Commit History

Author SHA1 Message Date
  Kristan Kenney ba6c51b849 Ensure error message is shown if 2FA token is invalid 5 years ago
  Jaap Marcus b93570f6bd Unset twofa on error 5 years ago
  Jaap Marcus f3150f3367 Changed text / Improved password check 5 years ago
  Jaap Marcus 068220a36e New Login screen 5 years ago
  Jaap Marcus 323bf57304 Improve security / anti brute force (#818) 5 years ago
  Raphael Schneeberger e161b4a616 Fix autologout issue on cloudflare proxy and rearange 2FA auth part. 5 years ago
  Robert Zollner 3aa8bb468e Hestia system config was read only on login and cached as Session data 6 years ago
  Kristan Kenney ca1fbbcba2 Set correct landing page when switching user context 6 years ago
  Kristan Kenney 4bfe58bb03 Set correct landing page depending on admin/standard user 6 years ago
  Kristan Kenney d1430c3213 User interface refresh 6 years ago
  Raphael Schneeberger b7982ea43d Replace spaces for token. 7 years ago
  Raphael Schneeberger b4d67da69d Fix small code issues. 7 years ago
  Raphael Schneeberger 3b02f96440 Implement 2FA token for the login page. 7 years ago
  Raphael Schneeberger 4c4af5538b Change VESTA_CMD to HESTIA_CMD. 7 years ago
  dpeca 1a61ea102b Redirect to /list/user/ after login 8 years ago
  Serghey Rodin eaf9d89096 Auth fix 0.9.8-20 8 years ago
  Serghey Rodin 3fdee2975d Hardening password checks 8 years ago
  dpeca 6938601440 Revert "Patch insecure CSRF token crypto vulnerability" 9 years ago
  Arinerron 2f5c7a10b7 Fix cryptographically insecure CSRF tokens 9 years ago
  Made I.T 9623be0708 CSRF 9 years ago
  Arinerron c6393c8771 Patch session fixation vuln 9 years ago
  Serghey Rodin 6b4b81f7d6 fix default language 9 years ago
  Serghey Rodin 4b8a2c3f38 fixes from u1 (default login + i18n) 9 years ago
  Serghey Rodin 95850df8d1 Flatta's security fixes from PullRequest #516 10 years ago
  Serghey Rodin 39e9b6397b Revert "[SECURITY] Fix OS command injection." 10 years ago
  Flat 8e951ac72e :lock: :recycle: Implement secure `exec` wrapper functions. 10 years ago
  Flat 6e13036780 :lock: Fix OS command injection vulnerability. 10 years ago
  Flat 2bd84f00f9 Detect user language 10 years ago
  Serghey Rodin a5efa885d8 imroved favorites handler 10 years ago
  Serghey Rodin 97a368afdf Merge pull request #422 from SysVoid/patch-1 10 years ago