Ecosyste.ms: OpenCollective

An open API service for software projects hosted on Open Collective.

github.com/getgrav/grav

Modern, Crazy Fast, Ridiculously Easy and Amazingly Powerful Flat-File CMS powered by PHP, Markdown, Twig, and Symfony
https://github.com/getgrav/grav

fix for safe_functions attack #GHSA-c9gp-64c4-2rrh

4149c81339274130742831422de2685f298f3a6e authored 10 months ago by Andy Miller <[email protected]>
Update SECURITY.md

2da91d9c8b7899abccfc327bf6ed26df5ebfa6be authored 10 months ago by Andy Miller <[email protected]>
Update SECURITY.md

d69adcf347c74c501d3d311e0f738a2236b5d3cc authored 10 months ago by Andy Miller <[email protected]>
Update SECURITY.md

45e2c27c6670793b82b17fa2e41b5a46f66bae7d authored 10 months ago by Andy Miller <[email protected]>
Update SECURITY.md

f77df43d7a24d8659b4d54d83b0674c6545fa8ab authored 10 months ago by Andy Miller <[email protected]>
Mitigate various SSTI injections

de1ccfa12dbcbf526104d68c1a6bc202a98698fe authored 10 months ago by Andy Miller <[email protected]>
fixed path traversal by santize checking fiilename

5928411b86bab05afca2b33db4e7386a44858e99 authored 10 months ago by Andy Miller <[email protected]>
typo

15dc7568a5c8ea6974e7408a823fee462185863e authored 10 months ago by Andy Miller <[email protected]>
upgraded built-in composer to 2.7.1

b435d2b88425f460d0b66d4289643e582d3b0533 authored 10 months ago by Andy Miller <[email protected]>
update vendor libs

dbedb60634473eafe59eafe979751f119018ce48 authored 10 months ago by Andy Miller <[email protected]>
fix for bad page dates + changelog update

f9f5781af808eefc096bb527fda30d97ae428cd3 authored 11 months ago by Andy Miller <[email protected]>
New Trait for decoding attribute in images (#3796)

* New Trait for decoding attribute in images

* Update comments info

* decoding default in ...

ad8b1b79bdd81f3264327754efa5cf7ad52b6115 authored 11 months ago by pmoreno.rodriguez <[email protected]>
changelog updated

cd2a7d8d98268ea6a01d001eb2c5a1b5882d1b68 authored 11 months ago by Andy Miller <[email protected]>
fix other multibyte issues in inflector

1dc6866eab50f360c94c43aa950f8bb34d217723 authored 11 months ago by Andy Miller <[email protected]>
fix special-chars in titleize - fixes #732

0b16401a9154cde285047b90fa312625ae2648b8 authored 11 months ago by Andy Miller <[email protected]>
Merge branch 'release/1.7.44'

78b8125eae24de659eddf20db42413bed632b290 authored 12 months ago by Andy Miller <[email protected]>
Merge tag '1.7.44' into develop

Release v1.7.44

0d7cd64d0d9ac24579fc067550050285f5375922 authored 12 months ago by Andy Miller <[email protected]>
remvoed outdated PR as it was DRAFT

3ea86e17943a974b12adabcc1bb35906175e47ae authored 12 months ago by Andy Miller <[email protected]>
remove test

6df03063c8ef3d248c12a0bbdd9cf09f758267c4 authored 12 months ago by Andy Miller <[email protected]>
Revert "Added 'outdated' option to scheduler command (#3771)"

This reverts commit a71403f158cd55ccfbe03f6fbbb4c6bf84a71d95.

# Conflicts:
# tests/unit/Grav/Co...

e5990f431dc76649173495bc204035a01c569cfd authored 12 months ago by Andy Miller <[email protected]>
remove a debug

b3d55ca81a4f2772f92003db573c86d7de06b423 authored 12 months ago by Andy Miller <[email protected]>
Merge tag '1.7.44' into develop

Releaese v1.7.44

a0e728b5402f2b9dc03fddea436e2175c042bf57 authored 12 months ago by Andy Miller <[email protected]>
Merge branch 'release/1.7.44'

171a5c074c26f6ce589f2cadb073caa93f6d4b18 authored 12 months ago by Andy Miller <[email protected]>
prepare for release

f33e89fa457a7b096f3a1d911582faca02eb98bd authored 12 months ago by Andy Miller <[email protected]>
updated changelog

e33d71e4b99565dab70600f402d3abbe124b20e7 authored 12 months ago by Andy Miller <[email protected]>
updated composer again

ddbb1362dcf02d8c35ce4ce0fb5e406a7e470dad authored 12 months ago by Andy Miller <[email protected]>
Added 'outdated' option to scheduler command (#3771)

a71403f158cd55ccfbe03f6fbbb4c6bf84a71d95 authored 12 months ago by maelanleborgne <[email protected]>
Allow empty and maolformed links in markdown (#3782)

When a user adds an invalid link in a page in markdown for example [](https://) and that page is...

