12444 Commits (1.4.16)
 

Author SHA1 Message Date
Aleksander Machniak bf599fe1cf Fix cross-site scripting (XSS) vulnerability in setting Content-Type/Content-Disposition for attachment preview/download 2 years ago
Aleksander Machniak 24df766e28 Bring back 1.4-git as a version number 2 years ago
Aleksander Machniak 0546ce4a1e Fix tests 2 years ago
Aleksander Machniak 1e3e457466 Fix PHP 5.4 compatibility by using pear-core-minimal 1.10.11 (#9148) 2 years ago
Aleksander Machniak dc7b6850c6 Fix merge conflict 2 years ago
Aleksander Machniak 7b2df52ede Fix cross-site scripting (XSS) vulnerability in handling of SVG in HTML messages (#9168) 2 years ago
Thomas Bruederli 69be0b7b81 Bump version to 1.4.14 2 years ago
Aleksander Machniak c998034d31 Fix cross-site scripting (XSS) vulnerability in handling of linkrefs in plain text messages 2 years ago
Raoul Bhatia 10f4be7a8a
Add plugin-installer to allowed-plugins (#8680) 3 years ago
Aleksander Machniak e278cce6b8 Update changelog 3 years ago
Aleksander Machniak d65dfed208 Enigma: Fix initial synchronization of private keys 3 years ago
Thomas Bruederli 784eb80e67 Bump version to 1.4.13 4 years ago
Aleksander Machniak b2400a4b59 Security: Fix cross-site scripting (XSS) via HTML messages with malicious CSS content 4 years ago
Thomas Bruederli 786fb18c43 Revert disabling the spell check feature in defaults 4 years ago
Thomas Bruederli ff61573803 Bump version to 1.4.12 4 years ago
Thomas Bruederli 9dfa13f4dc Bring back spell.roundcube.net as integrated spelling service but disable by default (#8182) 4 years ago
Aleksander Machniak 4e1358b4dc Add input validation for list column/order 4 years ago
Aleksander Machniak c8947ecb76 Rename session items 'search' and 'search_params' to 'contact_search' and 'contact_search_params' 4 years ago
Aleksander Machniak faf99bf8a2 Fix XSS issue in handling attachment filename extension in mimetype mismatch warning (#8193) 4 years ago
Thomas Bruederli c59a5ca845 Updated changelog 4 years ago
Thomas Bruederli 2bd421cdaf Disable the default spellchecker option using spell.roundcube.net (#8182) 4 years ago
Aleksander Machniak c09d478714 Fix variable in nl_NL localization (#8149) 4 years ago
Aleksander Machniak 28314d9e0b Update changelog 4 years ago
johndoh 27e67464fe Fix Firefox infinate loading display on mail screen #8128 (#8129) 4 years ago
Aleksander Machniak 6adae8f9f5 Typo 4 years ago
Aleksander Machniak 4bcb40e395 Fix shift + drag'n'drop menu not working Elastic skin with Chrome browser (#8107) 4 years ago
Aleksander Machniak 600a1e29ff Fix handling of custom From addresses with names (#8106) 4 years ago
Aleksander Machniak b44acbecbf Fix displaying HTML body with inline images encapsulated using TNEF format (winmail.dat) 4 years ago
Aleksander Machniak b15ff4f064 Add an option to disable TNEF decoding 4 years ago
Aleksander Machniak 15825ca283 Elastic: Fix focused or disabled button colors 4 years ago
Aleksander Machniak 2140865686 Fix bug where plus characters in attachment filename could have been ignored (#8074) 4 years ago
Aleksander Machniak ea7d207924 Fix bug where consecutive LDAP searches could return wrong results (#8064) 4 years ago
Aleksander Machniak 18b980cfb1 Fix bug where contacts search didn't work with addressbook_search_mods set to an empty array (#7974) 4 years ago
Aleksander Machniak d0dccc7066 Don't cache disabled_actions setting in memory 4 years ago
Aleksander Machniak cbb8cfcb29 Enigma: Fix bug where signature verification could fail for non-ascii bodies (#7919) 4 years ago
Aleksander Machniak e1af03c8a4 Fix bug causing some HTML message content to be not centered in Elastic skin (#7911) 4 years ago
Thomas Bruederli 34c42f06e1 Bump version to 1.4.11 5 years ago
Aleksander Machniak 9dc276d5f2 Fix cross-site scripting (XSS) via HTML messages with malicious CSS content 5 years ago
Aleksander Machniak 1657ff4729 Update changelog 5 years ago
Marco Miltenburg ee4ab536e6 Fixed errors in MSSQL database update scripts (#7853) 5 years ago
Aleksander Machniak d16f3a8f1f Update changelog 5 years ago
urusha f4adee42ae Honor action_domain in managesieve-forward (#7849) 5 years ago
Aleksander Machniak ee7c568a00 Update changelog 5 years ago
Aleksander Machniak 0d396383ec Elastic: Lessc v4 comptibility issue (#7808) 5 years ago
Michal Duda 2066b2d858
Fix less mixins to be compatible with lessc 3.x and 4.x (#7815) 5 years ago
Aleksander Machniak 83d9ad3f64 Display a nice error informing about no PHP8 support 5 years ago
Thomas Bruederli 4efec49a46 Bump version to 1.4.10 5 years ago
Aleksander Machniak 0bceba301a Fix cross-site scripting (XSS) via HTML or Plain text messages with malicious content [CVE-2020-35730] 5 years ago
Aleksander Machniak 0efb565a9e Fix state of subscription toggle on folders list after changing folder state from the search result (#7653) 5 years ago
Sebastian Abshoff ffa21a5225 Reuse clonerow event to update toggle within active search 5 years ago