Commit Graph

  • 1496988ac1 docs: use "go install" instead of "go get" (#6972) Joe Chen 2022-05-27 08:36:38 +08:00
  • d54e153fc8 csrf: sanitize token after reading from cookie (#6969) Toby Simmons 2022-05-26 10:56:14 -05:00
  • e65071d3aa chore: Set permissions for GitHub actions (#6936) Naveen 2022-05-25 12:05:29 -05:00
  • b4624bd468 chore: update README_ZH.md (#6960) Songsong Wang 2022-05-25 18:27:24 +08:00
  • bdff033492 mod: bump gorm.io/driver/postgres from 1.3.5 to 1.3.6 (#6964) dependabot[bot] 2022-05-23 20:35:06 +08:00
  • 8b395a49b3 chore: fix lint errors (#6951) Joe Chen 2022-05-16 20:57:19 +08:00
  • e01b0ce0d1 codecov: make patch status to be informational (#6952) Joe Chen 2022-05-16 20:58:35 +08:00
  • c4b770f305 chore: fix lint errors (#6951) Joe Chen 2022-05-16 20:57:19 +08:00
  • a6c53eb068 mod: bump github.com/prometheus/client_golang from 1.12.1 to 1.12.2 (#6950) dependabot[bot] 2022-05-16 19:42:12 +08:00
  • 705126cac8 locale: sync from Crowdin (#6948) Joe Chen 2022-05-15 02:15:24 +08:00
  • cdc904e49e mod: bump github.com/urfave/cli from 1.22.8 to 1.22.9 (#6938) dependabot[bot] 2022-05-09 19:39:16 +08:00
  • 7ca5c8ca72 chore: update release templates (#6935) Joe Chen 2022-05-07 00:16:46 +08:00
  • d06ba7e527 ci: mirror lint config from main v0.12.7-rc.1 v0.12.7 Joe Chen 2022-05-05 16:18:01 +08:00
  • b0a902dcca release: update version to 0.12.7 Joe Chen 2022-05-05 16:10:55 +08:00
  • e51e016834 CHANGELOG: cut entries for 0.12.7 (#6931) Joe Chen 2022-05-05 16:09:17 +08:00
  • bc77440b30 attachment: set CSP header in the serving endpoint (#6926) Joe Chen 2022-05-03 17:51:28 +08:00
  • f7802b9227 release: add step to publish GitHub security advisory (#6929) Joe Chen 2022-05-05 15:57:50 +08:00
  • a76aff36d0 CHANGELOG: add entry for #6926 (#6928) Joe Chen 2022-05-05 15:57:32 +08:00
  • f45dbf3e76 chore: watch "custom" directory in dev and use lowercase for header value (#6927) Joe Chen 2022-05-03 17:54:14 +08:00
  • cb35b73048 attachment: set CSP header in the serving endpoint (#6926) Joe Chen 2022-05-03 17:51:28 +08:00
  • a61a4389ec mod: bump github.com/urfave/cli from 1.22.7 to 1.22.8 (#6925) dependabot[bot] 2022-05-02 20:58:08 +08:00
  • f1755f5bc5 mod: bump gorm.io/gorm from 1.23.4 to 1.23.5 (#6924) dependabot[bot] 2022-05-02 20:57:37 +08:00
  • 71fc57f8a0 chore: fix dead link in pull request template (#6922) Joe Chen 2022-04-27 20:29:54 +08:00
  • f2c3027f50 restore: fix incorrect existence checking of "repositories.zip" (#6914) 4e4o 2022-04-27 09:32:13 +07:00
  • 39adf6e55a chore: update TRANSLATORS (#6912) vinceAmstoutz 2022-04-27 04:19:59 +02:00
  • 4d33a5b5a8 locale: sync from Crowdin (#6920) Joe Chen 2022-04-26 17:46:22 +08:00
  • 26fce15bcf mod: bump gorm.io/driver/postgres from 1.3.4 to 1.3.5 (#6917) dependabot[bot] 2022-04-25 20:33:16 +08:00
  • a230b3de22 mod: bump github.com/urfave/cli from 1.22.5 to 1.22.7 (#6918) dependabot[bot] 2022-04-25 20:32:36 +08:00
  • e5350b9627 mod: bump github.com/go-ldap/ldap/v3 from 3.4.2 to 3.4.3 (#6905) dependabot[bot] 2022-04-11 19:38:46 +08:00
  • a7693cbc86 mod: bump gorm.io/driver/postgres from 1.3.3 to 1.3.4 (#6904) dependabot[bot] 2022-04-11 19:38:18 +08:00
  • 69514d2fc8 SECURITY: refer dummy issue to a simpler example (#6902) Joe Chen 2022-04-09 14:02:32 +08:00
  • 2a8f561c64 mod: update golang.org/x/crypto/ssh (#6884) Joe Chen 2022-04-01 09:54:42 +08:00
  • 0778db4228 CHANGELOG: add missing entries (#6899) Joe Chen 2022-04-06 21:30:55 +08:00