88eb9f915a052847d6a2d56708fdabb4f129ef44 authored 12 months ago by Ron Wardenier <[email protected]>
Merge branch 'develop' of github.com:getgrav/grav into develop

70e526251255a6e52bb56c0c848f42cfcb145e55 authored 12 months ago by Andy Miller <[email protected]>
update copyright year

a1c116dd82c761ecf9800e412fcd9159722ad769 authored 12 months ago by Andy Miller <[email protected]>
add php 8.3 to test (#3778)

https://www.php.net/releases/8.3/en.php

cc08da0c7456d43e098425c858645af2733bbbd1 authored 12 months ago by Rotzbua <[email protected]>
composer updates

f7eab6b163c11346529ffeeba514599d0e9d8f4f authored 12 months ago by Andy Miller <[email protected]>
language updates

f59fa9a291c79fe1a26d143ddaca1dd46d762ce7 authored 12 months ago by Andy Miller <[email protected]>
Revert "Use new `groupNames` method"

This reverts commit 470b69c775b409965bf1f5ccdf99f3c6a551f5fb.

458c64086e824cf162d9b227854a0ca62548640d authored 12 months ago by Andy Miller <[email protected]>
updated composer and vendor libraries

345086538caee1b4607a34b1d4429d08525e237e authored about 1 year ago by Andy Miller <[email protected]>
updated changelog

c62e173955156f7bd2ad5c7a94963d8e2a330bf7 authored about 1 year ago by Andy Miller <[email protected]>
Add mime type for vCards (.vcf files) (#3772)

Adds support for vCards (.vcf files) in case of e.g. scanning a qr-code with the direct url to t...

1b8e267d0a53215b2b20cb047d1e84a93120a630 authored about 1 year ago by JS Media Creation <[email protected]>
updated changelog

eb72cb32bb0daae0ed7f7f6ec86c11cfc036812f authored about 1 year ago by Andy Miller <[email protected]>
Added debugger output when routes conflict

4e0139854566d1a8495f269c213b62185377cb4e authored about 1 year ago by Andy Miller <[email protected]>
Updated packages (including dom-sanitizer 1.0.7)

b0dd2358f469691d42a314111e32b5ee485e2538 authored about 1 year ago by Andy Miller <[email protected]>
Revert "fix whitespace encoding in urls" (#3764)

* Revert "fix whitespace encoding in urls (#3719)"

This reverts commit 6a9b1f221488929db44e7e...

0c9333e60d0739ba6ed67bca62d8867f9165c5e0 authored about 1 year ago by Djamil Legato <[email protected]>
updated changelog

0b53609fa06662f5eaa7172154f8ae1a3f0d7aa5 authored about 1 year ago by Andy Miller <[email protected]>
Merge branch 'master' into develop

cfa510e7f739040f334c864a1d9ef70bea0cfe57 authored about 1 year ago by Andy Miller <[email protected]>
validaiton math rounding - fixes #3761

6d5f0ff9bacfb2f136aa55bca4d59f44c2074490 authored about 1 year ago by Andy Miller <[email protected]>
Fixed too few arguments exception thrown in the admin with using flex objects (#3658)

Going through older PRs, thanks for this.

71939e18be314a1822d88d6fd98afec3d3cdf313 authored about 1 year ago by Angela Ugrinovska <[email protected]>
Correcting comment in about custom site.yaml value (#3659)

Corrected blog: route: '/blog' comment from system.blog.route to site.blog.route

45f8fe4d0b6df28a76dc3f895ae6369a7260deb6 authored about 1 year ago by Junky Junkerson <[email protected]>
Fixed exception: "Property 'jsmodule_pipeline_include_externals' does not exist in the object!" (#3661)

Co-authored-by: Artemkin_V <[email protected]>

2179ef33a7f1185a900e76d610aae43daf4d1be7 authored about 1 year ago by Vital <[email protected]>
Update jquery-3.x.min.js to v3.6.4 (#3713)

Source: https://code.jquery.com/jquery-3.6.4.min.js

d0ae677e612d215b3e3788ad4dd62ee0258db83a authored about 1 year ago by Rotzbua <[email protected]>
fix whitespace encoding in urls (#3719)

* fix broken src url encoding

* remove redundant code

* Revert "remove redundant code"

...

