Wed, 12 Dec 2007 21:04:20 -0500 SECURITY: CRITICAL: Fix SQL injection in admin CP page editor
Dan [Wed, 12 Dec 2007 21:04:20 -0500] rev 316
SECURITY: CRITICAL: Fix SQL injection in admin CP page editor
Tue, 11 Dec 2007 19:15:26 -0500 Fixed focus of AJAX login form fields in IE; removed stale/unused call to $template->makeParserText() in paginate_array(); added hook page_create_request to possibly help control creation of pages of certain namespaces from plugins; fixed critical bug in user CP that prevented plugins from adding custom CP modules
Dan [Tue, 11 Dec 2007 19:15:26 -0500] rev 315
Fixed focus of AJAX login form fields in IE; removed stale/unused call to $template->makeParserText() in paginate_array(); added hook page_create_request to possibly help control creation of pages of certain namespaces from plugins; fixed critical bug in user CP that prevented plugins from adding custom CP modules
Fri, 07 Dec 2007 18:47:37 -0500 Localized remainder of on-page tools and parts of PageProcess
Dan [Fri, 07 Dec 2007 18:47:37 -0500] rev 314
Localized remainder of on-page tools and parts of PageProcess
Fri, 07 Dec 2007 16:42:22 -0500 Merging in changes from stable
Dan [Fri, 07 Dec 2007 16:42:22 -0500] rev 313
Merging in changes from stable
Mon, 03 Dec 2007 18:45:37 -0500 Improved physical pages: they support comments and have their own dedicated namespace now. Still some consistency fixes to make.
Dan [Mon, 03 Dec 2007 18:45:37 -0500] rev 312
Improved physical pages: they support comments and have their own dedicated namespace now. Still some consistency fixes to make.
Mon, 03 Dec 2007 17:36:25 -0500 Deprecated debugConsole and removed all calls to it. Added a lot of comments to common.php. Added support for "anonymous pages" that are created when the Enano API is loaded from an external script. Fixed missing border-bottom on Type 2 sidebar blocks in Oxygen.
Dan [Mon, 03 Dec 2007 17:36:25 -0500] rev 311
Deprecated debugConsole and removed all calls to it. Added a lot of comments to common.php. Added support for "anonymous pages" that are created when the Enano API is loaded from an external script. Fixed missing border-bottom on Type 2 sidebar blocks in Oxygen.
Sun, 02 Dec 2007 16:00:56 -0500 Merging in a couple more revisions from stable
Dan [Sun, 02 Dec 2007 16:00:56 -0500] rev 310
Merging in a couple more revisions from stable
Sat, 01 Dec 2007 02:39:49 -0500 Fixed: sanitation loop on ampersands in encodeAttribute() (this was MediaWiki's fault)
Dan [Sat, 01 Dec 2007 02:39:49 -0500] rev 309
Fixed: sanitation loop on ampersands in encodeAttribute() (this was MediaWiki's fault)
Sat, 01 Dec 2007 00:35:42 -0500 Stable release: Enano CMS 1.0.2 (Coblynau)
Dan [Sat, 01 Dec 2007 00:35:42 -0500] rev 308
Stable release: Enano CMS 1.0.2 (Coblynau)
Sat, 01 Dec 2007 00:35:15 -0500 Dummy revision to artificially increment build number 1.0.2
Dan [Sat, 01 Dec 2007 00:35:15 -0500] rev 307
Dummy revision to artificially increment build number
Sat, 01 Dec 2007 00:34:03 -0500 Fix missing dependency on search.php in upgrade script
Dan [Sat, 01 Dec 2007 00:34:03 -0500] rev 306
Fix missing dependency on search.php in upgrade script
Sat, 01 Dec 2007 00:32:58 -0500 Detagging release due to stupid upgrade fix
Dan [Sat, 01 Dec 2007 00:32:58 -0500] rev 305
Detagging release due to stupid upgrade fix
Sun, 02 Dec 2007 16:00:10 -0500 Merging in the newly stable Coblynau
Dan [Sun, 02 Dec 2007 16:00:10 -0500] rev 304
Merging in the newly stable Coblynau
Fri, 30 Nov 2007 23:09:44 -0500 Stable release: Enano CMS 1.0.2 (Coblynau)
Dan [Fri, 30 Nov 2007 23:09:44 -0500] rev 303
Stable release: Enano CMS 1.0.2 (Coblynau)
Fri, 30 Nov 2007 22:16:26 -0500 How could I forget the TRADEMARK SIGN?
Dan [Fri, 30 Nov 2007 22:16:26 -0500] rev 302
How could I forget the TRADEMARK SIGN?
