.. |
add
|
htmlentities() for token
|
2020-12-12 13:43:27 +01:00 |
api
|
Restrict v-make-tmp-file to tmp folder
|
2021-03-14 19:09:10 +01:00 |
bulk
|
WEB. Replaced split with explode. This closed #878
|
2016-10-20 09:37:41 -04:00 |
css
|
rollback css fix
|
2021-03-23 14:11:45 +01:00 |
delete
|
Add the validation of the CSRF token. It is missing in some cases when it is sent by GET or POST.
|
2019-04-21 00:11:36 +02:00 |
download
|
Fix for downloading backup of other users
|
2020-12-12 12:54:06 +01:00 |
edit
|
Update index.php
|
2021-08-15 14:37:53 +02:00 |
error
|
replaces start page with main page
|
2014-10-05 14:43:11 +03:00 |
file_manager
|
Preventing CSRF in file_manager/fm_api.php
|
2021-08-15 15:14:16 +02:00 |
generate/ssl
|
Challenging routing on render_page
|
2016-07-02 21:40:46 +09:00 |
images
|
Add files via upload
|
2020-06-27 03:17:16 +02:00 |
inc
|
Preventing all CSRF
|
2021-08-15 14:53:16 +02:00 |
js
|
enable/disable softaculous plugin
|
2017-12-21 12:19:01 +02:00 |
list
|
Checking period value in /list/rrd/
|
2020-12-12 14:09:48 +01:00 |
login
|
Fix for "Broken or Risky Cryptographic Algorithm"
|
2021-08-14 22:36:07 +02:00 |
logout
|
Update index.php
|
2020-12-12 13:52:26 +01:00 |
reset
|
Merge pull request #54 from serghey-rodin/master
|
2020-03-29 18:44:47 +02:00 |
restart
|
Add the validation of the CSRF token. It is missing in some cases when it is sent by GET or POST.
|
2019-04-21 00:11:36 +02:00 |
schedule
|
Preventing CSRF in schedule / backup
|
2021-08-15 14:41:04 +02:00 |
search
|
Challenging routing on render_page
|
2016-07-02 21:40:46 +09:00 |
start/service
|
Revert "[SECURITY] Fix OS command injection."
|
2015-12-11 21:14:49 +02:00 |
stop/service
|
Update index.php
|
2017-03-04 22:45:02 +00:00 |
suspend
|
Revert "[SECURITY] Fix OS command injection."
|
2015-12-11 21:14:49 +02:00 |
templates
|
Update list_backup_detail.html
|
2021-05-30 20:28:35 +02:00 |
unsuspend
|
Revert "[SECURITY] Fix OS command injection."
|
2015-12-11 21:14:49 +02:00 |
update/vesta
|
Add the validation of the CSRF token. It is missing in some cases when it is sent by GET or POST.
|
2019-04-21 00:11:36 +02:00 |
upload
|
Getting hostname from $_SERVER['HTTP_HOST'] for UploadHandler
|
2021-08-15 14:11:14 +02:00 |
view/file
|
Additional rXSS fix / closes #1558
|
2018-05-16 17:23:04 +03:00 |
favicon.ico
|
Create favicon.ico
|
2020-07-25 01:30:37 +02:00 |
hotkeys.html
|
ketboard shortcuts for vesta control panel
|
2015-09-14 17:06:34 +03:00 |
index.php
|
Reverting /web/index.php to default
|
2018-10-12 16:33:02 +02:00 |
robots.txt
|
added robots.txt which pervents indexing by search engines
|
2016-12-16 02:50:33 +03:00 |