1. 719b65d Fixed a bug in is_natural_no_zero by Rick Ellis · 16 years ago
  2. 44984d6 Updated the Session class so that if a database is being used, any custom data is stored to the DB rather then the cookie. by Rick Ellis · 16 years ago
  3. c2abf1f by Rick Ellis · 16 years ago
  4. d6b0649 Added two new functions: is_natural and is_natural_no_zero by Rick Ellis · 16 years ago
  5. 34d1914 Changed the output of the profiler to use style attribute rather then clear, and added the id "codeigniter_profiler" to the container div by Derek Allard · 16 years ago
  6. cbde3f0 changed entity standardization to require at least two characters after an ampersand before forcing a semi-colon by Derek Jones · 16 years ago
  7. afb056a by Rick Ellis · 16 years ago
  8. 0ea8f98 Added support for libraries in subdirectories by Rick Ellis · 16 years ago
  9. 30e9c53 added killing of nulls to _prep_quoted_printable() by Derek Jones · 16 years ago
  10. 3018465 fixed bug where dechex() was being fed the wrong variable for encoding space and tab characters at the end of a line of quoted-printable encoded content by Derek Jones · 16 years ago
  11. efb5a0d removed unnecessary foreach() loop for a str_replace() by Derek Jones · 17 years ago
  12. dd7f4a9 re-included URL encoded characters within _remove_invisible_characters() which were mistakenly pulled out in a previous commit, not released by Derek Jones · 17 years ago
  13. 68d7bd6 changed link and image regex to be more precise in matching tags, reducing false positive matches by Derek Jones · 17 years ago
  14. e8e18fe Changed regex for onfoo event handlers to prevent unwanted matching of text such as locatiON, cONtent, etc. by Derek Jones · 17 years ago
  15. 067e5dd whitespace by Derek Jones · 17 years ago
  16. 40f38f1 simplified regex for _remove_invisible_characters() - since we rawurldecode() the string, there's no need to go looking for url encoded characters here by Derek Jones · 17 years ago
  17. cc1be0f Moved the <label> output ability from the language library to a language helper (hotfix for 1.6.3) by Derek Jones · 17 years ago
  18. fd7943a Fixed a double opening &lt;p&gt; tag in the index pages of each system directory. by Derek Allard · 17 years ago
  19. ff845f9 changed your-site.com to example.com doc-wide by Derek Jones · 17 years ago
  20. d6c6998 fixed accidental removal of $converted_string in xss_clean() for image comparison by Derek Jones · 17 years ago
  21. fc18b00 added a bit of leeway for images to avoid the more common false-positives that using xss_clean() on image files might trigger by Derek Jones · 17 years ago
  22. 7aae905 Further improvements to xss_clean() by Derek Jones · 17 years ago
  23. db25721 Added the ability to automatically output language items as form labels in the Language class. by Derek Allard · 17 years ago
  24. d3ee041 Added get_post() to the Input class. Documented get() in the Input class. by Derek Allard · 17 years ago
  25. 9736d3f correcting some docblock comments by Derek Allard · 17 years ago
  26. 27a5aa1 added quoted-printable headers when $this->send_multipart has been manually changed to FALSE by Derek Jones · 17 years ago
  27. 57aea15 Removed an unused Router reference in _display_cache(). by Derek Allard · 17 years ago
  28. 7a3b96e picky picky Jones adjusts some syntax by Derek Jones · 17 years ago
  29. c1acb41 a few tweaks for speed by Derek Allard · 17 years ago
  30. 144cb5b simplified and refactored input filtering and retrieval by Derek Jones · 17 years ago
  31. c04f0fc emendation to on* event handler removal by Derek Jones · 17 years ago
  32. 92bb3e6 decided just to kill all on*= event handlers, rather than trying to keep up with (and require users to do the same) with a blacklist. by Derek Jones · 17 years ago
  33. 9f23e7c moved word compacting to a callback for clarity, added a few js event handlers for removal by Derek Jones · 17 years ago
  34. a459b46 Fixed a bug (#4561) where orhaving() wasn't properly passing values. by Derek Allard · 17 years ago
  35. 908ecc6 more complete protection against malformed link tags to protect against hex entities and href=data:url exploits by Derek Jones · 17 years ago
