2209 Commits

Author SHA1 Message Date
Giuseppe Criscione
6ddbbd3fb9 Sanitize markdown output 2024-06-15 14:27:33 +02:00
Giuseppe Criscione
abaa220185 Add Sanitizer classes 2024-06-08 23:26:22 +02:00
Giuseppe Criscione
2ef1495ab3 Add placeholder to allowed extensions option 2024-06-08 22:55:45 +02:00
Giuseppe Criscione
23d9c04a4c Improve Info page under Tools section 2024-06-08 22:46:26 +02:00
Giuseppe Criscione
2a68a094d2 Avoid adding margin to last child paragraphs 2024-06-08 22:44:05 +02:00
Giuseppe Criscione
40bb816e23 Reintroduce form input icons 2024-06-08 11:49:42 +02:00
Giuseppe Criscione
ba8706ad94 Move remaining loading logic to PanelServiceLoader 2024-06-07 22:37:37 +02:00
Giuseppe Criscione
cc3054fca7 Make UserCollection and RoleCollection mutable 2024-06-07 22:36:23 +02:00
Giuseppe Criscione
32ce5e17f3 Update user cards 2024-06-07 18:02:50 +02:00
Giuseppe Criscione
7e79c2269a Add Role class 2024-06-07 18:00:36 +02:00
Giuseppe Criscione
f5312015a5 Escape meta attributes to avoid XSS injection 2024-06-07 11:30:16 +02:00
Giuseppe Criscione
257150aee2
Merge pull request #523 from getformwork/dependabot/npm_and_yarn/panel/sass-1.77.4
Bump sass from 1.76.0 to 1.77.4 in /panel
2024-06-03 10:00:32 +02:00
dependabot[bot]
75de0c061b
Bump sass from 1.76.0 to 1.77.4 in /panel
Bumps [sass](https://github.com/sass/dart-sass) from 1.76.0 to 1.77.4.
- [Release notes](https://github.com/sass/dart-sass/releases)
- [Changelog](https://github.com/sass/dart-sass/blob/main/CHANGELOG.md)
- [Commits](https://github.com/sass/dart-sass/compare/1.76.0...1.77.4)

---
updated-dependencies:
- dependency-name: sass
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-06-03 07:59:15 +00:00
Giuseppe Criscione
a311253fa1
Merge pull request #522 from getformwork/dependabot/npm_and_yarn/panel/stylelint-scss-6.3.0
Bump stylelint-scss from 6.2.1 to 6.3.0 in /panel
2024-06-03 09:51:00 +02:00
dependabot[bot]
03f32524ac
Bump stylelint-scss from 6.2.1 to 6.3.0 in /panel
Bumps [stylelint-scss](https://github.com/stylelint-scss/stylelint-scss) from 6.2.1 to 6.3.0.
- [Release notes](https://github.com/stylelint-scss/stylelint-scss/releases)
- [Changelog](https://github.com/stylelint-scss/stylelint-scss/blob/master/CHANGELOG.md)
- [Commits](https://github.com/stylelint-scss/stylelint-scss/compare/v6.2.1...v6.3.0)

