Frédéric Guillot
d6ffe08aeb
Add Auto-Submitted E-mail header as per RFC 8384
2019-04-27 21:06:20 -07:00
Ole Carlsen
a9c79fbc43
Update da_DK translation
2019-04-08 18:06:47 -07:00
Frédéric Guillot
0b4b288ff8
Update ChangeLog
2019-04-05 19:12:13 -07:00
Frédéric Guillot
d261482e9a
Add missing template and translations
2019-04-05 19:04:19 -07:00
rafacamargo123
9f926c9878
Update pt-BR translation
2019-04-01 19:19:16 -07:00
Balázs Úr
94a0165a5c
Update Hungarian translation
2019-03-25 18:26:55 -07:00
Marco Segato
7bb1f927e8
it_IT translation update
2019-03-13 17:38:50 -07:00
Kiyohito AOKI
8c54e39d02
Fix wrong Japanese translation
2019-03-11 18:07:42 -07:00
Slavko
f7516cab84
Add Slovak translation
2019-03-10 21:14:48 -07:00
rafacamargo123
cccd020988
Changes search by reference to case insentive
...
Search was being performed case sensitive, changed to case insensitive
2019-03-07 22:13:39 -08:00
Kiyohito AOKI
3bf8c29dad
Update translations.php
2019-03-07 22:13:15 -08:00
trendspotter
42694ac2af
Fix postgres schema usage
2019-02-28 18:23:35 -08:00
Frédéric Guillot
6d2b2f4a79
Simplify local Docker image build
2019-02-27 17:50:18 -08:00
FUJII Ryota
4a40095122
Docker: Forbid access to the data directory
2019-02-25 19:55:27 -08:00
FUJII Ryota
39e579e427
Clarify the comment about MAIL_SMTP_ENCRYPTION
2019-02-25 17:42:39 -08:00
Frédéric Guillot
3a421fe15e
Update GitHub issue template
2019-02-21 14:20:05 -08:00
Frédéric Guillot
e1849fb4c1
Remove dependency on bower
2019-02-21 13:59:41 -08:00
Ole Carlsen
aa569551dc
Update da_DK translations
2019-02-19 18:06:39 -08:00
Frédéric Guillot
2251066a3c
Always display task accordion elements
2019-02-19 14:50:16 -08:00
Frédéric Guillot
23417da763
Replace accordion Javascript component by <details> HTML element
2019-02-19 14:45:01 -08:00
Kiyohito AOKI
1b6f98604a
Complete Japanese translation
2019-02-17 09:54:32 -08:00
Psy-Q
46e3dd66c6
Fix MySQL migration when using increment values different from 1
...
Fixes #4137
2019-02-15 17:39:03 -08:00
Kiyohito AOKI
c6e64791ca
Update Japanese translation
2019-02-13 18:31:39 -08:00
Frédéric Guillot
b1c5b47d84
Add missing webhook event: task.move.project
...
Fixes #3969
2019-02-13 18:23:12 -08:00
Frédéric Guillot
0295388461
Add new actions to reorder tasks by column
2019-02-08 13:53:13 -08:00
Frédéric Guillot
ba5878e786
Update ChangeLog
2019-02-02 10:50:22 -08:00
Frédéric Guillot
233fd1a8a1
Authorize only API tokens when 2FA is enabled
2019-02-01 15:40:35 -08:00
Frédéric Guillot
fa08493348
Limit avatar image size
...
fixes #4041
2019-02-01 12:12:36 -08:00
Frédéric Guillot
6c421da47a
Update license year
2019-02-01 11:08:34 -08:00
Frédéric Guillot
d2258f8672
Update Docker image to Alpine 3.9
2019-02-01 11:08:04 -08:00
Frédéric Guillot
061ba4abe1
Avoid CSRF in users CSV import
2019-01-31 20:06:49 -08:00
Frédéric Guillot
928f80d569
Update unit tests
2019-01-30 22:25:57 -08:00
Frédéric Guillot
83deec2e36
Avoid XSS in pagination ordering
2019-01-30 22:05:43 -08:00
Frédéric Guillot
8cf8f9ef07
Disable by default plugin installer
...
- There is no code review or any approval process to submit a plugin.
- Anyone can submit a backdoor as plugin.
- This is up to the Kanboard instance owner to validate if a plugin is legit.
2019-01-30 21:34:04 -08:00
Frédéric Guillot
a1c437bce8
Do not show projects dropdown when prompting the 2FA code
2019-01-30 21:17:30 -08:00
Frédéric Guillot
322383b084
Always returns a 404 otherwise people might guess which user exist
2019-01-30 21:07:56 -08:00
Frédéric Guillot
61a55c8888
Check if user role has changed while the session is open
2019-01-30 20:59:25 -08:00
Frédéric Guillot
19ea9ed620
Add missing CSRF check in TwoFactorController::deactivate()
2019-01-30 20:21:12 -08:00
rafacamargo123
ef1abecee4
Fix pt_br translation typo
2019-01-28 22:26:51 -08:00
Cyboulette
cc34318bc7
Fix PHP error in task views (tag colors)
2019-01-19 13:38:50 -08:00
Rafael de Camargo
f3b944c77f
Hide edit button when user cannot edit task
...
Check for custom roles to show edit button
Fixes #4123
2019-01-11 17:21:14 -08:00
Rafael de Camargo
f79a2ee5e7
Fix permission check before "Assign to me"
...
Users who should not be able to change assignee cannot "assign to me"
Fixes #4121
2019-01-10 01:17:03 -02:00
rafacamargo123
0deaeb58e6
Fix permission check to show project options
...
Fixes #4105
2019-01-08 14:45:10 -08:00
rafacamargo123
fdcda3f10d
Fix assignable users on a group with a custom role
...
Groups custom roles are now handled the same ways users custom roles are.
2019-01-05 12:10:26 -02:00
rafacamargo123
30e9c22139
Fix import of automatic actions when parameters are "unassigned" or "no category"
2018-12-27 11:44:49 -08:00
rafacamargo123
44c69863eb
Update pt_BR translations
2018-12-26 12:10:12 -08:00
Ole Carlsen
e5c43d4899
Update da_DK translations
2018-12-26 12:01:18 -08:00
renothing
1e9787a446
Update Chinese translations
2018-12-26 11:59:29 -08:00
Miodrag Tokić
eccfff451a
Limit assignee drop-down selector scope
...
On the task details page "Add a sub-task" pop-up modal contains
drop-down (the SELECT HTML element) with "form-user_id" as the `name`
and the `id` attribute value. This element is in conflict with another,
hidden INPUT element with the same `name` and the `id` value. This
causes an issue where clicking the "Me" (Assignee) link / shortcut (A)
element doesn't select your name in the Assignee SELECT element.
Avoiding conflict by changing the SELECT element `id` value is not
possible as the SELECT element is generated using `FormHelper::select()`
function which uses the same value for attribute `name` and `id`.
Given the assignee shortcut feature is used only in two places: edit
task and edit sub-task dialog, the simplest solution is to select the
closest SELECT element to the link / shortcut (A) element or limit the
scope to the currently opened dialog.
This fix uses the latter approach by limiting the scope of targeted
selector.
2018-12-20 13:57:43 +01:00
Frédéric Guillot
f470873d5d
Update ChangeLog
2018-12-19 16:05:15 -08:00