6a9b1f221488929db44e7ed3ead16201f1ee38d3 authored about 1 year ago by dirkjf <[email protected]>
Update system.yaml (#3721)

add ISO 8601 dateformat

b1117e45c966a4c3a882b39b2b2cf2661fb4c4a5 authored about 1 year ago by yiwu <[email protected]>
Fix invalid input to foreach (#3724)

* Fix invalid input to foreach

This happens with discord oauth, possibly others

* Update U...

382a836d807156af8786867f1e76a9e0f936f2b0 authored about 1 year ago by Ricardo Verdugo <[email protected]>
Added detection of external triggers of the scheduler (#3726)

Added extension to the isCrontabSetup method to detect external triggers of the scheduler, so th...

db3e39f0cbefd90967f73110def4d41ed52eee74 authored about 1 year ago by Raffael Herrmann <[email protected]>
Update dangerous extensions (#3756)

Thanks for this!

80ce87e4a936a3f055d306710cf21120671585ad authored about 1 year ago by Jeremy Angele <[email protected]>
Update Inflector::ordinalize() (#3759)

put the init() call before the $ordinals test

f0f29891d6f9e5f33e41f902140c004421545374 authored about 1 year ago by Jeff <[email protected]>
Merge tag '1.7.43' into develop

Release 1.7.43

c66da5bedb5aa58eb6d9fa01a3a75ae07a19cd22 authored about 1 year ago by Andy Miller <[email protected]>
Merge branch 'release/1.7.43'

1f21d259ea7a2b81208dcaaecd93353bbc438dd1 authored about 1 year ago by Andy Miller <[email protected]>
prepare for release

21b218e4649cbfdffb949c832181932c3b9b4b66 authored about 1 year ago by Andy Miller <[email protected]>
change version number

3b2fb023b80f363d8ecde8e57fe17a2bd8547613 authored about 1 year ago by Andy Miller <[email protected]>
updated changelog

92babda7422050a996d0f494d01598e4a2c65e56 authored about 1 year ago by Andy Miller <[email protected]>
Fix url of @import not being rewritten (#3750)

Looks good. thanks.

3cdbc5890a1fdcde163e52cdd1b05440eb3d5a80 authored about 1 year ago by pamtbaau <[email protected]>
updated composer - fixes #3748

a8042a666c0be5eb9d9e1f51cb7fc5694775d030 authored about 1 year ago by Andy Miller <[email protected]>
move language debug to debugger - fixes #3752

79f9640b1283115329775e39f24fbfc49805120f authored about 1 year ago by Andy Miller <[email protected]>
add ability to override modified date via frontmatter

65aeb82e2132e1ea3f7d606a43cb0eaccd3909d3 authored about 1 year ago by Andy Miller <[email protected]>
inlcude phar in dangerous extensions

e3b0aa0c502aad251c1b79d1ee973dcd93711f07 authored over 1 year ago by Andy Miller <[email protected]>
updated security.md

7e617a632eef9ff6df92851cce8e2224a7146fd4 authored over 1 year ago by Andy Miller <[email protected]>
Merge tag '1.7.42.3' into develop

Release v1.7.42.3

490bdd6ce7aaae315c033ca5af112a778a42455a authored over 1 year ago by Andy Miller <[email protected]>
Merge branch 'release/1.7.42.3'

fb5dd1487517ac1cf332e7bdec25a0cacda978af authored over 1 year ago by Andy Miller <[email protected]>
prepare for release

893b1dd1db7b8323cf0963391ec082cb0ac80c02 authored over 1 year ago by Andy Miller <[email protected]>
fixed a typo

114695980694fbc82612dc59b64f142ca0913a75 authored over 1 year ago by Andy Miller <[email protected]>
Merge branch 'release/1.7.42.2'

45103f81b4f5de0e24aa09897f82b7783d34e810 authored over 1 year ago by Andy Miller <[email protected]>
Merge tag '1.7.42.2' into develop

Release v1.7.42.2

c426f4a9cc3317143181c7c78c6452d405ead648 authored over 1 year ago by Andy Miller <[email protected]>
prepare for release

0d27f2d77e16b1d0b143cac1d6a68c252ccbc714 authored over 1 year ago by Andy Miller <[email protected]>
SSTI attack mitigation - GHSA-9436-3gmp-4f53

b4c62101a43051fc7f5349c7d0a5b6085375c1d7 authored over 1 year ago by Andy Miller <[email protected]>
updated vendor libs