Fri, 30 Nov 2007 22:13:03 -0500 Updated artwork with finalized new/revised logo; finalized upgrade schema
Dan [Fri, 30 Nov 2007 22:13:03 -0500] rev 301
Updated artwork with finalized new/revised logo; finalized upgrade schema
Wed, 28 Nov 2007 15:24:23 -0500 Add installer pop-help topic for URL scheme, in response to http://forum.enanocms.org/viewtopic.php?f=5&t=19
Dan [Wed, 28 Nov 2007 15:24:23 -0500] rev 300
Add installer pop-help topic for URL scheme, in response to http://forum.enanocms.org/viewtopic.php?f=5&t=19
Wed, 28 Nov 2007 14:47:42 -0500 Oops, never merged in updates from ee1fc84f12a8 (240)
Dan [Wed, 28 Nov 2007 14:47:42 -0500] rev 299
Oops, never merged in updates from ee1fc84f12a8 (240)
Wed, 28 Nov 2007 14:46:03 -0500 Hopefully now all calls to escape() are replaced with ajaxEscape() in response to Tomasz's forum post; remove deprecated version of show_category_info() from functions.php
Dan [Wed, 28 Nov 2007 14:46:03 -0500] rev 298
Hopefully now all calls to escape() are replaced with ajaxEscape() in response to Tomasz's forum post; remove deprecated version of show_category_info() from functions.php
Sun, 25 Nov 2007 21:40:42 -0500 SECURITY: Tighten default allowed file types; make sure search index rebuild is performed on upgrade
Dan [Sun, 25 Nov 2007 21:40:42 -0500] rev 297
SECURITY: Tighten default allowed file types; make sure search index rebuild is performed on upgrade
Sun, 25 Nov 2007 21:18:52 -0500 Final development freeze for release: 1.0.2 (Coblynau); only critical bugs fixed until GA
Dan [Sun, 25 Nov 2007 21:18:52 -0500] rev 296
Final development freeze for release: 1.0.2 (Coblynau); only critical bugs fixed until GA
Sun, 25 Nov 2007 20:24:16 -0500 Add warning in installer for PHP < 5.2.0; hopefully fix validation of e-mail addresses with dashes
Dan [Sun, 25 Nov 2007 20:24:16 -0500] rev 295
Add warning in installer for PHP < 5.2.0; hopefully fix validation of e-mail addresses with dashes
Sun, 25 Nov 2007 19:23:50 -0500 Nothing special. ksort()ing list of allowed filetypes in the admin panel to make editing the list marginally easier
Dan [Sun, 25 Nov 2007 19:23:50 -0500] rev 294
Nothing special. ksort()ing list of allowed filetypes in the admin panel to make editing the list marginally easier
Sun, 25 Nov 2007 19:03:50 -0500 Added OpenDocument MIME types and extensions; make sql_report page show total time taken for SQL queries
Dan [Sun, 25 Nov 2007 19:03:50 -0500] rev 293
Added OpenDocument MIME types and extensions; make sql_report page show total time taken for SQL queries
Sun, 25 Nov 2007 17:53:03 -0500 Fixed highlighting in search results; changed search algorithm to give more score for terms found in page title; hopefully (hackishly) fixed login_key_cache getting too long
Dan [Sun, 25 Nov 2007 17:53:03 -0500] rev 292
Fixed highlighting in search results; changed search algorithm to give more score for terms found in page title; hopefully (hackishly) fixed login_key_cache getting too long
Sat, 24 Nov 2007 13:16:20 -0500 A couple of minor tweaks to the upgrade schema; tests pending
Dan [Sat, 24 Nov 2007 13:16:20 -0500] rev 291
A couple of minor tweaks to the upgrade schema; tests pending
Sat, 24 Nov 2007 02:11:43 -0500 The template-cache incompatibility bug has finally been isolated, so a function to clear the template cache was added into the upgrade script for 1.0.2
Dan [Sat, 24 Nov 2007 02:11:43 -0500] rev 290
The template-cache incompatibility bug has finally been isolated, so a function to clear the template cache was added into the upgrade script for 1.0.2
Sat, 24 Nov 2007 01:35:12 -0500 Fixed a few major bugs with the upgrade script and the config file not getting loaded properly due to IN_ENANO_INSTALL
Dan [Sat, 24 Nov 2007 01:35:12 -0500] rev 289
Fixed a few major bugs with the upgrade script and the config file not getting loaded properly due to IN_ENANO_INSTALL
Sat, 24 Nov 2007 01:04:30 -0500 Hopefully once again fix scriptPath detection in dbal.php
Dan [Sat, 24 Nov 2007 01:04:30 -0500] rev 288
