Benjamin DALSASS
3a435eba7d
Merge remote-tracking branch 'origin/support/3.2' into develop
2026-03-20 14:37:01 +01:00
Benjamin Dalsass
170014e8f0
N°9232 - Information Disclosure ( #850 )
2026-03-20 14:35:05 +01:00
Stephen Abello
df05a4688e
Merge branch 'support/3.2' into develop
...
# Conflicts:
# js/searchformforeignkeys.js
2026-03-19 09:24:10 +01:00
Stephen Abello
2a16143e53
N°9229 - Modernize search foreign keys code with built in JS tools ( #847 )
...
* N°9229 - Modernize search foreign keys code with built in JS tools
* N°9229 - Allow modals to have button id specified
* N°9229 - Remove the modal instead of only destroying it
* N°9229 - Remove dead code
* Update js/searchformforeignkeys.js
* Add robustness to modals button id
2026-03-18 15:23:52 +01:00
Benjamin DALSASS
7c8670b57c
Merge remote-tracking branch 'origin/support/3.2' into develop
...
# Conflicts:
# core/attributedef.class.inc.php
# setup/extensionsmap.class.inc.php
# tests/php-unit-tests/composer.lock
2026-03-17 08:05:10 +01:00
Lenaick
28db230697
N°9233 - Check user access before acquiring lock on object ( #844 )
2026-03-16 17:07:26 +01:00
Benjamin DALSASS
b3613b6c4b
Merge remote-tracking branch 'origin/support/3.2' into develop
2026-03-09 08:42:39 +01:00
Lenaick
104dd1970f
N°9230 - Sanitize dashboard_id parameter in "revert_dashboard" operation of AJAX render function ( #828 )
2026-03-05 15:55:28 +01:00
Eric Espie
dad39c3ebe
Merge support/3.2 into develop
2026-02-24 13:55:55 +01:00
Stephen Abello
aede5ea7b8
Fix CI by updating files code style
2026-02-23 16:25:08 +01:00
Stephen Abello
da6c443a35
Fix CI by updating files code style
2026-02-23 16:08:20 +01:00
Stephen Abello
9c39efd9af
N°8549 - Update inline images secret ( #815 )
2026-02-23 15:42:21 +01:00
Benjamin DALSASS
454a1b26eb
N°8603 N°8601 - Remove unnecessary quotes in reload url injection
2026-02-23 10:22:10 +01:00
Benjamin Dalsass
330539abd2
N°8601 N°8603 dashboards issues ( #813 )
2026-02-23 06:51:40 +01:00
odain
b0a792afab
N°8796 - Add PHP code style validation in iTop and extensions - format whole code base
2025-11-07 20:39:38 +01:00
odain
890a2568c8
N°8796 - Add PHP code style validation in iTop and extensions - format whole code base
2025-11-07 15:39:53 +01:00
odain-cbd
696e2c9565
N°4720 - Remove old unreferenced methods or pages that are @deprecated ( #747 )
...
* N°4720 - Remove old unreferenced methods that are @deprecated
* N°4720-Config addson getter/setter removal
* small deprecation removal
* revert @deprecation 3.3 removal: ResizeImageToFit
* small deprecation removal
* revert deprecation 3.3 removal: Config/GSetAddons
2025-09-11 15:52:00 +02:00
Timmy38
71386198cf
N°3124 - Refactorize ResizeImageToFit methods ( #734 )
2025-08-08 10:43:35 +02:00
Anne-Cath
5b9e0a1d4f
N°3817 - Audit and fix calls to deprecated jQuery method
2025-08-06 19:47:57 +02:00
Benjamin Dalsass
5aeb408edd
N°4717 - Remove ajax.render.php xlsx_* operations
2025-08-01 08:15:26 +02:00
Molkobain
119dcf9c97
N°7730 - Rename constant as it is actually for ID and class selectors, not only IDs
2024-08-26 13:55:03 +02:00
Eric Espie
b7d14ca48e
N°7730 - code hardening
2024-08-26 13:55:03 +02:00
jf-cbd
0ee1818f12
N°7732 - CSRF protection generating error when cancelling the creation of an object
...
