forgejo-tickets/internal
Matthew Knight ec94d94453 Merge pull request 'Sanitize Content-Disposition filename in downloads' (#43) from fix/content-disposition-injection into main
Reviewed-on: https://git.ts.mattnite.net/mattnite/forgejo-tickets/pulls/43
2026-02-18 00:14:50 +00:00
..
auth Set Secure flag on session cookie for HTTPS 2026-02-17 15:50:18 -08:00
config Require minimum 32-byte SESSION_SECRET 2026-02-17 16:03:05 -08:00
database Init 2026-02-12 15:00:17 -08:00
email Escape user-supplied values in HTML email templates 2026-02-17 16:02:01 -08:00
forgejo Validate proxy download URL host to prevent SSRF 2026-02-17 16:07:31 -08:00
handlers Merge pull request 'Sanitize Content-Disposition filename in downloads' (#43) from fix/content-disposition-injection into main 2026-02-18 00:14:50 +00:00
markdown Footnotes 2026-02-15 00:27:01 -08:00
middleware Add rate limiting to authentication endpoints 2026-02-17 15:55:34 -08:00
models JWT SSO 2026-02-15 09:12:19 -08:00
templates JWT SSO 2026-02-15 09:12:19 -08:00