Branch: refs/heads/stable-14.10.x
Home: https://github.com/xwiki/xwiki-platform
Commit: d9f5043da289ff106f08e23576746fd8baf98794
https://github.com/xwiki/xwiki-platform/commit/d9f5043da289ff106f08e2357674…
Author: pjeanjean <pierre.jeanjean(a)xwiki.com>
Date: 2023-10-24 (Tue, 24 Oct 2023)
Changed paths:
M xwiki-platform-core/xwiki-platform-realtime/xwiki-platform-realtime-ui/pom.xml
M xwiki-platform-core/xwiki-platform-realtime/xwiki-platform-realtime-ui/src/main/resources/RTFrontend/ConvertHTML.xml
A xwiki-platform-core/xwiki-platform-realtime/xwiki-platform-realtime-ui/src/main/resources/XWiki/Realtime/Translations.xml
A xwiki-platform-core/xwiki-platform-realtime/xwiki-platform-realtime-ui/src/test/java/org/xwiki/realtime/ui/ConvertHTMLPageTest.java
M xwiki-platform-core/xwiki-platform-realtime/xwiki-platform-realtime-webjar/src/main/webjar/loader.js
Log Message:
-----------
XWIKI-21424: Use CSRF token in the realtime HTML Converter API
* Add a mandatory CSRF token to use RTFrontend.ConvertHTML
* Add a page test for RTFrontend.ConvertHTML that checks for the proper use of the CSRF token
* Improve URL creation and add Translations.xml
(cherry picked from commit 4896712ee6483da623f131be2e618f1f2b79cb8d)
Branch: refs/heads/stable-15.5.x
Home: https://github.com/xwiki/xwiki-platform
Commit: d88da4572fb7d4f95e1f54bb0cce33fce3df08d9
https://github.com/xwiki/xwiki-platform/commit/d88da4572fb7d4f95e1f54bb0cce…
Author: pjeanjean <pierre.jeanjean(a)xwiki.com>
Date: 2023-10-24 (Tue, 24 Oct 2023)
Changed paths:
M xwiki-platform-core/xwiki-platform-realtime/xwiki-platform-realtime-ui/pom.xml
M xwiki-platform-core/xwiki-platform-realtime/xwiki-platform-realtime-ui/src/main/resources/RTFrontend/ConvertHTML.xml
A xwiki-platform-core/xwiki-platform-realtime/xwiki-platform-realtime-ui/src/main/resources/XWiki/Realtime/Translations.xml
A xwiki-platform-core/xwiki-platform-realtime/xwiki-platform-realtime-ui/src/test/java/org/xwiki/realtime/ui/ConvertHTMLPageTest.java
M xwiki-platform-core/xwiki-platform-realtime/xwiki-platform-realtime-webjar/src/main/webjar/loader.js
Log Message:
-----------
XWIKI-21424: Use CSRF token in the realtime HTML Converter API
* Add a mandatory CSRF token to use RTFrontend.ConvertHTML
* Add a page test for RTFrontend.ConvertHTML that checks for the proper use of the CSRF token
* Improve URL creation and add Translations.xml
(cherry picked from commit 4896712ee6483da623f131be2e618f1f2b79cb8d)
Branch: refs/heads/stable-15.9.x
Home: https://github.com/xwiki/xwiki-platform
Commit: 9f8cc88497418750b09ce9fde5d67d840f038fbf
https://github.com/xwiki/xwiki-platform/commit/9f8cc88497418750b09ce9fde5d6…
Author: pjeanjean <pierre.jeanjean(a)xwiki.com>
Date: 2023-10-24 (Tue, 24 Oct 2023)
Changed paths:
M xwiki-platform-core/xwiki-platform-realtime/xwiki-platform-realtime-ui/pom.xml
M xwiki-platform-core/xwiki-platform-realtime/xwiki-platform-realtime-ui/src/main/resources/RTFrontend/ConvertHTML.xml
A xwiki-platform-core/xwiki-platform-realtime/xwiki-platform-realtime-ui/src/main/resources/XWiki/Realtime/Translations.xml
A xwiki-platform-core/xwiki-platform-realtime/xwiki-platform-realtime-ui/src/test/java/org/xwiki/realtime/ui/ConvertHTMLPageTest.java