Hopefully once again fix scriptPath detection in dbal.php
Sat, 24 Nov 2007 01:02:55 -0500 Fix missing REPORT_URI variable in template_nodb
Dan [Sat, 24 Nov 2007 01:02:55 -0500] rev 287
Fix missing REPORT_URI variable in template_nodb
Sat, 24 Nov 2007 00:53:23 -0500 Fixed a number of issues with SQL query readability and some undefined index-ish errors; consequently the SQL report feature was added
Dan [Sat, 24 Nov 2007 00:53:23 -0500] rev 286
Fixed a number of issues with SQL query readability and some undefined index-ish errors; consequently the SQL report feature was added
Fri, 23 Nov 2007 17:59:24 -0500 Changed all urlname/page_id columns to varchar(255) because 63 characters just isn't long enough
Dan [Fri, 23 Nov 2007 17:59:24 -0500] rev 285
Changed all urlname/page_id columns to varchar(255) because 63 characters just isn't long enough
Thu, 22 Nov 2007 02:10:12 -0500 Made the username validation regexp in install less picky since it was blacklisting two of the letters in my name. >.<
Dan [Thu, 22 Nov 2007 02:10:12 -0500] rev 284
Made the username validation regexp in install less picky since it was blacklisting two of the letters in my name. >.<
Wed, 21 Nov 2007 22:50:08 -0500 Feature freezing repository for Coblynau release
Dan [Wed, 21 Nov 2007 22:50:08 -0500] rev 283
Feature freezing repository for Coblynau release
Wed, 21 Nov 2007 22:49:37 -0500 Entering feature freeze for Coblynau release
Dan [Wed, 21 Nov 2007 22:49:37 -0500] rev 282
Entering feature freeze for Coblynau release
Wed, 21 Nov 2007 21:56:49 -0500 AJAX login box now briefly shows the message "success" when a login is successful
Dan [Wed, 21 Nov 2007 21:56:49 -0500] rev 281
AJAX login box now briefly shows the message "success" when a login is successful
Sun, 02 Dec 2007 15:27:21 -0500 Fix minor typo in installer
Dan [Sun, 02 Dec 2007 15:27:21 -0500] rev 280
Fix minor typo in installer
Wed, 21 Nov 2007 21:03:48 -0500 Merging in updates and improvements from stable
Dan [Wed, 21 Nov 2007 21:03:48 -0500] rev 279
Merging in updates and improvements from stable
Wed, 21 Nov 2007 20:45:50 -0500 Language fix in the install script; fix username regex in install script login page javascript validation
Dan [Wed, 21 Nov 2007 20:45:50 -0500] rev 278
Language fix in the install script; fix username regex in install script login page javascript validation
Wed, 21 Nov 2007 20:40:26 -0500 Deprecated and removed Oxygen css-simple/bleu.css
Dan [Wed, 21 Nov 2007 20:40:26 -0500] rev 277
Deprecated and removed Oxygen css-simple/bleu.css
Wed, 21 Nov 2007 20:14:14 -0500 Re-sync Oxygen and Mint and Oxygen simple with Oxygen main; a couple improvements to the redirect-on-no-config code
Dan [Wed, 21 Nov 2007 20:14:14 -0500] rev 276
Re-sync Oxygen and Mint and Oxygen simple with Oxygen main; a couple improvements to the redirect-on-no-config code
Wed, 21 Nov 2007 15:18:15 -0500 Re-add search_results hook and changed column type of search_index.word to varchar(64) in installer schema
Dan [Wed, 21 Nov 2007 15:18:15 -0500] rev 275
Re-add search_results hook and changed column type of search_index.word to varchar(64) in installer schema
Wed, 21 Nov 2007 15:13:06 -0500 Merging in new search algo from Scribus
Dan [Wed, 21 Nov 2007 15:13:06 -0500] rev 274
Merging in new search algo from Scribus
Wed, 21 Nov 2007 15:11:51 -0500 Minor fix for the password meter in Admin:UserManager
Dan [Wed, 21 Nov 2007 15:11:51 -0500] rev 273
Minor fix for the password meter in Admin:UserManager
Wed, 21 Nov 2007 15:10:57 -0500 Searching sucks, and Enano's search algorithm was complete bullcrap. So I rewrote it. No, it does not use Google search technology. Like they have a patent for using the Arial font on search result pages anyway.
Dan [Wed, 21 Nov 2007 15:10:57 -0500] rev 272
Searching sucks, and Enano's search algorithm was complete bullcrap. So I rewrote it. No, it does not use Google search technology. Like they have a patent for using the Arial font on search result pages anyway.
