Commit graph

  • 9fdabe3666 fix(backend): use atomic command to improve security syuilo 2024-11-21 09:22:15 +09:00
  • 8e90484b3e
    Bump version Julia Johannesen 2024-11-20 19:21:57 -05:00
  • 0fcb23c4c1 merge: Coordinated Security Release (!761) Julia 2024-11-21 00:20:48 +00:00
  • 776f6fd1f5
    fix(backend): allow fetchSummaryFromProxy, trueMail to access local addresses rectcoordsystem 2024-11-13 15:27:17 +09:00
  • 7b3e3f8e25
    fix(backend): add isLocalAddressAllowed option to getAgentByUrl and send (HttpRequestService) rectcoordsystem 2024-11-13 13:30:01 +09:00
  • 360d71278a
    fix(backend): lint and typecheck rectcoordsystem 2024-11-13 03:27:52 +09:00
  • 663c06be00
    Apply suggestions from code review rectcoordsystem 2024-11-13 03:06:22 +09:00
  • 7ccccf5545
    fix(backend): allow accessing private IP when testing rectcoordsystem 2024-11-06 06:33:44 +09:00
  • f36f4b5398
    fix(backend): check target IP before sending HTTP request rectcoordsystem 2024-11-06 05:31:11 +09:00
  • cc4e99fdde
    fix: Try using CacheService to avoid excess db lookups Julia Johannesen 2024-11-14 23:43:19 -05:00
  • 5764fa55cb
    fix: primitives 25-33: proper local instance checks Julia Johannesen 2024-11-14 22:01:22 -05:00
  • 74565f67f7
    fix: primitives 21, 22, and 23: reuse resolver Julia Johannesen 2024-11-14 21:53:16 -05:00
  • 408e782507
    fix: primitive 19 & 20: respect blocks and hide more Julia Johannesen 2024-11-14 21:38:17 -05:00
  • cbf8cc376e
    fix: primitive 18: ap/get bypasses access checks Julia Johannesen 2024-11-14 21:23:27 -05:00
  • c04f344049
    fix: primitive 13: check attribution against actor in notes Julia Johannesen 2024-11-14 21:17:30 -05:00
  • b9080da75d
    fix: code style for primitive 17 Julia Johannesen 2024-11-14 20:28:50 -05:00
  • 4d925fc086
    fix: primitive 17: note same-origin identifier validation can be bypassed by wrapping the id in an array Laura Hausmann 2024-10-24 04:18:49 +02:00
  • b74e2e9167
    fix: primitive 16: improper same-origin validation for user uri and url Laura Hausmann 2024-10-24 05:11:16 +02:00
  • ebea1a2962
    fix: primitive 15: improper same-origin validation for note uri and url Laura Hausmann 2024-10-24 05:07:58 +02:00
  • 4c432c07cb
    fix: code style for primitive 14 Julia Johannesen 2024-11-14 20:21:17 -05:00
  • 322b3b677f
    fix: primitive 14: improper validation of outbox, followers, following & shared inbox collections Laura Hausmann 2024-10-26 19:51:11 +02:00
  • 1c7e05ce9e
    fix: primitive 7 & 12: prevent poll spoofing Julia Johannesen 2024-11-14 19:57:29 -05:00
  • 9ab25ede28
    fix: primitives 9, 10 & 11: http signature validation doesn't enforce required headers or specify auth header name Laura Hausmann 2024-10-24 04:40:33 +02:00
  • 174dfb83d0
    fix: primitive 6: reject anonymous objects that were fetched by their id Laura Hausmann 2024-10-24 04:28:43 +02:00
  • ad8e8793c7
    fix: primitives 5 & 8: reject activities with non-string identifiers Laura Hausmann 2024-10-24 04:37:47 +02:00
  • 1e14612f0e
    fix: primitive 4: missing same-origin identifier validation of collection-wrapped activities Laura Hausmann 2024-10-24 04:11:35 +02:00
  • 9090b745e6
    fix: primitive 3: validation of non-final url Laura Hausmann 2024-10-24 04:04:56 +02:00