M xwiki-platform-core/xwiki-platform-realtime/xwiki-platform-realtime-webjar/src/main/webjar/loader.js
Log Message:
-----------
XWIKI-21424: Use CSRF token in the realtime HTML Converter API
* Add a mandatory CSRF token to use RTFrontend.ConvertHTML
* Add a page test for RTFrontend.ConvertHTML that checks for the proper use of the CSRF token
* Improve URL creation and add Translations.xml
(cherry picked from commit 4896712ee6483da623f131be2e618f1f2b79cb8d)
Branch: refs/heads/master
Home: https://github.com/xwiki/xwiki-platform
Commit: 4896712ee6483da623f131be2e618f1f2b79cb8d
https://github.com/xwiki/xwiki-platform/commit/4896712ee6483da623f131be2e61…
Author: pjeanjean <pierre.jeanjean(a)xwiki.com>
Date: 2023-10-24 (Tue, 24 Oct 2023)
Changed paths:
M xwiki-platform-core/xwiki-platform-realtime/xwiki-platform-realtime-ui/pom.xml
M xwiki-platform-core/xwiki-platform-realtime/xwiki-platform-realtime-ui/src/main/resources/RTFrontend/ConvertHTML.xml
A xwiki-platform-core/xwiki-platform-realtime/xwiki-platform-realtime-ui/src/main/resources/XWiki/Realtime/Translations.xml
A xwiki-platform-core/xwiki-platform-realtime/xwiki-platform-realtime-ui/src/test/java/org/xwiki/realtime/ui/ConvertHTMLPageTest.java
M xwiki-platform-core/xwiki-platform-realtime/xwiki-platform-realtime-webjar/src/main/webjar/loader.js
Log Message:
-----------
XWIKI-21424: Use CSRF token in the realtime HTML Converter API
* Add a mandatory CSRF token to use RTFrontend.ConvertHTML
* Add a page test for RTFrontend.ConvertHTML that checks for the proper use of the CSRF token
* Improve URL creation and add Translations.xml
Branch: refs/heads/stable-14.10.x
Home: https://github.com/xwiki/xwiki-platform
Commit: efd3570f3e5e944ec0ad0899bf799bf9563aef87
https://github.com/xwiki/xwiki-platform/commit/efd3570f3e5e944ec0ad0899bf79…
Author: pjeanjean <pierre.jeanjean(a)xwiki.com>
Date: 2023-10-24 (Tue, 24 Oct 2023)
Changed paths:
M xwiki-platform-core/xwiki-platform-oldcore/src/main/resources/ApplicationResources.properties
M xwiki-platform-core/xwiki-platform-scheduler/xwiki-platform-scheduler-test/xwiki-platform-scheduler-test-docker/src/test/it/org/xwiki/scheduler/test/ui/SchedulerIT.java
M xwiki-platform-core/xwiki-platform-scheduler/xwiki-platform-scheduler-ui/pom.xml
M xwiki-platform-core/xwiki-platform-scheduler/xwiki-platform-scheduler-ui/src/main/resources/Scheduler/Translations.de.xml
M xwiki-platform-core/xwiki-platform-scheduler/xwiki-platform-scheduler-ui/src/main/resources/Scheduler/Translations.ru.xml
M xwiki-platform-core/xwiki-platform-scheduler/xwiki-platform-scheduler-ui/src/main/resources/Scheduler/Translations.uk.xml
M xwiki-platform-core/xwiki-platform-scheduler/xwiki-platform-scheduler-ui/src/main/resources/Scheduler/WebHome.xml
A xwiki-platform-core/xwiki-platform-scheduler/xwiki-platform-scheduler-ui/src/test/java/org/xwiki/scheduler/ui/SchedulerPageTest.java
Log Message:
-----------
XWIKI-20851: Validate CSRF token before running job scheduling actions
* Add a mandatory CSRF token for job management
* Add a page test for Scheduler.WebHome that checks for the proper use of the CSRF token
* Refactor scheduling actions URL generation
* Refactor Scheduler.WebHome to improve escaping
(cherry picked from commit f16ca4ef1513f84ce2e685d4a05d689bd3a2ab4c)