234 Commits

Author SHA1 Message Date
ccd0
e186c749ec fix CatalogLinks race condition 2014-08-23 18:29:42 -07:00
ccd0
f87380f22f remove "Show Dice Roll" 2014-08-23 10:48:25 -07:00
ccd0
2557f86ace remove Emoji 2014-08-23 10:36:05 -07:00
ccd0
2a5da0a0a9 use Javascript snippets for code in HTML templates 2014-08-03 08:16:23 -07:00
ccd0
cff287c9c3 HTML templates 2014-08-02 22:43:01 -07:00
Zixaphir
7a41feb18f Fix an issue where catalog links were affecting external links zixaphir/appchan-x/#773 (CatalogLinks.coffee part) 2014-08-02 07:40:30 -07:00
ccd0
f11e9c8801 show actual number of dice rolled when 4chan's limit (currently 25) is exceeded 2014-07-29 09:05:33 -07:00
ccd0
a74e8aa4dc get rid of unneeded object 2014-07-01 12:46:40 -07:00
ccd0
3fa001636d %% in format string = literal % 2014-06-29 02:47:06 -07:00
ccd0
0877dc8b8a FileInfo: round bytes also 2014-06-29 00:16:20 -07:00
ccd0
136f778743 rewrite FileInfo for easier XSS checking 2014-06-29 00:05:55 -07:00
ccd0
646c29c4bc fix short filename hover 2014-06-28 22:07:02 -07:00
ccd0
b6739cc45d move HTML escape to global as E 2014-06-28 21:58:14 -07:00
ccd0
9a7f8548a1 add BuildTest keybind 2014-06-27 21:56:24 -07:00
ccd0
20006af4fe prettify tweaks 2014-06-27 21:45:26 -07:00
ccd0
63d7372ad2 a few more tweaks from Mayhem 2014-06-18 23:59:17 -07:00
ccd0
cdb83f744a cleanup menu code 2014-06-18 22:39:19 -07:00
ccd0
f17dfcc180 use post ID for jsmath event 2014-06-18 02:11:27 -07:00
ccd0
efc852464f don't use event for adding to menu internally 2014-06-17 21:12:07 -07:00
ccd0
bb911dfead remove captcha doubling from report window 2014-06-09 14:40:06 -07:00
ccd0
08ee499d57 don't run jsMath parsing until post is inserted into the document 2014-05-24 15:41:53 -07:00
ccd0
6a1706f5b6 check that jsMath and jsMath.Autoload exist 2014-05-24 01:15:21 -07:00
ccd0
6b838f7992 fix failure of jsMath to load in cross-thread quotes 2014-05-24 00:25:24 -07:00
ccd0
b2d1ac11f4 fix jsMath loading error 2014-05-23 23:58:56 -07:00
ccd0
cb828fa9c4 quote all the attributes 2014-05-15 17:32:38 -07:00
ccd0
05014b7f13 rewrite HTML escaping in post building 2014-05-15 17:02:17 -07:00
ccd0
e74fc2765a move escape function to Build 2014-05-15 10:02:27 -07:00
ccd0
4b757fb0a3 only need single quotes here 2014-05-15 09:30:08 -07:00
ccd0
1189b71029 this seems to be a common pattern 2014-05-14 14:16:16 -07:00
ccd0
6ce8bef709 Drop HTML in custom board titles.
This could be useful, but the fact that it's been broken almost
since its creation indicates nobody's actually using it.

As with the file info formatting, I'll mention it on the changelog
and add it back with better security if someone actually wants to
use it.
2014-05-13 15:03:10 -07:00
ccd0
0415828e27 Disallow custom HTML in file info format.
I doubt anyone is using it, and if someone manages to inject a
malicious script into the page, this could be used to install a
script permanently to be executed each time 4chan is visited.

I'll mention it in the changelog, and if anyone complains, I can
add it back with some security checks.
2014-05-13 14:20:19 -07:00
ccd0
3365e67c0a ' should be ' 2014-05-13 02:26:28 -07:00
ccd0
43a99b9291 update catalog.neet.tv board list 2014-05-12 23:56:53 -07:00
Zixaphir
02ed8d2db0 4gropes has been broken for awhile, I guess? Fix #687
If anyone has a new catalog to replace 4gropes, CC me.
2014-05-12 23:46:58 -07:00
ccd0
97ca89c83d Escape file info more aggressively.
Most of this isn't strictly necessary, but it makes the script
more robust against changes, either in 4chan or the script itself.
I don't want to have to review this code for vulnerabilities each
time something changes.
2014-05-12 22:20:04 -07:00
ccd0
57ed5e8055 fix privilege escalation vulnerability 2014-05-12 21:46:18 -07:00
ccd0
c3f04314cc make things work with Quick Reply and Thread Updater disabled 2014-05-11 17:36:13 -07:00
ccd0
e1ff987c1e enable keybinds on catalog 2014-04-26 22:51:48 -07:00
ccd0
c1ea97cb6f remove old InfiniScroll code 2014-04-26 19:39:17 -07:00
ccd0
cc0cc82c4c fix comment expansion 2014-04-20 01:21:37 -07:00
ccd0
823eace903 begin work on restoring comment expansion 2014-04-19 21:44:13 -07:00
ccd0
bf45917000 Merge branch 'newnames'
Conflicts:
	src/General/lib/post.class
2014-04-19 16:57:17 -07:00
ccd0
ec03ab524d Merge branch 'page1' 2014-04-19 15:28:56 -07:00
ccd0
7aeb46abb9 transition to new HTML 2014-04-19 00:28:19 -07:00
ccd0
a452b732fd change res -> thread in JSON API URLs 2014-04-13 01:46:18 -07:00
ccd0
c5b06f6988 Merge branch 'page1' into newnames 2014-04-13 01:38:24 -07:00
ccd0
9fe486d637 Merge branch 'master' into page1 2014-04-13 01:19:02 -07:00
ccd0
814b64b31c update URLs to 4cdn.org 2014-04-12 22:37:27 -07:00
ccd0
4ecd6f8cfe res -> thread 2014-04-12 21:16:01 -07:00
ccd0
1182047357 more indexing changes 2014-04-12 18:41:05 -07:00