  • d883934826
    fix: primitive 2: acceptance of cross-origin alternate links Laura Hausmann 2024-10-24 05:13:35 +02:00
  • a9a82bed48 Update Sharkey to 2024.9.2 zima 2024-11-20 23:39:52 +00:00
  • 3d8c3aa081 Merge 2024.9.2 zima 2024-11-20 23:38:42 +00:00
  • 090e9392cd
    Merge commit from fork rectcoordsystem 2024-11-21 08:27:09 +09:00
  • b9cb949eb1
    Merge commit from fork Julia 2024-11-20 18:24:50 -05:00
  • 5f675201f2
    Merge commit from fork Julia 2024-11-20 18:20:09 -05:00
  • 1c284c8154
    New Crowdin updates (#15000) syuilo 2024-11-21 08:01:42 +09:00
  • aa48a0e207
    Fix: リノートミュートが新規投稿通知に対して作用していなかった問題を修正 (#15006) Sayamame-beans 2024-11-21 08:00:50 +09:00
  • f0c3a4cc0b
    perf(frontend): reduce api requests for non-logged-in enviroment (#15001) syuilo 2024-11-21 07:58:34 +09:00
  • b47ebf162f Merge remote-tracking branch 'origin/update-to-2024.9.2' into update-to-2024.9.2 zima 2024-11-20 15:08:13 -07:00
  • 8ac6e62184 migration must happen after fixorm HellhoundSoftware 2024-11-10 02:55:02 -05:00
  • 0670359c4f improve search mfm HellhoundSoftware 2024-11-09 23:21:48 -05:00
  • 73ae0cf039 non-fucked migration script HellhoundSoftware 2024-11-09 20:27:41 -05:00
  • 3054cd4936 she migrate on my TypeORM till i (GUNSHOTS) HellhoundSoftware 2024-11-08 20:38:37 -05:00
  • 783cf3ed4a Change default settings ~keith 2024-11-08 19:31:02 -05:00
  • bccd6b2dd8 Remove like button ~keith 2024-11-08 19:30:38 -05:00
  • f9dbe135e9 oops :) HellhoundSoftware 2024-11-10 02:29:33 -05:00
  • 390d99e531 Fix ORM models to match intended database schema HellhoundSoftware 2024-11-09 19:34:25 -05:00
  • da42cd8a4d Set NewRodin to swap display zima 2024-11-08 16:54:29 -07:00
  • 196cb6bb8b Replaced NewRodin OTF with fixed TTF/WOFF2 version ~keith 2024-11-08 16:31:43 -05:00
  • 9e809aa3b6 Add font NewRodin Pro zima 2024-11-06 22:59:24 -07:00
  • 878e2f46fa
    unescape MOTD html piuvas 2024-11-20 13:42:23 -03:00
  • 4603ab67bb
    feat: 絵文字のポップアップメニューに編集を追加 (#15004) 鴇峰 朔華 2024-11-20 20:08:26 +09:00
  • e0bb796aff merge: Fix linter error in emojis endpoint (!758) Julia 2024-11-20 06:29:48 +00:00
  • fb54546573
    Fix linter error in emojis endpoint Julia Johannesen 2024-11-20 01:17:24 -05:00
  • 9e0b759197 merge: Bump develop version (!757) Julia 2024-11-20 05:56:55 +00:00
  • 41c500851b
    Bump develop version Julia Johannesen 2024-11-20 00:54:30 -05:00
  • 27339e03c2 merge: Bump version (!756) Julia 2024-11-20 05:22:39 +00:00
  • 680c2a0718
    Bump version Julia Johannesen 2024-11-20 00:09:56 -05:00
  • f258888408 merge: Prevent DoS from spammed media proxy requests (!754) Julia 2024-11-20 04:59:00 +00:00
  • d150e92f41 prevent DoS from spammed media proxy requests Hazelnoot 2024-11-19 22:59:07 -05:00
  • 763c708253
    Fix(backend): アカウント削除のモデレーションログが動作していないのを修正 (#14996) (#14997) zawa-ch. 2024-11-19 21:12:40 +09:00
  • 6c5d3113c6 Bump version to 2024.11.0-alpha.2 github-actions[bot] 2024-11-19 03:56:50 +00:00
  • 968f595606
    New Crowdin updates (#14965) syuilo 2024-11-19 12:50:04 +09:00
  • 7b9c884a5d
    refactor(backend): SystemWebhookで送信されるペイロードの型を追加 (#14980) おさむのひと 2024-11-19 10:41:39 +09:00
  • c271534aba
    リノートメニューに「リノートの詳細」を追加 (#14985) FineArchs 2024-11-19 10:34:33 +09:00
  • e800c0f85a