N°7741 - PDF export on impact analysis not working
2024-08-07 17:56:34 +02:00
jf-cbd
0d9f348e93
🎨 Reformatting log channels name
2024-07-05 12:05:51 +02:00
Molkobain
c3582f0aff
N°7552 - Fix mentions not taking triggers filter into account
2024-07-04 11:30:51 +02:00
jf-cbd
8b35679fcf
N°7124 - Security hardening
2024-07-03 15:51:43 +02:00
jf-cbd
98f946c871
N°7124 - [SECU] Cross-Site Request Forgery (CSRF) in several iTop pages (finalize implementation)
2024-07-02 17:14:55 +02:00
jf-cbd
46929ce43f
Remove header check in ajax.render.php
2024-06-07 10:03:49 +02:00
jf-cbd
9d1c66296b
N°7124 - [SECU] Cross-Site Request Forgery (CSRF) in several iTop pages
2024-06-06 17:10:49 +02:00
Eric Espie
67762458e4
Merge remote-tracking branch 'origin/support/3.1' into support/3.2
2024-05-30 12:08:11 +02:00
Eric Espie
3e3ac0d83f
N°7542 - code hardening
2024-05-30 12:04:36 +02:00
Molkobain
ad36066126
📝 Copyright year bump
2024-05-06 18:35:31 +02:00
jf-cbd
3dccf9ee3f
Merge remote-tracking branch 'refs/remotes/origin/support/3.1' into support/3.2
2024-04-30 10:57:46 +02:00
jf-cbd
02be397e8f
Merge remote-tracking branch 'refs/remotes/origin/support/3.0' into support/3.1
2024-04-30 10:57:06 +02:00
jf-cbd
61469a28b9
N°7445 - Invalid Unicode escape sequence on dashlet Header with statistics
2024-04-30 10:56:09 +02:00
jf-cbd
24cf28f09a
Merge remote-tracking branch 'refs/remotes/origin/support/3.1' into support/3.2
2024-04-30 08:15:15 +02:00
jf-cbd
9ff54cead8
Merge remote-tracking branch 'refs/remotes/origin/support/3.0' into support/3.1
2024-04-30 08:14:11 +02:00
jf-cbd
dbcbb187b2
N°7445 - Invalid Unicode escape sequence on dashlet Header with statistics
2024-04-30 08:13:37 +02:00
jf-cbd
71b4d672d4
Merge remote-tracking branch 'refs/remotes/origin/support/3.0' into support/3.1
...
# Conflicts:
# pages/ajax.render.php
2024-04-30 08:04:45 +02:00
jf-cbd
93bba66323
N°7445 - Invalid Unicode escape sequence on dashlet Header with statistics
2024-04-30 08:03:14 +02:00
jf-cbd
e3173810fd
Merge branch 'refs/heads/support/3.1' into support/3.2
...
# Conflicts:
# pages/ajax.render.php
2024-04-19 15:30:48 +02:00
jf-cbd
3b7f26d794
Revert "Merge branch 'refs/heads/support/3.1' into support/3.2"
...
This reverts commit 6ff60080a1 , reversing
changes made to 9d195d6fa0 .
2024-04-19 15:26:15 +02:00
jf-cbd
7fba61ff35
N°7445 - Invalid Unicode escape sequence on dashlet Header with statistics
2024-04-19 15:21:48 +02:00
jf-cbd
1bf156bdda
Revert "Merge branch 'refs/heads/support/3.0' into support/3.1"
...
This reverts commit 1164e757de , reversing
changes made to 1235452a1b .
2024-04-19 15:16:57 +02:00
jf-cbd
514e0b80a5
N°7445 - Invalid Unicode escape sequence on dashlet Header with statistics
2024-04-19 11:17:09 +02:00
Pierre Goiffon
4ee70cb95a
Merge remote-tracking branch 'origin/support/2.7' into support/3.0
...
# Conflicts:
# application/ajaxwebpage.class.inc.php
# application/csvpage.class.inc.php
# application/itopwebpage.class.inc.php
# application/webpage.class.inc.php
# application/xmlpage.class.inc.php
# datamodels/2.x/itop-hub-connector/hubconnectorpage.class.inc.php
# pages/ajax.document.php
# pages/ajax.render.php
# sources/application/TwigBase/Controller/Controller.php
# webservices/export-v2.php
2023-12-19 18:38:45 +01:00
Pierre Goiffon
9865bf0779
N°4368 add sending X-Content-Type-Options HTTP header
...
Replace in consumers the \WebPage::add_xframe_options call by \WebPage::add_http_headers
2023-12-19 18:25:26 +01:00
Pierre Goiffon
da27ddba82
Merge remote-tracking branch 'origin/support/2.7' into support/3.0
...
# Conflicts:
# application/utils.inc.php
# pages/ajax.render.php
2023-10-13 17:27:03 +02:00
Pierre Goiffon
c72cb7e70e
N°6606 security hardening
2023-10-13 17:15:37 +02:00
Stephen Abello
3647291475
N°6778 - Security hardening
2023-10-02 15:06:17 +02:00