summaryrefslogtreecommitdiffstats
path: root/system
AgeCommit message (Collapse)AuthorFilesLines
2007-07-22(no commit message)Rick Ellis1-2/+4
2007-07-22(no commit message)Rick Ellis1-1/+1
2007-07-21(no commit message)Rick Ellis1-2/+7
2007-07-21(no commit message)Rick Ellis1-1/+3
2007-07-20(no commit message)Rick Ellis5-236/+264
2007-07-19(no commit message)Rick Ellis1-4/+4
2007-07-17(no commit message)Rick Ellis1-1/+5
2007-07-16Switched from CI super object to $CFG to fetch charsetDerek Jones1-2/+2
2007-07-16comment clean upDerek Allard1-3/+2
2007-07-16further scaffolding language fixesDerek Allard2-1/+14
2007-07-16fix for scaffoldingDerek Allard1-1/+7
2007-07-15revert calendar change... I'm an idiotDerek Allard1-2/+1
2007-07-15Fixed a typo ("cal_mayl") in English calendar language fileDerek Allard1-48/+49
2007-07-15changed ImageColorAllocate to imagecolorallocateDerek Allard1-3/+3
2007-07-14Fixed a bug in database driver where num_rows property wasn't getting updatedDerek Allard1-1/+2
2007-07-12added a comment re: autoloading languagesDerek Allard1-0/+1
2007-07-12moved version number up in docs and CI_VERSIONDerek Allard1-1/+1
2007-07-12added $config['charset']Derek Jones1-0/+10
2007-07-12added attribute and html entity decode callbacks to xss_clean()Derek Jones1-11/+69
2007-07-12sacked duplicate and incorrect version of _version()!Derek Jones1-13/+0
2007-07-12csv_from_result buggy. revert to old function until rewriteDerek Allard1-470/+454
2007-07-12fixed undefined function in insert_id() of PostgreSQL driverDerek Jones1-1/+1
2007-07-12removed empty string element from default $autoload['language'] arrayDerek Jones1-1/+1
2007-07-12removed $return argument from load()Derek Jones1-2/+1
2007-07-12further xss_clean() enhancementsDerek Jones1-30/+67
2007-07-12csv_from_result() move robust against data with "," in it.Derek Allard1-19/+35
2007-07-12added language files to autoloadDerek Allard3-12/+33
2007-07-12fixed quoted-printable in HTML emails, and added htmlspecialchars() to email ↵Derek Jones1-4/+100
debugging output
2007-07-12type cast $key => $val pair in $options array as strings for friendlier ↵Derek Jones1-0/+3
handling of setting options as 'selected'
2007-07-12fixed the plural() and singular() function commentsDerek Jones1-2/+2
2007-07-11adding type casting of $title argument in URL helper functions to a string. ↵Derek Jones1-0/+8
A numeric 0 sent to these functions would evaluate if ($title == '') as TRUE, and type casting seems the more appropriate fix than simply using $title === '', since we're expecting and treating $title as a string.
2007-07-11bugfix for profiler output: POST keys were not being displayed properly, and ↵Derek Jones1-2/+2
queries needed htmlspecialchars()
2007-07-11inflector helper changes to account for words ending in "s"Derek Allard1-32/+46
2007-07-11fixed log message typoDerek Allard1-1/+1
2007-06-28Instead of doing file name security for Enable Query Strings, I am using the ↵paulburdick1-6/+5
already existin _filter_uri()
2007-06-28(no commit message)paulburdick2-2/+1
2007-06-28Modified the include so that there is a bit of filename securitypaulburdick1-1/+1
2007-06-28*Added filename_security() method to Input librarypaulburdick1-0/+50
*Modified the Router so that when Query Strings are Enabled, the controller trigger and function trigger values are sanitized for filename include security.
2007-06-28*Modified the Router so that when Query Strings are Enabled, the controller ↵paulburdick1-3/+4
trigger and function trigger values are sanitized for filename include security.
2007-06-28(no commit message)paulburdick1-4/+13
2007-06-28Improved XSS clean to not allowing this:paulburdick1-4/+12
xss_clean("<x<xss>ss <scr<xss>ipt a='>'>alert/**/('!');//*/</script</script >>");
2007-06-26(no commit message)paulburdick1-1/+1
2007-06-26*Updated the XSS Filtering to take into account the IE expression() abilitypaulburdick1-1/+7
2007-06-24Modified the is_image() method in the Upload library to take into account ↵paulburdick1-5/+16
Windows IE 6/7 eccentricities when dealing with MIMEs
2007-06-24Fixed the do_xss_clean() method so that if file_get_contents returns FALSE, ↵paulburdick1-1/+1
then we return FALSE... Previously, if it did NOT return FALSE we returned FALSE and that is simply idiotic.
2007-06-18typo in commentsDerek Allard1-1/+1
2007-06-14(no commit message)Rick Ellis1-3/+3
2007-06-13(no commit message)Rick Ellis1-1/+1
2007-06-12(no commit message)Rick Ellis1-1/+1
2007-06-12(no commit message)Rick Ellis1-1/+1