irdc
4b76bc5b32
Use a HMAC to sign and validate CSRF tokens, instead of generating random ones and storing them in the session data
...
* Use a HMAC to sign and validate CSRF tokens, instead of generating random
ones and storing them in the session data. Reduces number of writes to
sessions table and fixes kanboard issue #4942 .
* Added missing CSRF check for starting/stopping subtask timers.
Co-authored-by: Willemijn Coene <willemijn@irdc.nl>
2022-09-17 17:23:41 -07:00
Tomas Dittmann
61e63ef9e0
Remove `project_id` from task URLs
2022-02-04 20:59:33 -08:00
Frédéric Guillot
71123b0f37
Add missing CSRF checks
2021-06-05 14:59:12 -07:00
Michael Vickers
ce69343001
Add aria-label alongside title attributes
2020-10-02 17:44:18 -07:00
Rafael de Camargo
9bd7ae9515
Fix SubtaskRestrictionController modal misbehaviour on link
...
When the icon was clicked, the modal wasn't shown. Instead, its html content was open as the whole page.
2019-10-15 20:06:39 -07:00
Frédéric Guillot
56c2a6e543
Make subtask title text field wider when editing subtasks
2018-05-10 11:37:28 -07:00
Frédéric Guillot
dd92564d22
Increase text fields length in several tables
2018-04-11 13:48:13 -07:00
Frédéric Guillot
ccd177ada6
Store PHP sessions in the database
2017-12-12 15:04:28 -08:00
Frederic Guillot
ed98f95cfa
Add bulk subtasks creation
2017-10-20 14:47:04 -07:00
Frederic Guillot
41c2ab0c24
Add tooltip to subtask icons
2017-10-16 19:09:25 -07:00
Frederic Guillot
d915c2a96b
Improve subtask toggle
2017-03-19 16:45:32 -04:00
Frederic Guillot
f3deb6492a
Add toggle button to show/hide subtasks in task list view
2017-02-26 19:30:02 -05:00
Frederic Guillot
d3650eaa25
Fix broken subtask restriction per user
2017-02-07 20:54:56 -05:00
Frederic Guillot
5ce0ebdd26
Rename methods to render fields in TaskHelper and SubtaskHelper
2017-01-08 18:07:38 -05:00
Frederic Guillot
928d27d2ad
Reduce number of font size
2016-08-07 09:02:26 -04:00
Frederic Guillot
46ed06268d
Rename subtask controller
2016-05-17 22:25:18 -04:00
Frederic Guillot
8f3e2b2e5c
Helper refactoring
2016-03-04 20:10:34 -05:00