    fix(backend): お知らせ作成時に画像URL入力欄を空欄に変更できないのを修正 (#14990) 饺子w (Yumechi) 2024-11-18 19:29:42 -06:00
  • 81348f1277
    fix(frontend): TypeScriptの型チェック対象ファイルを限定して高速化するように (#14994) かっこかり 2024-11-19 10:22:47 +09:00
  • 0df6c79172
    enhance(frontend): デッキ表示時にサイドバーを展開・折りたたみできるように (#14983) おさむのひと 2024-11-18 10:36:51 +09:00
  • 482538c7f8 merge: make emoji categories and names case insensitive. (!746) dakkar 2024-11-17 13:22:39 +00:00
  • eed45c7915
    Update SECURITY.md syuilo 2024-11-17 17:35:27 +09:00
  • 42f9586fc6
    Update CONTRIBUTING.md syuilo 2024-11-17 17:33:50 +09:00
  • 032dfc782d
    Update CONTRIBUTING.md syuilo 2024-11-17 17:33:12 +09:00
  • 00b8d0c072
    Update CONTRIBUTING.md syuilo 2024-11-17 17:32:28 +09:00
  • 9aebf0c168
    Update CHANGELOG.md syuilo 2024-11-17 14:15:38 +09:00
  • a730045bdd
    Update CHANGELOG.md syuilo 2024-11-17 12:44:44 +09:00
  • d579687156 merge: Dockerfile mkdir files (!740) Hazelnoot 2024-11-17 00:48:37 +00:00
  • de970ff54e merge: Change example config - db name and user consistent with docs (!739) Hazelnoot 2024-11-17 00:41:14 +00:00
  • 1bfb0dc395 merge: check harder for connectibility (!737) Hazelnoot 2024-11-17 00:40:52 +00:00
  • da2dfee0a8 merge: Remove check to prevent admin reporting (Fixes #757) (!727) Hazelnoot 2024-11-17 00:39:08 +00:00
  • 9614f74bf8 🎨 syuilo 2024-11-16 20:24:31 +09:00
  • b3c2de2b26
    fix(backend): fallback sharedInbox to null in ApPersonService (#14970) CDN 2024-11-16 17:53:28 +08:00
  • cf1b7c7064
    add warning for open registration (#14963) syuilo 2024-11-16 17:22:34 +09:00
  • 2e0f3936a8 Update .gitignore syuilo 2024-11-16 15:32:51 +09:00
  • 459449864c 🎨 syuilo 2024-11-16 10:16:11 +09:00
  • eaad96aae3
    edit query piuvas 2024-11-15 13:40:53 -03:00
  • eef0c895bc use execa 8.0.1 syuilo 2024-11-15 19:48:31 +09:00
  • d9d92bcfbf Revert "use nodemon 3.0.2" syuilo 2024-11-15 19:40:12 +09:00
  • ce1f84e5a3 use nodemon 3.0.2 syuilo 2024-11-15 19:33:50 +09:00
  • cf7df05023 Bump version to 2024.11.0-alpha.1 github-actions[bot] 2024-11-15 09:06:13 +00:00
  • ee2c017f48 Merge branch 'develop' of https://github.com/misskey-dev/misskey into develop syuilo 2024-11-15 18:00:22 +09:00
  • d0cdc0b7a1 chore(frontend): tweak animation style syuilo 2024-11-15 18:00:20 +09:00
  • ac3bf57644
    chore(deps): bump codecov/codecov-action from 4 to 5 (#14961) dependabot[bot] 2024-11-15 17:32:28 +09:00
  • e850462b82
    New Crowdin updates (#14859) syuilo 2024-11-15 17:31:38 +09:00
  • c0d1682604
    feat: 送信したフォローリクエストを確認できるように (#14856) かっこかり 2024-11-15 17:30:54 +09:00
  • e26e24b610
    update deps (#14950) syuilo 2024-11-15 17:22:00 +09:00
  • 7f8c8f62b1
    fix(frontend): スマホで表示した時にipv6だとはみ出てしまうのを修正 (#14960) かっこかり 2024-11-15 09:33:09 +09:00
  • 4e475f029c Merge pull request 'stable v1' (#6) from dev into stable v0.0.0 zima 2024-11-14 23:55:54 +00:00
  • a16d7e1e75 fix SCSS warning dakkar 2024-11-14 12:12:25 +00:00
  • fdad036912 Merge branch 'develop' into feature/2024.10 dakkar 2024-11-13 11:45:10 +00:00
  • 0a05841f33 merge: Add "pinned" section to notes tab on user profiles (!689) dakkar 2024-11-13 11:14:59 +00:00
  • 4d54101510
    update node to 22.11.0 (#14869) syuilo 2024-11-13 19:43:36 +09:00
  • 0954b098a4 change default account and experience settings, and disable like button zima 2024-11-13 03:33:56 +00:00