Age | Commit message (Collapse) | Author | Files | Lines |
|
CSRF optional token regeneration
|
|
|
|
|
|
|
|
|
|
added notice of license to all source files.
OSL to all except the few files we ship inside of the application folder, those are AFL.
Updated license in user guide.
incrementing next dev version to 3.0 due to licensing change
|
|
|
|
Conflicts:
system/core/Security.php
|
|
|
|
whitelisted from CSRF verification. Fixes #149
|
|
broke the Typography class's string replacements, for instance
|
|
|
|
into my secure cookie change.
|
|
https.
|
|
|
|
protection
|
|
|
|
Also tweaked his regex_match changes.
|
|
should be.
|
|
default. Added a seperate config option to enable/disable the $_GET array.
|
|
|
|
|
|
|
|
session config vars. Fixes #149
|
|
config file, for additional assurance that session manipulation can be prevented
|
|
Adding CSRF token into form open()
|
|
|