950cd0854fdb0047d776c6d56447c06863412c57 authored over 1 year ago by Andy Miller <[email protected]>
Merge branch 'release/1.7.42.1'

4cd137830b0adc5720b6507dd6418c11e0d38430 authored over 1 year ago by Andy Miller <[email protected]>
Merge tag '1.7.42.1' into develop

Release v1.7.42.1

aa19bcdcbea9ef86e124120076f7fdd9daea0249 authored over 1 year ago by Andy Miller <[email protected]>
prepare for release

cf6bf7d1ecdb8f8053ff8180513fa8541389df90 authored over 1 year ago by Andy Miller <[email protected]>
Fixes #3727 - filter field being a closure

47665dbddb936a14850ea4a029947621fe700b65 authored over 1 year ago by Andy Miller <[email protected]>
Merge tag '1.7.42' into develop

Release 1.7.42

5b89091f13bafdd401da51f840c71b5fa266e14f authored over 1 year ago by Andy Miller <[email protected]>
Merge branch 'release/1.7.42'

dc209453d0817547db0d3a8b27110decb63f2b5d authored over 1 year ago by Andy Miller <[email protected]>
prepare for release

50ee844759c3d0f882f7e635764749d901555451 authored over 1 year ago by Andy Miller <[email protected]>
also handle SSTI in reduce twig filter + function

244758d4383034fe4cd292d41e477177870b65ec authored over 1 year ago by Andy Miller <[email protected]>
more SSTI fixes in Utils::isDangerousFunction()

71bbed12f950de8335006d7f91112263d8504f1b authored over 1 year ago by Andy Miller <[email protected]>
better SSTI in |map and |filter

8c2c1cb72611a399f13423fc6d0e1d998c03e5c8 authored over 1 year ago by Andy Miller <[email protected]>
Fix for dangerous tags in |map filter

9d01140a63c77075ef09b26ef57cf186138151a5 authored over 1 year ago by Andy Miller <[email protected]>
Added languages debug option

259e775db84b690dc43f0fa981dbdfc822c9d8bc authored over 1 year ago by Andy Miller <[email protected]>
Merge tag '1.7.41.2' into develop

Release v1.7.41.2

c7680bb50a881abab3a467c65427767fd372b3b2 authored over 1 year ago by Andy Miller <[email protected]>
Merge branch 'release/1.7.41.2'

d4c617ff199d7feadad72cf1de797fa92b73f605 authored over 1 year ago by Andy Miller <[email protected]>
prepare for release

722ce55ccbcb77606c715e9a76f1ac4811d2cd5c authored over 1 year ago by Andy Miller <[email protected]>
update changelog

5b950ce73f902b381fb5ca859ca036911442c4c8 authored over 1 year ago by Andy Miller <[email protected]>
fix for special chars in slugs causing redirect loops

8dfa2110bfb23c11144f63270982e48b3f4e2b7b authored over 1 year ago by Andy Miller <[email protected]>
improved the Twig Cache Tag with customizable key (lang specific if needed)

31aeaf6309d3bb7e12f1ebe9b97fce2f1fccb7c1 authored over 1 year ago by Andy Miller <[email protected]>
Merge branch 'release/1.7.41.1'

d96b023d72451b901c807c8d6d81497cad46f584 authored over 1 year ago by Andy Miller <[email protected]>
Merge tag '1.7.41.1' into develop

Release v1.7.41.1

4de3cab5229bc2c0d36b681ef8557fadcc8063d8 authored over 1 year ago by Andy Miller <[email protected]>
prepare for release

b34f70f91d7fc7f208ec6158be16707bc0e0b77f authored over 1 year ago by Andy Miller <[email protected]>
truncator fix

9da8cad7fe16ac907083d42d0d2aa9fd7e0caed4 authored over 1 year ago by Andy Miller <[email protected]>
Merge branch 'release/1.7.41'

e4a30f5966cd4da07ccc682ca7bffeebb146e0f5 authored over 1 year ago by Andy Miller <[email protected]>
Merge tag '1.7.41' into develop

Release v1.7.41

814a05085857450cb00dc723060d7c65bd70502b authored over 1 year ago by Andy Miller <[email protected]>
prepare for release

b6179bd2def756185f66cc410d40cc1dde285be0 authored over 1 year ago by Andy Miller <[email protected]>
FILTER_SANITIZE_STRING + Toolbox 1.6.5

e5ac37e3cf5d58e353693fd902cbc778e044642c authored over 1 year ago by Andy Miller <[email protected]>