---
updated-dependencies:
- dependency-name: stylelint-scss
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-06-03 07:49:30 +00:00
Giuseppe Criscione
30207ec17c
Merge pull request #521 from getformwork/dependabot/npm_and_yarn/panel/typescript-eslint-7.11.0
Bump typescript-eslint from 7.8.0 to 7.11.0 in /panel
2024-06-03 09:48:04 +02:00
Giuseppe Criscione
bfe91bcdee
Merge pull request #520 from getformwork/dependabot/npm_and_yarn/panel/esbuild-0.21.4
Bump esbuild from 0.20.2 to 0.21.4 in /panel
2024-06-03 09:47:53 +02:00
Giuseppe Criscione
66659e1a8b
Merge pull request #519 from getformwork/dependabot/npm_and_yarn/panel/prettier-3.3.0
Bump prettier from 3.2.5 to 3.3.0 in /panel
2024-06-03 09:47:45 +02:00
Giuseppe Criscione
a2ab5a8fb9
Merge pull request #518 from getformwork/dependabot/composer/friendsofphp/php-cs-fixer-3.58.1
Bump friendsofphp/php-cs-fixer from 3.57.1 to 3.58.1
2024-06-03 09:47:31 +02:00
Giuseppe Criscione
925b1d7450
Merge pull request #516 from getformwork/dependabot/composer/symfony/process-7.1.0
Bump symfony/process from 7.0.7 to 7.1.0
2024-06-03 09:47:21 +02:00
Giuseppe Criscione
f5ee205179
Merge pull request #517 from getformwork/dependabot/composer/phpstan/phpstan-1.11.3
Bump phpstan/phpstan from 1.11.1 to 1.11.3
2024-06-03 09:47:12 +02:00
Giuseppe Criscione
8b1de1aa74
Merge pull request #515 from getformwork/dependabot/composer/symfony/yaml-7.1.0
Bump symfony/yaml from 7.0.7 to 7.1.0
2024-06-03 09:46:59 +02:00
Giuseppe Criscione
aa82012584 Correctly detect if opcache is enabled 2024-06-02 17:49:09 +02:00
Giuseppe Criscione
f56ccaee06 Fix page paths on Windows (indirectly resolves #513 #514) 2024-06-02 17:00:34 +02:00
dependabot[bot]
7705faa060
Bump typescript-eslint from 7.8.0 to 7.11.0 in /panel
Bumps [typescript-eslint](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/typescript-eslint) from 7.8.0 to 7.11.0.
- [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases)
- [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/typescript-eslint/CHANGELOG.md)
- [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v7.11.0/packages/typescript-eslint)

---
updated-dependencies:
- dependency-name: typescript-eslint
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-06-01 17:44:27 +00:00
dependabot[bot]
545a782a7a
Bump esbuild from 0.20.2 to 0.21.4 in /panel
Bumps [esbuild](https://github.com/evanw/esbuild) from 0.20.2 to 0.21.4.
- [Release notes](https://github.com/evanw/esbuild/releases)
- [Changelog](https://github.com/evanw/esbuild/blob/main/CHANGELOG.md)
- [Commits](https://github.com/evanw/esbuild/compare/v0.20.2...v0.21.4)

---
updated-dependencies:
- dependency-name: esbuild
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-06-01 17:44:05 +00:00
dependabot[bot]
8da7de40bb
Bump prettier from 3.2.5 to 3.3.0 in /panel
Bumps [prettier](https://github.com/prettier/prettier) from 3.2.5 to 3.3.0.
- [Release notes](https://github.com/prettier/prettier/releases)
- [Changelog](https://github.com/prettier/prettier/blob/main/CHANGELOG.md)
- [Commits](https://github.com/prettier/prettier/compare/3.2.5...3.3.0)

---
updated-dependencies:
- dependency-name: prettier
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-06-01 17:43:47 +00:00
dependabot[bot]
de305a9cbb
Bump friendsofphp/php-cs-fixer from 3.57.1 to 3.58.1
Bumps [friendsofphp/php-cs-fixer](https://github.com/PHP-CS-Fixer/PHP-CS-Fixer) from 3.57.1 to 3.58.1.
- [Release notes](https://github.com/PHP-CS-Fixer/PHP-CS-Fixer/releases)
- [Changelog](https://github.com/PHP-CS-Fixer/PHP-CS-Fixer/blob/master/CHANGELOG.md)
- [Commits](https://github.com/PHP-CS-Fixer/PHP-CS-Fixer/compare/v3.57.1...v3.58.1)

---
updated-dependencies:
- dependency-name: friendsofphp/php-cs-fixer
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-06-01 17:01:10 +00:00
dependabot[bot]
1cfd313204
Bump phpstan/phpstan from 1.11.1 to 1.11.3
Bumps [phpstan/phpstan](https://github.com/phpstan/phpstan) from 1.11.1 to 1.11.3.
- [Release notes](https://github.com/phpstan/phpstan/releases)
- [Changelog](https://github.com/phpstan/phpstan/blob/1.11.x/CHANGELOG.md)
- [Commits](https://github.com/phpstan/phpstan/compare/1.11.1...1.11.3)

