Commit Graph

10 Commits

Author SHA1 Message Date
karmantyu
a9f4fdc8ca Corrected escape, removed broad, unanchored regex checks . 2026-02-08 08:34:32 +01:00
karmantyu
b593501cff Some fixes.
All $err type error messages in HTML are safely escaped now.
URL-encoding in links:
I have implemented urlize() in all places where user input ($in{'device'}, $in{'slice'}, $in{'part'}) was included in the URL (footer/redirect/other link), e.g. edit_slice.cgi?device=...&slice=....
Affected files include: create_part.cgi, create_slice.cgi, delete_part.cgi, delete_slice.cgi, change_slice_label.cgi, part_form.cgi, slice_form.cgi, edit_slice.cgi, edit_part.cgi, fsck.cgi, newfs.cgi, newfs_form.cgi, save_part.cgi, save_slice.cgi, save_slice_label.cgi, zfs_create.cgi, zvol_create.cgi.
2026-02-07 19:43:08 +01:00
karmantyu
859580a224 Tidy up. 2026-02-02 07:50:07 +01:00
karmantyu
30b2e8b6d4 Security and other minor changes. 2026-02-01 11:39:57 +01:00
iliajie
d0ed6f944e Fix pointless warnings flooding error log 2022-06-30 13:08:38 +03:00
Jamie Cameron
56e5bec6b3 Allow creation of filesystem on a slice 2013-04-04 22:19:45 -07:00
Jamie Cameron
2dba63545a permissions fixes 2013-03-30 18:03:43 -07:00
Jamie Cameron
e7ca2ffdbe Finished off FreeBSD fdisk module 2013-03-30 14:17:28 -07:00
Jamie Cameron
3d9bfe2e6d Slice deletion page 2013-03-26 22:31:44 -07:00
Jamie Cameron
6ba2a72a48 Start of slice deletion form 2013-03-25 22:28:44 -07:00