Sun, 18 Nov 2007 20:37:08 -0500 Merging in fixes and updates from stable
Dan [Sun, 18 Nov 2007 20:37:08 -0500] rev 271
Merging in fixes and updates from stable
Sun, 18 Nov 2007 18:44:55 -0500 Major fixes to the ban system - large IP match lists don't slow down the server miserably anymore.
Dan [Sun, 18 Nov 2007 18:44:55 -0500] rev 270
Major fixes to the ban system - large IP match lists don't slow down the server miserably anymore.
Sat, 17 Nov 2007 23:30:23 -0500 Fixed a couple of renaming issues in the installer
Dan [Sat, 17 Nov 2007 23:30:23 -0500] rev 269
Fixed a couple of renaming issues in the installer
Sat, 17 Nov 2007 23:09:12 -0500 Hopefully managed to put enough hacks in there to make renaming the config file the last step, so if it fails, it can be done manually
Dan [Sat, 17 Nov 2007 23:09:12 -0500] rev 268
Hopefully managed to put enough hacks in there to make renaming the config file the last step, so if it fails, it can be done manually
Sat, 17 Nov 2007 22:56:26 -0500 Removed stray debug message in installer
Dan [Sat, 17 Nov 2007 22:56:26 -0500] rev 267
Removed stray debug message in installer
Sat, 17 Nov 2007 22:25:37 -0500 Merging in fixes from stable
Dan [Sat, 17 Nov 2007 22:25:37 -0500] rev 266
Merging in fixes from stable
Sat, 17 Nov 2007 22:12:31 -0500 Some (not much) progress with localizing tooltips on the pagebar. Still aways to go and committing so as to merge changes from stable
Dan [Sat, 17 Nov 2007 22:12:31 -0500] rev 265
Some (not much) progress with localizing tooltips on the pagebar. Still aways to go and committing so as to merge changes from stable
Sat, 17 Nov 2007 21:09:31 -0500 Well I'm an idiot - the fulltext index on page_text was missing from a default installation. It didn't break searches but probably slowed them down tremendously. Also set engine to MyISAM on page_text to avoid cryptic error messages from MySQL.
Dan [Sat, 17 Nov 2007 21:09:31 -0500] rev 264
Well I'm an idiot - the fulltext index on page_text was missing from a default installation. It didn't break searches but probably slowed them down tremendously. Also set engine to MyISAM on page_text to avoid cryptic error messages from MySQL.
Sat, 17 Nov 2007 20:31:01 -0500 Major improvements in the security of the CAPTCHA system (no SQL injection or anything like that); fixed denied form submission due to _af_acting on form object wrongly switched to true
Dan [Sat, 17 Nov 2007 20:31:01 -0500] rev 263
Major improvements in the security of the CAPTCHA system (no SQL injection or anything like that); fixed denied form submission due to _af_acting on form object wrongly switched to true
Sat, 17 Nov 2007 18:54:13 -0500 Javascript validation for install DB info form didn't allow dashes
Dan [Sat, 17 Nov 2007 18:54:13 -0500] rev 262
Javascript validation for install DB info form didn't allow dashes
Sat, 17 Nov 2007 18:51:06 -0500 Changed default content for the main page to something a lot more user-friendly and helpful
Dan [Sat, 17 Nov 2007 18:51:06 -0500] rev 261
Changed default content for the main page to something a lot more user-friendly and helpful
Sat, 17 Nov 2007 15:40:04 -0500 Rewrote some security code in PageUtils::savepage to accommodate the ACL system better; there was an issue with non-admin users saving pages on which they have edit rights but wiki mode is turned off
Dan [Sat, 17 Nov 2007 15:40:04 -0500] rev 260
Rewrote some security code in PageUtils::savepage to accommodate the ACL system better; there was an issue with non-admin users saving pages on which they have edit rights but wiki mode is turned off
Sat, 17 Nov 2007 15:02:08 -0500 Fixed: secure-cookie option is no longer set if $_SERVER['HTTPS'] is set but == "off"
Dan [Sat, 17 Nov 2007 15:02:08 -0500] rev 259
Fixed: secure-cookie option is no longer set if $_SERVER['HTTPS'] is set but == "off"
Sat, 17 Nov 2007 14:57:00 -0500 Patched in dash-in-database-name fix from unstable
Dan [Sat, 17 Nov 2007 14:57:00 -0500] rev 258
Patched in dash-in-database-name fix from unstable
Thu, 15 Nov 2007 18:02:14 -0500 Merge in installer fixes from 204 (ba28d43a6b86)
Dan [Thu, 15 Nov 2007 18:02:14 -0500] rev 257
Merge in installer fixes from 204 (ba28d43a6b86)
(0) -300 -100 -60 +60 +100 +300 +1000 tip