---
updated-dependencies:
- dependency-name: phpstan/phpstan
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-06-01 17:01:04 +00:00
dependabot[bot]
57d05e7cf1
Bump symfony/process from 7.0.7 to 7.1.0
Bumps [symfony/process](https://github.com/symfony/process) from 7.0.7 to 7.1.0.
- [Release notes](https://github.com/symfony/process/releases)
- [Changelog](https://github.com/symfony/process/blob/7.1/CHANGELOG.md)
- [Commits](https://github.com/symfony/process/compare/v7.0.7...v7.1.0)

---
updated-dependencies:
- dependency-name: symfony/process
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-06-01 17:00:58 +00:00
dependabot[bot]
16370b02b6
Bump symfony/yaml from 7.0.7 to 7.1.0
Bumps [symfony/yaml](https://github.com/symfony/yaml) from 7.0.7 to 7.1.0.
- [Release notes](https://github.com/symfony/yaml/releases)
- [Changelog](https://github.com/symfony/yaml/blob/7.1/CHANGELOG.md)
- [Commits](https://github.com/symfony/yaml/compare/v7.0.7...v7.1.0)

---
updated-dependencies:
- dependency-name: symfony/yaml
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
2024-06-01 17:00:52 +00:00
Giuseppe Criscione
e39fe86bc2 Release 2.0.0-beta.1 2.0.0-beta.1 2024-05-25 18:11:59 +02:00
Giuseppe Criscione
7a497f106f Update security policy 2024-05-25 16:05:14 +02:00
Giuseppe Criscione
e776417d14 Add class form-input-monospace to debug.editorUri field 2024-05-25 15:42:25 +02:00
Giuseppe Criscione
646455db62 Add class form-input-large to site title field 2024-05-25 15:41:39 +02:00
Giuseppe Criscione
23cde98d58 Fix selection background color 2024-05-25 15:36:52 +02:00
Giuseppe Criscione
84fc46a486 Hide buttons in user profile if current user has no edit permissions 2024-05-25 14:49:27 +02:00
Giuseppe Criscione
27d9126c9a Expose option content.safeMode in the panel 2024-05-25 14:47:43 +02:00
Giuseppe Criscione
6adc302f5a Add content.safeMode (enabled by default) to avoid XSS vulnerabilities 2024-05-25 14:34:25 +02:00
Giuseppe Criscione
df0ceb34df Avoid XSS injection in default templates by escaping fields 2024-05-25 14:20:37 +02:00
Giuseppe Criscione
8781ee17ca Avoid XSS injection in panel by escaping field values and other texts 2024-05-25 13:23:38 +02:00
Giuseppe Criscione
144954c3c9 Simplify page field view using space separated list 2024-05-25 12:58:40 +02:00
Giuseppe Criscione
1422c8f612 Remove unneeded use statement 2024-05-25 12:56:11 +02:00
Giuseppe Criscione
fd31601c09 Add minor panel UI improvements 2024-05-25 12:44:59 +02:00
Giuseppe Criscione
ede090e08b Use enum case value in Blur::CONVOLUTION_KERNELS 2024-05-25 12:06:47 +02:00
Giuseppe Criscione
047e9c1f95 Update SemVer regex and method names to reflect spec 2024-05-24 23:48:25 +02:00
Giuseppe Criscione
9401ccb947 Run Rector in the check workflow 2024-05-24 23:42:06 +02:00
Giuseppe Criscione
d07b583703 Leave previous changelog on the 1.x branch 2024-05-20 23:58:57 +02:00
Giuseppe Criscione
9b959aa6bc Add .gitattributes 2024-05-20 23:36:42 +02:00
Giuseppe Criscione
33fa1f732f Update .gitignore 2024-05-20 23:31:14 +02:00