  • 8a046c22a8 context: fix Access-Control-Allow-Credentials header typo (#6381) E99p1ant 2020-10-10 23:09:42 +08:00
  • 5911b0296b mod: bump gorm.io/driver/mysql from 1.3.2 to 1.3.3 (#6892) dependabot[bot] 2022-04-05 16:49:08 +08:00
  • 8acbc2d1de mod: bump gorm.io/gorm from 1.23.3 to 1.23.4 (#6891) dependabot[bot] 2022-04-05 16:48:54 +08:00
  • f37a8d82c1 codecov: make status only informational (#6897) Joe Chen 2022-04-05 16:47:46 +08:00
  • 2601b40ffa mod: bump github.com/gogs/git-module from 1.5.0 to 1.6.0 (#6894) dependabot[bot] 2022-04-05 16:45:01 +08:00
  • 5acbd7bcc3 dependabot: request reviews from the core team (#6896) Joe Chen 2022-04-05 16:41:17 +08:00
  • 5910f77e42 mod: bump gorm.io/driver/postgres from 1.3.1 to 1.3.3 (#6893) dependabot[bot] 2022-04-05 16:39:27 +08:00
  • efa572162f webhook: add missing %s URL value for webhook description (#6478) Renzo Toma 2022-04-04 11:40:34 +02:00
  • 5c4db08968 locale: sync from Crowdin (#6888) Joe Chen 2022-04-02 19:04:55 +08:00
  • f44a693bbd docs: remove task generate-bindata step from sync from Crowdin (#6887) Joe Chen 2022-04-02 19:03:58 +08:00
  • 3f439f15c3 mod: update golang.org/x/crypto/ssh (#6884) Joe Chen 2022-04-01 09:54:42 +08:00
  • 6dbeb16d21 Taskfile: watch go.mod and use timestamp instead of checksum (#6885) Joe Chen 2022-04-01 09:51:30 +08:00
  • c5549b442b templates: use OldIndex for delete files in diff (#6878) Joe Chen 2022-03-28 21:47:07 +08:00
  • 70c6f0a490 mod: bump github.com/gogs/git-module from 1.4.0 to 1.5.0 (#6877) dependabot[bot] 2022-03-28 21:36:21 +08:00
  • f37cd9672c restore: clean up leftover and invalid chars (#6875) Joe Chen 2022-03-26 15:10:39 +08:00
  • 9bce320160 Taskfile: fix incorrect sources syntax (#6874) Joe Chen 2022-03-25 22:12:51 +08:00
  • 22fb91cff9 Taskfile: remove trailing period in task description (#6873) Joe Chen 2022-03-25 18:38:40 +08:00
  • 3c49a6173d mod: bump github.com/gogs/git-module from 1.2.0 to 1.4.0 (#6866) dependabot[bot] 2022-03-22 00:55:36 +08:00
  • d66fe583d5 mod: bump github.com/editorconfig/editorconfig-core-go/v2 from 2.4.3 to 2.4.4 (#6865) dependabot[bot] 2022-03-21 18:49:41 +08:00
  • 72c2d6ab70 mod: bump github.com/stretchr/testify from 1.7.0 to 1.7.1 (#6867) dependabot[bot] 2022-03-21 18:49:11 +08:00
  • 70ff8d787a mod: bump gorm.io/gorm from 1.23.2 to 1.23.3 (#6864) dependabot[bot] 2022-03-21 18:48:47 +08:00
  • 0300f88602 docs: tweak release matters (#6860) Joe Chen 2022-03-19 17:10:00 +08:00
  • 26395294bd go mod tidy v0.12.6-rc.1 v0.12.6 Joe Chen 2022-03-19 14:39:55 +08:00
  • c91365774b Fix tests Joe Chen 2022-03-19 14:34:43 +08:00
  • dff067ac28 ci: add go 1.18.x Joe Chen 2022-03-19 14:29:05 +08:00
  • 45fdfecf64 Disable flaky generated files check Joe Chen 2022-03-19 14:28:24 +08:00
  • 1bf5d89386 run task generate Joe Chen 2022-03-19 14:08:33 +08:00
  • 670cbccf98 release: update version to 0.12.3 Joe Chen 2022-03-19 14:07:09 +08:00
  • f36eeedbf8 CHANGELOG: cut entries for 0.12.6 (#6858) Joe Chen 2022-03-19 14:06:23 +08:00
  • e10ec6f3b8 pkgr: remove debian-8 and ubuntu-14.04 (#6853) Joe Chen 2022-03-17 15:00:23 +08:00
  • d753a48a7d docs: remove instructions to install go-bindata (#6852) Joe Chen 2022-03-17 14:09:00 +08:00
  • 32c454ba5f assets: convert usage of go-bindata to Go embed (#6851) Michael Li 2022-03-17 14:05:09 +08:00
  • 39f64a1371 go: update required version to be 1.16 (#6850) Joe Chen 2022-03-16 12:18:27 +08:00
  • 3539de754d ci: delete Go 1.15 and add Go 1.18 (#6847) Joe Chen 2022-03-16 02:04:27 +08:00
