• last updated 2 hours ago
Constraints
Constraints: committers
 
Constraints: files
Constraints: dates
- fix error message

- return for unset host entry ""

- add validate to user search

- fix HTML display of error message

- validate template id (rather than throwing an SQL error)

- allow post requests only from logged-in users

- allow empty port from provided host header

- add validation against invalid host header fields

- strenthen token checking of login form

- allow empty locale cookie

- return the invalid cookie in the error

- use filter_return to terminate filter on errors

- return complaint in case of invalid lanuguage setup

- add validator for locale (useful, when headers or locale-cookie were hacked)

- strengthen page contracts for return_urls

- provide an error message for invalid locale values

- don't swallow sliently exceptions

- improve robustness against incorrect input

Fix indentation from previous commit

Fixed problem when exporting empty variables pointed by Gustaf:

when one exported something like {{var ""} ... this was seen as absence of value,

so $var was searched for one in the caller scope. Hardened check for presence of an explicit value.

- validate email

- reject requests where host contains invalid characters

- improve formatting

- hardening page contract

    • -4
    • +20
    /openacs-4/packages/search/www/search.tcl
- make daysInMonth more robust, when year contains leading zeros

- strengthen page contract

- don't log errors on abort script operations

- add simple validator for email addresses

- add simple validator for email addresses

- fix case, where deleted_p is not set

- dont'report user-input unquoted

improve demo example: www/doc/demo/form.tcl

- add second validator

- protect against runtime errors from duplicate user_ids