summaryrefslogtreecommitdiff
AgeCommit message (Expand)Author
2023-08-31Merge branch 'develop' into 'tusooa/quote'tusooa/quotetusooa
2023-08-16Merge branch 'csp-flash' into 'develop'Haelwenn
2023-08-16Apply lanodan's suggestion(s) to 1 file(s)Haelwenn
2023-08-10Merge branch 'fix-dockerfile-perms' into 'develop'tusooa
2023-08-08Fix config ownership in dockerfile to pass restriction testCat pony Black
2023-08-06Merge branch 'disable-xml-entities-completely' into 'develop'Haelwenn
2023-08-05Completely disable xml entity resolutionmae
2023-08-05Merge branch 'docs/gentoo-otp-intro' into 'develop'Haelwenn
2023-08-05Merge branch 'mergeback/2.5.4' into 'develop'Haelwenn
2023-08-05Mergeback release 2.5.4Haelwenn (lanodan) Monnier
2023-08-05Document and test that XXE processing is disabledMark Felder
2023-08-05Add unit test for external entity loadingFloatingGhost
2023-08-04Prevent XML parser from loading external entitiesMae
2023-08-04gentoo_otp_en.md: Indicate which install method it coversHaelwenn (lanodan) Monnier
2023-08-04Merge branch 'mergeback/2.5.3' into 'develop'Haelwenn
2023-08-04Release 2.5.53Haelwenn (lanodan) Monnier
2023-08-04release_runtime_provider_test: chmod config for hardened permissionsHaelwenn (lanodan) Monnier
2023-08-04changelog: Entry for config permissions restrictionsHaelwenn (lanodan) Monnier
2023-08-04instance gen: Reduce permissions of pleroma directories and config filesHaelwenn (lanodan) Monnier
2023-08-04Config: Restrict permissions of OTP config fileHaelwenn (lanodan) Monnier
2023-08-04Resolve information disclosure vulnerability through emoji pack archive downl...Mark Felder
2023-08-03Merge branch 'tusooa/3154-attachment-type-check' into 'develop'Haelwenn
2023-07-28Merge branch 'fix/2927-disallow-unauthenticated-access' into 'develop'tusooa
2023-07-28add changelog entryfaried nawaz
2023-07-28cleaner ecto query to handle restrict_unauthenticated for activitiesFaried Nawaz
2023-07-28status context: perform visibility check on activities around a statusfaried nawaz
2023-07-18Restrict attachments to only uploaded files onlytusooa/3154-attachment-type-checktusooa
2023-07-17Merge branch '2023-06-deps-update' into 'develop'release/2.6.0Haelwenn
2023-07-13Fix quote_visible attributetusooa
2023-07-13Expose quote_id parameter on the apitusooa
2023-07-13Do not mention original poster when quotingtusooa
2023-07-12Fix config descriptions for mrf inline quotetusooa
2023-07-12Fix TransmogrifierTesttusooa
2023-07-12Make InlineQuotePolicy history awaretusooa
2023-07-12Add mrf to force link tag of quoting poststusooa
2023-07-12Keep incoming Link tagtusooa
2023-07-12Parse object link as quoteUrltusooa
2023-07-12Allow more flexibility in InlineQuotePolicytusooa
2023-07-10Fix CommonAPITesttusooa
2023-07-10Add changelogtusooa
2023-07-10Allow local quote and private self-quotetusooa
2023-07-10Unify logic for normalizing quoteUritusooa
2023-07-10InlineQuotePolicy: skip objects which already have an .inline-quote spanAlex Gleason
2023-07-10Actually, don't send _misskey_quote anymoreAlex Gleason
2023-07-10InlineQuotePolicy: improve the way Markdown quotes are displayed by other sof...Alex Gleason
2023-07-10Handle Fedibird's new quoteUri fieldAlex Gleason
2023-07-10Transmogrifier: federate quotes with _misskey_quote fieldAlex Gleason
2023-07-10StatusView: return quote post inside a reblogAlex Gleason
2023-07-10Add InlineQuotePolicy as a default MRFAlex Gleason
2023-07-10InlineQuotePolicy: don't add line breaks to markdown postsAlex Gleason