Age | Commit message (Collapse) | Author | Files | Lines |
|
|
|
and tab characters at the end of a line of quoted-printable encoded content
|
|
|
|
|
|
|
|
mimes.php and user_agents.php respectively.
|
|
|
|
|
|
which were mistakenly pulled out in a previous commit, not released
|
|
false positive matches
|
|
such as locatiON, cONtent, etc.
|
|
|
|
rawurldecode() the string, there's no need to go looking for url encoded characters here
|
|
method
|
|
helper (hotfix for 1.6.3)
|
|
directory.
|
|
|
|
|
|
Bytes use whole numbers (123.0 bytes is just silly)
|
|
comparison
|
|
that using xss_clean() on image files might trigger
|
|
|
|
the Language class.
|
|
Documented get() in the Input class.
|
|
|
|
|
|
|
|
|
|
|
|
changed to FALSE
|
|
|
|
|
|
|
|
arrays or strings as arguments.
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
with (and require users to do the same) with a blacklist.
|
|
handlers for removal
|
|
multi-column non-primary keys in table creation
|
|
|
|
Removed some unused variables from the code (#4563).
Fixed a bug where having() was not adding an = into the statement (#4568).
|
|
entities and href=data:url exploits
|
|
|
|
detected or explicitly declared.
|