summaryrefslogtreecommitdiff
AgeCommit message (Collapse)Author
2023-09-07Rename MapOfString to ContentLanguageMapmarcin mikołajczak
Signed-off-by: marcin mikołajczak <git@mkljczk.pl>
2023-09-07Update InstanceView.featuresmarcin mikołajczak
Signed-off-by: marcin mikołajczak <git@mkljczk.pl>
2023-09-03Merge branch 'release/2.5.5' into 'stable'Haelwenn
Release 2.5.5 See merge request pleroma/pleroma!3949
2023-09-03mix: version 2.5.5Haelwenn (lanodan) Monnier
2023-09-03CommonAPI: Prevent users from accessing media of other usersMint
commit 1afde067b12ad0062c1820091ea9b0a680819281 upstream.
2023-09-03Merge branch 'check-attachment-attribution' into 'develop'Haelwenn
Prevent users from attaching other users' attachments See merge request pleroma/pleroma!3947
2023-09-03CommonAPI: Prevent users from accessing media of other usersMint
2023-08-31Merge branch 'tusooa/lint' into 'develop'Haelwenn
Make lint happy See merge request pleroma/pleroma!3944
2023-08-31Move is_good_locale_code? to object validatormarcin mikołajczak
Signed-off-by: marcin mikołajczak <git@mkljczk.pl>
2023-08-30Skip changelogtusooa
2023-08-30Make lint happytusooa
2023-08-20Remove testmarcin mikołajczak
Signed-off-by: marcin mikołajczak <git@mkljczk.pl>
2023-08-19Move maybe_add_content_map out of Transmogrifier, use code from tusooa's ↵marcin mikołajczak
branch for MapOfString Signed-off-by: marcin mikołajczak <git@mkljczk.pl>
2023-08-19Move `maybe_add_language` to CommonFixesmarcin mikołajczak
Signed-off-by: marcin mikołajczak <git@mkljczk.pl>
2023-08-16Merge branch 'csp-flash' into 'develop'Haelwenn
allow https: so that flash works across instances without need for media proxy See merge request pleroma/pleroma!3879
2023-08-16Apply lanodan's suggestion(s) to 1 file(s)Haelwenn
2023-08-11Remove testmarcin mikołajczak
Signed-off-by: marcin mikołajczak <git@mkljczk.pl>
2023-08-11Rename testmarcin mikołajczak
Signed-off-by: marcin mikołajczak <git@mkljczk.pl>
2023-08-11Lintmarcin mikołajczak
Signed-off-by: marcin mikołajczak <git@mkljczk.pl>
2023-08-11Make status.language == nil for 'und' valuemarcin mikołajczak
Signed-off-by: marcin mikołajczak <git@mkljczk.pl>
2023-08-11InstanceView: Add common_information functionmarcin mikołajczak
Signed-off-by: marcin mikołajczak <git@mkljczk.pl>
2023-08-11Add ObjectValidators.LanguageCode typemarcin mikołajczak
Signed-off-by: marcin mikołajczak <git@mkljczk.pl>
2023-08-11Apply lanodan's suggestionHaelwenn
2023-08-11Implement api/v2/instance routemarcin mikołajczak
Signed-off-by: marcin mikołajczak <git@mkljczk.pl>
2023-08-11Allow to specify post languagemarcin mikołajczak
Signed-off-by: marcin mikołajczak <git@mkljczk.pl>
2023-08-10Merge branch 'fix-dockerfile-perms' into 'develop'tusooa
Fix config ownership in dockerfile to pass restriction test See merge request pleroma/pleroma!3931
2023-08-08Fix config ownership in dockerfile to pass restriction testCat pony Black
2023-08-06Merge branch 'disable-xml-entities-completely' into 'develop'Haelwenn
Completely disable xml entity resolution See merge request pleroma/pleroma!3932
2023-08-05Completely disable xml entity resolutionmae
2023-08-05Merge branch 'docs/gentoo-otp-intro' into 'develop'Haelwenn
gentoo_otp_en.md: Indicate which install method it covers See merge request pleroma/pleroma!3928
2023-08-05Merge branch 'mergeback/2.5.4' into 'develop'Haelwenn
Mergeback: 2.5.4 See merge request pleroma/pleroma!3930
2023-08-05Merge branch 'releases/2.5.4' into 'stable'Haelwenn
Release 2.5.4 See merge request pleroma/pleroma!3929
2023-08-05Mergeback release 2.5.4Haelwenn (lanodan) Monnier
2023-08-05Release 2.5.4Haelwenn (lanodan) Monnier
2023-08-05Document and test that XXE processing is disabledMark Felder
https://vuln.be/post/xxe-in-erlang-and-elixir/
2023-08-05Add unit test for external entity loadingFloatingGhost
2023-08-05Prevent XML parser from loading external entitiesMae
2023-08-05Document and test that XXE processing is disabledMark Felder
https://vuln.be/post/xxe-in-erlang-and-elixir/
2023-08-05Add unit test for external entity loadingFloatingGhost
2023-08-04Prevent XML parser from loading external entitiesMae
2023-08-04gentoo_otp_en.md: Indicate which install method it coversHaelwenn (lanodan) Monnier
2023-08-04Merge branch 'release/2.5.3' into 'stable'Haelwenn
Release 2.5.3 See merge request pleroma/pleroma!3926
2023-08-04Merge branch 'mergeback/2.5.3' into 'develop'Haelwenn
Mergeback: 2.5.3 Closes #3135 See merge request pleroma/pleroma!3927
2023-08-04Release 2.5.53Haelwenn (lanodan) Monnier
2023-08-04release_runtime_provider_test: chmod config for hardened permissionsHaelwenn (lanodan) Monnier
Git doesn't manages file permissions precisely enough for us.
2023-08-04changelog: Entry for config permissions restrictionsHaelwenn (lanodan) Monnier
Closes: https://git.pleroma.social/pleroma/pleroma/-/issues/3135
2023-08-04instance gen: Reduce permissions of pleroma directories and config filesHaelwenn (lanodan) Monnier
2023-08-04Config: Restrict permissions of OTP config fileHaelwenn (lanodan) Monnier
2023-08-04Release 2.5.3Haelwenn (lanodan) Monnier
2023-08-04test: Fix warningsHaelwenn (lanodan) Monnier