  • 4e10265568 chore: run task generate (#6844) Joe Chen 2022-03-15 22:42:22 +08:00
  • 640e2f62e0 templates: fetch fixed size of members' avatar (#5755) tc608 2022-03-15 22:12:08 +08:00
  • 1791665f74 chore: run task generate (#6844) Joe Chen 2022-03-15 22:42:22 +08:00
  • def6fcc4dc templates: fetch fixed size of members' avatar (#5755) tc608 2022-03-15 22:12:08 +08:00
  • d392bc6e9a workflows: lock closed threads after 90 days (#6843) Joe Chen 2022-03-15 21:30:13 +08:00
  • eddae31ada conf: add allowlist for accessing local network (#6842) Joe Chen 2022-03-14 22:06:08 +08:00
  • 714383a063 conf: add allowlist for accessing local network (#6842) Joe Chen 2022-03-14 22:06:08 +08:00
  • a2c6325261 codecov: disable GitHub Checks (#6840) Joe Chen 2022-03-14 12:52:50 +08:00
  • 0fef3c9082 repo_editor: check upload TreePath and file name (#6838) Joe Chen 2022-03-13 22:18:56 +08:00
  • aeb5e34490 golangci-lint: add unparam linter (#6839) Joe Chen 2022-03-13 22:37:00 +08:00
  • 775901058d repo_editor: check upload TreePath and file name (#6838) Joe Chen 2022-03-13 22:18:56 +08:00
  • 5aca56d2dd docker: check "/data" mount ownership before forcing it (#6553) Bo Lorentsen 2022-03-11 05:29:51 +01:00
  • 3e35371754 chore: fix typo in release issue templates (#6831) Joe Chen 2022-03-11 15:04:47 +08:00
  • bd12d46e79 CHANGELOG: cut entries for 0.12.5 (#6830) Joe Chen 2022-03-11 15:04:12 +08:00
  • e309bc8324 release: update version to 0.12.5 v0.12.5-rc.1 v0.12.5 Joe Chen 2022-03-11 14:58:57 +08:00
  • 64102be2c9 security: fix improper PAM authorization handling (#6819) ysf 2022-03-08 13:02:01 +01:00
  • 91f2cde5e9 security: fix SSRF in repository migration (#6812) Michael Rowley 2022-03-08 03:34:53 +00:00
  • 82ee089088 SECURITY: clarify vulnerability lifecycle (#6828) Joe Chen 2022-03-11 14:25:09 +08:00
  • 61529fd780 docker: check "/data" mount ownership before forcing it (#6553) Bo Lorentsen 2022-03-11 05:29:51 +01:00
  • aac91b3611 lsif: update upload endpoint (#6827) Joe Chen 2022-03-10 23:30:03 +08:00
  • 4ca87057f3 mod: bump gorm.io/gorm from 1.22.5 to 1.23.2 (#6817) dependabot[bot] 2022-03-08 20:44:30 +08:00
  • 553d32ce7d autofix: format code with gofmt and gofumpt (#6821) deepsource-autofix[bot] 2022-03-08 20:35:31 +08:00
  • 940a7da9d1 security: fix improper PAM authorization handling (#6819) ysf 2022-03-08 13:02:01 +01:00
  • 242deca524 security: fix SSRF in repository migration (#6812) Michael Rowley 2022-03-08 03:34:53 +00:00
  • bb19f52c05 README: Add alwaysdata to Cloud providers (#6818) Nicolas Ferrari 2022-03-07 16:48:04 +01:00
  • e75ee730b8 mod: bump github.com/niklasfasching/go-org from 1.6.1 to 1.6.2 (#6816) dependabot[bot] 2022-03-07 23:07:29 +08:00
  • 36102f1689 security: encourage reporting vulnerabilities through huntr.dev (#6811) Joe Chen 2022-03-06 20:13:56 +08:00
  • e452d94fc8 autofix: format code with gofumpt and gofmt (#6803) deepsource-autofix[bot] 2022-03-06 17:55:17 +08:00
  • 2466da4e82 autofix: fix nested if with else if (#6807) deepsource-autofix[bot] 2022-03-06 16:39:14 +08:00
  • 09dbbf9a69 autofix: fix unused method receiver (#6808) deepsource-autofix[bot] 2022-03-06 16:37:41 +08:00
  • b7372b1f32 autofix: fix unnecessary allocations due to strings.Index call (#6806) deepsource-autofix[bot] 2022-03-06 16:34:01 +08:00
  • 5afca6ca8e autofix: function call can be replaced with helper function (#6805) deepsource-autofix[bot] 2022-03-06 16:33:55 +08:00
  • deec3516d5 autofix: fix check for empty string (#6804) deepsource-autofix[bot] 2022-03-06 16:33:45 +08:00