Gitiles
Code Review
Sign In
www.giggi.me
/
code-igniter-v3-giggi
/
1d571971be8be78a92d31aad27dda4009770043f
/
system
/
core
/
Security.php
a10c8e1
Add strtolower to the HTTPS check
by Andrey Andreev
· 13 years ago
67ccdc0
Do not create a CSRF cookie if CSRF protection is not enabled
by Andrey Andreev
· 13 years ago
4562f2c
Some more stuff ...
by Andrey Andreev
· 13 years ago
8a7d078
Remove some tabs
by Andrey Andreev
· 13 years ago
bf70d62
Merge remote-tracking branch 'upstream/develop' into develop-core-security
by Andrey Andreev
· 13 years ago
352d60e
Merge pull request #850 from RS71/develop
by Phil Sturgeon
· 13 years ago
bb488dc
Improve the core Security library
by Andrey Andreev
· 13 years ago
0defe5d
Updating copyright date to 2012
by Greg Aker
· 13 years ago
2be25a6
Update system/core/Security.php
by RS71
· 13 years ago
03abee3
Fixing soft tabs in a few files.
by Greg Aker
· 13 years ago
c00a5a0
Merge master (2.1.0) and fixed conflicts.
by Phil Sturgeon
· 13 years ago
c38e3b6
Tweaking the xss filter for IE <comment> tags, parameter injection, and weird html5 attributes.
by Pascal Kriete
· 13 years ago
f4a4bd8
adding new license file (OSL 3.0) and updating readme to ReST
by Derek Jones
· 13 years ago
064da7b
Fix location file Security Class to core folder
by purwandi
· 13 years ago
3d113bd
Clean up core Security class
by Andrey Andreev
· 13 years ago
d93e6f3
Fix #484 - Hash is never set to the cookie
by Chris Berthe
· 13 years ago
e378a39
fixed issue #192
by Rommel Castro A
· 13 years ago
5c9b0d1
always use charset config item
by freewil
· 13 years ago
8cc0cfe
always use charset config item
by freewil
· 13 years ago
c696253
Merge remote-tracking branch 'alexbilbie/csrf-override' into feature/csrf-verify
by Eric Barnes
· 13 years ago
aeb2c3e
Added new config parameter "csrf_exclude_uris" which allows for URIs to be whitelisted from CSRF verification. Fixes #149
by Alex Bilbie
· 13 years ago
07b5342
Added some docs to CI core files
by David Behler
· 13 years ago
37f4b9c
backed out 648b42a75739, which was a NON-trivial whitespace commit. It broke the Typography class's string replacements, for instance
by Derek Jones
· 14 years ago
4b9c629
backed out 648b42a75739, which was a NON-trivial whitespace commit. It broke the Typography class's string replacements, for instance
by Derek Jones
· 14 years ago
114ab09
Fixed double-space typo.
by Razican
· 14 years ago
b3e614d
Change in core/Security.php to match coding standards.
by Greg Aker
· 14 years ago
9e26798
Fix: codeigniter-reactor/199 cookie name was overwritten with token name
by patwork
· 14 years ago
ef1a55a
Fix: codeigniter-reactor/199 CSRF config in Security class is no longer ignored
by patwork
· 14 years ago
14a0ac6
Moving security to core.
by Pascal Kriete
· 14 years ago
[Renamed from system/libraries/Security.php]
c9c045a
Improving parameter security in xss clean
by Pascal Kriete
· 14 years ago
33ed0f3
Merged CodeIgniter Core changes and integrated rob1's secure cookie change into my secure cookie change.
by Phil Sturgeon
· 14 years ago
14287f3
Whitespace cleanup in libraries/
by Pascal Kriete
· 14 years ago
154da11
Doy- forget the session cookie function! Added secure cookie config check there too.
by Robin Sowell
· 14 years ago
3bb336c
Automated merge with https://bitbucket.org/ellislab/codeigniter
by Phil Sturgeon
· 14 years ago
9805ecc
Added access scope to security library and added config options for csrf protection
by Eric Barnes
· 14 years ago
0711dc8
Hey look, it's 2011
by Greg Aker
· 14 years ago
a926328
Changing all class constructors to __construct()
by Greg Aker
· 14 years ago
741de1c
Updating PHP requirements in files 5.1.6
by Greg Aker
· 14 years ago
aa7d3f9
Automated merge with https://bitbucket.org/barrymieny/codeigniter
by Derek Jones
· 14 years ago
2ef3759
modified the security helper to assist in preventing directory traversal when using sanitize_filename() for user input
by Derek Jones
· 14 years ago
dd67197
Cleanup of stray spaces and tabs
by Barry Mieny
· 14 years ago
95b183ad
fixed spelling error in Security class property for the CSRF cookie
by Derek Jones
· 14 years ago
b3f10a2
separated the CSRF cookie name from the token, forced new token on successful POST
by Derek Jones
· 14 years ago
958543a
Adding CSRF into config Adding CSRF token into form open()
by Derek Allard
· 15 years ago
757dda6
Fixing a bug where odbc/mssql/oci8 db drivers would encounter a PHP error due to a function being moved from the input to security class.
by Greg Aker
· 15 years ago
a091147
moved entity_decode() to the Security library to handle an issue with HTML in input when the global XSS filter is enabled
by Derek Jones
· 15 years ago
e701d76
added Security library
by Derek Jones
· 15 years ago