Claire
3445bdfa45
Merge pull request from GHSA-9928-3cp5-93fm
...
* Fix attachments getting processed despite failing content-type validation
* Add a restrictive ImageMagick security policy tailored for Mastodon
* Fix misdetection of MP3 files with large cover art
* Reject unprocessable audio/video files instead of keeping them unchanged
1 year ago
Claire
96dcfa9745
Merge pull request from GHSA-ccm4-vgcc-73hp
...
* Tighten allowed HTML in oEmbed-based preview cards
* Sanitize preview cards at render time
* Add `sandbox` attribute to preview card iframes
1 year ago
Claire
5154acdb9f
Add hardened headers to user-uploaded files ( #25756 )
1 year ago
Eugen Rochko
90911f4396
Add canonical link tags in web UI ( #25715 )
1 year ago
Eugen Rochko
5b05451744
Add button to see results for polls in web UI ( #25726 )
1 year ago
Claire
cac4f7fdd7
Fix OAuth apps page crashing when listing apps with certain admin API scopes ( #25713 )
1 year ago
Claire
1aa9197efd
Fix re-activated accounts being deleted by AccountDeletionWorker ( #25711 )
1 year ago
Trevor Wolf
b34a0ff011
fix read more button overlapping thread line bug ( #25706 )
1 year ago
Claire
2c31ac0c39
Fix forgotten unconfirmed_email migration file ( #25702 )
1 year ago
mogaminsk
f3ca8aede9
Fix local live feeds does not expand ( #25694 )
1 year ago
forsamori
7731fbbba7
Add at-symbol prepended to mention span title ( #25684 )
...
Co-authored-by: Sam BC <samuel.balbirnie-cumming@xdesign.com>
1 year ago
Eugen Rochko
80fee1403f
Change labels of live feeds tabs in web UI ( #25683 )
1 year ago
Daniel M Brasil
2b877ad937
Fix `/api/v2/search` not working with following query param ( #25681 )
1 year ago
Eugen Rochko
12c6337c96
Fix regression of icon button colors in web UI ( #25679 )
1 year ago
Trevor Wolf
5f31104e1f
Change button colors to increase hover/focus contrast and consistency ( #25677 )
1 year ago
Claire
4885232358
Add users index on unconfirmed_email ( #25672 )
1 year ago
Claire
e052b71f15
Add superapp index on `oauth_applications` ( #25670 )
1 year ago
Claire
fe1735f409
Fix inefficient query when requesting a new confirmation email from a logged-in account ( #25669 )
1 year ago
Eugen Rochko
edb6aab974
Revert "Rails 7 update" ( #25667 )
1 year ago
mogaminsk
ee22b32aef
Prevent duplicate concurrent calls of `/api/*/instance` in web UI ( #25663 )
1 year ago
Eugen Rochko
f504aded26
Change dropdown icon above compose form from ellipsis to bars in web UI ( #25661 )
1 year ago
Matt Jankowski
5cadbaa296
Rails 7 update ( #24241 )
1 year ago
Daniel M Brasil
2f17abc686
Fix HTTP 500 in `/api/v1/emails/check_confirmation` ( #25595 )
1 year ago
Claire
6ca66c8cad
Change local and federated timelines to be in a single firehose column ( #25641 )
1 year ago
Matt Jankowski
8e2e36ba0c
Update uri to version 0.12.2 (CVE fix) ( #25657 )
1 year ago
Matt Jankowski
c1f496d2fb
Remove unused routes ( #25578 )
1 year ago
Matt Jankowski
843448c7d9
Fix rails `rewhere` deprecation warning in directories api controller ( #25625 )
1 year ago
Matt Jankowski
54c3204834
Add index to backups on `user_id` column ( #25647 )
1 year ago
Renaud Chaput
2751a6d716
Use an Immutable Record as the root state ( #25584 )
1 year ago
Claire
1408b62211
Fix onboarding prompt being displayed because of disconnection gaps ( #25617 )
1 year ago
Eugen Rochko
377238ab0e
Update Crowdin configuration file
1 year ago
Renaud Chaput
d0f4ce8fa8
Remove `pkg-config` gem dependency ( #25615 )
1 year ago
Claire
85dc0869a5
Fix ResolveURLService not resolving local URLs for remote content ( #25637 )
1 year ago
jsgoldstein
5d75bf9846
Change account search to match by text when opted-in ( #25599 )
...
Co-authored-by: Eugen Rochko <eugen@zeonfederated.com>
1 year ago
Claire
7a47a52cd3
Remove the search button from UI header when logged out ( #25631 )
1 year ago
Claire
92fbaae7b6
Fix suspending an already-limited domain ( #25603 )
1 year ago
renovate[bot]
5e18962962
Update dependency glob to v10.3.0 ( #25608 )
...
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
1 year ago
renovate[bot]
4ea45ce3bc
Update mcr.microsoft.com/devcontainers/ruby Docker tag to v1 ( #25613 )
...
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
1 year ago
renovate[bot]
51af55a38d
Update dependency pg to v8.11.1 ( #25604 )
...
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
1 year ago
renovate[bot]
338334e21a
Update dependency pg-connection-string to v2.6.1 ( #25605 )
...
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
1 year ago
renovate[bot]
f7ba6af02c
Update dependency react-textarea-autosize to v8.5.0 ( #25610 )
...
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
1 year ago
renovate[bot]
9123a25a84
Update dependency sass to v1.63.6 ( #25607 )
...
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
1 year ago
renovate[bot]
efd48f3c08
Update dependency rails to v6.1.7.4 ( #25606 )
...
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
1 year ago
Claire
1569b36e28
Fix batch attachment deletion leaving empty directories ( #25587 )
1 year ago
renovate[bot]
ee350f0491
Update dependency react-redux to v8.1.1 ( #25432 )
...
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
1 year ago
S.H
2c6f88ad71
Remove media attachment only when file was exist ( #25586 )
1 year ago
Eugen Rochko
bcee25e36c
Change files to be deleted in batches instead of one-by-one ( #23302 )
1 year ago
Renaud Chaput
ff9ed824db
Improve dismissable banner buttons when they dont fit on 1 line ( #25580 )
...
Co-authored-by: Claire <claire.github-309c@sitedethib.com>
1 year ago
Claire
1164011bad
Fix compose form not being shown when clicking “Make your first post” on mobile ( #25581 )
1 year ago
Eugen Rochko
65b5808421
Change header backgrounds to use fewer different colors in web UI ( #25577 )
1 year ago