stable
Clone or download
Read-only
request #19179: Potential XSS when accessing a file stored in a SVN repository
Direct to a file stored in a repo now always triggers a download instead of letting the browser decide what should be done. Change-Id: I0812ff32ed607425d573fdf1d8e225658f38acbc
Modified Files
Name | ||||
---|---|---|---|---|
M | .gitignore | +0 | −1 | Go to diff View file |
M | plugins/svn/etc/nginx/svn.conf | +5 | −0 | Go to diff View file |
M | src/common/svn/SVN_Apache.class.php | +0 | −1 | Go to diff View file |
M | src/etc/nginx/tuleap.d/06-svn.conf | +5 | −0 | Go to diff View file |
D | src/www/svn/repos-web/Cezanne-LICENSE.txt | +0 | −5 | Go to diff View file |
D | src/www/svn/repos-web/LICENSE-2.0.txt | +0 | −202 | Go to diff View file |
D | src/www/svn/repos-web/style/commands/16x16/back.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/commands/16x16/download.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/commands/16x16/history.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/commands/16x16/home.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/commands/16x16/parent.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/commands/16x16/refresh.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/commands/16x16/repository.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/commands/16x16/user.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/global.css | +0 | −204 | Go to diff View file |
D | src/www/svn/repos-web/style/repository/16x16/binary.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/16x16/file.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/16x16/folder.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/16x16/folder_branches.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/16x16/folder_tags.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/16x16/folder_trunk.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/ai.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/bmp.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/chm.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/doc.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/exe.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/gif.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/gz.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/htm.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/html.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/ics.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/jar.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/java.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/jpg.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/log.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/mpg.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/pdf.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/php.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/png.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/ps.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/psd.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/qt.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/sh.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/sit.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/sxw.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/tif.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/tmp.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/txt.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/vcf.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/filetypes/16x16/zip.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/style/repository/repository.css | +0 | −79 | Go to diff View file |
D | src/www/svn/repos-web/style/rowbackground.png | +- | −- | Go to diff View file |
D | src/www/svn/repos-web/view/repos.xsl | +0 | −264 | Go to diff View file |