06 20:19:35 +08:00
Fredrick Brennan
464d3b4a04
Merge pull request #269 from H0K4/patch-1
...
Prevents multiple submit/copy when moving a thread/reply.
2017-11-06 11:21:51 +08:00
H0K4
e8edadeda9
Update move.html
2017-11-05 18:07:52 +01:00
H0K4
896d9e2f75
Update move_reply.html
2017-11-05 18:07:22 +01:00