  36. c6238e9 customizable query string by Derek Allard · 17 years ago
  37. 8ddc0db Added support for query strings to the Pagination class, automatically detected or explicitly declared. by Derek Allard · 17 years ago
  38. bd08d84 improved security in xss_clean(), added <audio> and <video> tags to naughty HTML tags, and the HTML5 event handlers onerror and onended by Derek Jones · 17 years ago
  39. 5453b8e changed foreach() reindexing of segment arrays to array_unshift() - teensy tiny memory and speed improvement. by Derek Jones · 17 years ago
  40. ef40640 fixed regular expression in Image lib, CI bug #4542 by Derek Jones · 17 years ago
  41. 245038d addition xss protection against certain data urls, stripping of anything sent with utf-7 encoding by Derek Jones · 17 years ago
  42. 63fc5fe added ability to use xss_clean() to test images, and improved security for vectors particular to the Opera family of browsers by Derek Jones · 17 years ago
  43. d9d379c Set the mime type check in the Upload class to reference the global mimes variable. by Derek Allard · 17 years ago
  44. 454fa7e force closing tag on eval() for servers not running short_open_tags by Derek Jones · 17 years ago
  45. 000ab69 Hey you! Yeah, you, that other set of hardcoded arrays in xss_clean(). You're coming with me, pal! by Derek Jones · 17 years ago
  46. e3332b0 increased security and performance of xss_clean(), added _sanitize_naughty_html() callback and removed "never allowed" items to a class property by Derek Jones · 17 years ago
  47. a065bab The Zip class has undergone a substantial re-write for speed and clarity by Derek Allard · 17 years ago
  48. 0b59f27 Some sweeping syntax changes for consistency: by Derek Jones · 17 years ago
  49. 5cf6647 adjusted eval() statement in Loader to accommodate servers with short_open_tag disabled with the new change of removing closing PHP tags from files by Derek Jones · 17 years ago
  50. 0fd8f02 minor source formatting by Derek Allard · 17 years ago
  51. 62bd430 preg_split changed to explode by Derek Allard · 17 years ago
  52. 20d2405 substr checks swapped out with strncmp by Derek Allard · 17 years ago
  53. 751506e fixed a misspelling in the Input library of CDATA by Derek Allard · 17 years ago
  54. 15dcf49 removed an ereg from config by Derek Allard · 17 years ago
  55. 53437de Added protection in xss_clean() for GET variables in URLs by Derek Jones · 17 years ago
  56. c14968d changed $xmlrpcDateTime property to all lowercase 'datetime.iso8601' so it can be recognized as a valid XML-RPC type by Derek Jones · 17 years ago
  57. d56743b fixed a bug that would lead to a PHP notice error of array to string conversion in prep_for_form() by Derek Jones · 17 years ago
  58. 500fa6c changed overlay_watermark() to check for an alpha value before applying the image to help support PNG-24s with alpha transparency by Derek Jones · 17 years ago
  59. a3ffbbb Removed closing PHP tags, replaced with a comment block identifying the end of the file by Derek Jones · 17 years ago
  60. c7deac9 Undoing change committed in r1115 by Derek Jones · 17 years ago
  61. 5583e1a removed closing PHP tag from all framework files by Derek Jones · 17 years ago
  62. af4a8a0 added dot transformation to body of email when sending via SMTP by Derek Jones · 17 years ago
  63. 8e94646 removed extraneous error message from Upload lib on failure of validate_upload_path() by Derek Jones · 17 years ago
  64. 044379d added 'object' key to the XML-RPCS config allowing the passing of a class object for method calls that aren't part of the CI super object by Derek Jones · 17 years ago
  65. 40306b5 Fixed a bug where $data was not being converted to an array properly in set_rules() by Derek Jones · 17 years ago
  66. 4dc0618 Fixed bug with recursive deletes in delete_dir() by Derek Jones · 17 years ago
  67. 62a9020 removed SCRIPT_NAME from path provided by ORIG_PATH_INFO to remove the path and script name from the URI data by Derek Jones · 17 years ago
  68. be8ec80 Fixed a bug in the table library that could cause identically constructed rows to be dropped (#3459). by Derek Allard · 17 years ago
