• last updated 4 hours ago
Constraints
Constraints: committers
 
Constraints: files
Constraints: dates
- set expiration to one day on portrait-bits

- hardening page contract

- return complaint-style messages when parameter constraints are violated

- document the merging of defaults in "get_parameter" from the command invocation and the defaults as provided in the xml file

- quote variable contents in ad_return_complaint messages

    • -3
    • +3
    /openacs-4/packages/xowiki/tcl/package-procs.tcl
    • -2
    • +2
    /openacs-4/packages/xowiki/tcl/xowiki-procs.tcl
- strengthen page contract and minor cleanup

- strengthen page contracts

- restrict format to "table" since "list" has non-trivial message key substitutions problems

- add validator for valid_period_days once more

    • -1
    • +9
    /openacs-4/packages/calendar/www/view.tcl
- improve behavior on invalid host headers and comment the purpose in more detail

- trying to make folder-create ore robust against invalid input

- addming missing message key

- fix typos in documentation

- fix invalid message key

    • -2
    • +2
    /openacs-4/packages/forums/www/message-post.tcl
- fix syntax in conditional page contract

- strengthen page contract

- improve error message

    • -2
    • +2
    /openacs-4/packages/calendar/www/view.tcl
- strengthen page contract

    • -2
    • +2
    /openacs-4/packages/calendar/www/view.tcl
- return always, when the parameter obj was found, the value (which might be the default)

- don't overquote general comments

- generalize tag validation

    • -6
    • +9
    /openacs-4/packages/xowiki/tcl/package-procs.tcl
    • -6
    • +8
    /openacs-4/packages/xowiki/tcl/weblog-procs.tcl
- hardening page contract

- improve handling of incorrect input

- terminate filter with filter_return when errors occur

- fix error message

- return for unset host entry ""

- add validate to user search

- fix HTML display of error message

- validate template id (rather than throwing an SQL error)

- allow post requests only from logged-in users

- allow empty port from provided host header

- add validation against invalid host header fields

- strenthen token checking of login form