  69. ff390bd DB Forge is now assigned to any models that exist after loading (#3457). by Derek Allard · 17 years ago
  70. 3be20e2 tweak to the new fopen mode constant names by Derek Jones · 17 years ago
  71. 14031d1 implemented fopen mode constants by Derek Jones · 17 years ago
  72. 7327499 Added get_dir_file_info(), get_file_info(), and get_mime_by_extension() to the File Helper. by Derek Allard · 17 years ago
  73. c39d202 The Zip class now exits within download(). by Derek Allard · 17 years ago
  74. b94b89c Added a valid_emails rule to the Validation class. by Derek Allard · 17 years ago
  75. f9d5348 Unit Testing results are now colour coded, and a change was made to the default template of results. by Derek Allard · 17 years ago
  76. 7c53be4 Added the ability to set CRLF settings via config in the Email class. by Derek Allard · 17 years ago
  77. 27b5005 added check to make sure the URI path is not constructed entirely of slashes in URI::_fetch_uri_string() by Derek Jones · 17 years ago
  78. 3ad8efe added constants.php file and implemented constants for file system modes by Derek Jones · 17 years ago
  79. 72c82c1 include() vs include_once() allows for multiple views with the same name by Derek Allard · 17 years ago
  80. d888c35 changed include into include_once by Derek Allard · 17 years ago
  81. 9c4280b added hashing to prevent client side data tampering to sessions by Derek Allard · 17 years ago
  82. 6ef8b69 added filename prepping in the Upload library to prevent files with multiple extensions to potentially be parsed as a script by Apache by Derek Jones · 17 years ago
  83. 4acd41a restore a comment by Derek Allard · 17 years ago
  84. 8a16077 added improved check for controller method access so that CI does not attempt to load private or protected controller methods by Derek Jones · 17 years ago
  85. 964366d changed conditional for empty cells to not match on variables that would be loosely cast as an empty string by Derek Jones · 17 years ago
  86. 80ddb6b Moved the safe mode and auth checks for the Email library into the constructor by Derek Allard · 17 years ago
  87. b069789 removed the array_diff comparison in _reindex_segments(). That conditional and use of those functions is probably slower than looping through both arrays, even if someone went crazy with dozens of URI segments. by Derek Jones · 17 years ago
  88. 881a79e Fixed bug (#3445) where the routed segment array when the default controller is used was not being re-indexed to begin with 1 by Derek Jones · 17 years ago
  89. eb002ff adding is_numeric back into validation library by Derek Allard · 17 years ago
  90. b35c3f5 changed order of SQL keywords in the $highlight array so OR would not be highlighted before ORDER BY by Derek Jones · 17 years ago
  91. 0ea06fd * Fixed a bug (#3396) where certain POST variables would cause a PHP warning. by Derek Jones · 17 years ago
  92. ab32a42 changed URL decoding implementation of xss_clean() to use rawurldecode() to discontinue misconversion of characters to bad entities, and to continue avoidance of unwanted removal of + signs by Derek Jones · 17 years ago
  93. 72d6133 Fixed bug #1813 - added check for $CI->db isset() and is_object() before returning false in Loader::database() by Derek Jones · 17 years ago
  94. 63df95e removed last_visit from the Session class by Derek Jones · 17 years ago
  95. c38c703 bugfix (#1842) - added 'index' to routed segment array when only the controller was specified in the URI. by Derek Jones · 17 years ago
  96. d45379e Fixed a bug (#3269) where the rsegment array would not be set properly when there is no URI request. by Derek Jones · 17 years ago
  97. f37fa6e Fixed a bug (#2679) where the "previous" pagination link would get drawn on the first page. by Derek Allard · 17 years ago
  98. 240292e fixed bug (#3284) where the $rsegment array would not be set properly if the requested URI contained more segments than the routed URI. by Derek Jones · 17 years ago
  99. 2712610 fixed bug (#3321) where the uri_string was not being set properly when retrieved from $_GET (segment based GET, not ?c=controller) by Derek Jones · 17 years ago
  100. 15a3477 fixed a syntax bug in strip_imge_tags by Derek Allard · 17 years ago