Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

BUG : access log write malicious js as web user agent #638

Closed
darkworks opened this issue Feb 19, 2016 · 1 comment
Closed

BUG : access log write malicious js as web user agent #638

darkworks opened this issue Feb 19, 2016 · 1 comment

Comments

@darkworks
Copy link
Contributor

need to be fixed ASAP as new update as schedule n FEB

https://www.exploit-db.com/exploits/39468/

tjebbeke added a commit to tjebbeke/vesta that referenced this issue Feb 19, 2016
quick fix for issue outroll#638, maybe check on other places where this is possible?
serghey-rodin added a commit that referenced this issue Feb 19, 2016
tjebbeke pushed a commit to tjebbeke/vesta that referenced this issue Feb 22, 2016
notification links to features page

error_reporting

timestamp for sprite.png and templates.js

removed wrong slash

fixed notification link

install notifications

exclude config-version

installer update (fail2ban)

added cron as dep package to installer

Start using .gitignore

Support for Ubuntu 15.10

Fix for lscpu on OpenVZ

chkconfig firewalld off

nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

added html tags escaping

quick fix for issue outroll#638, maybe check on other places where this is possible?

delete template files
tjebbeke pushed a commit to tjebbeke/vesta that referenced this issue Feb 22, 2016
notification links to features page

error_reporting

timestamp for sprite.png and templates.js

removed wrong slash

fixed notification link

install notifications

exclude config-version

installer update (fail2ban)

added cron as dep package to installer

Start using .gitignore

Support for Ubuntu 15.10

Fix for lscpu on OpenVZ

chkconfig firewalld off

nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

added html tags escaping

quick fix for issue outroll#638, maybe check on other places where this is possible?

delete template files

ignore tarballs

notification links to features page

error_reporting

timestamp for sprite.png and templates.js

removed wrong slash

fixed notification link

install notifications

exclude config-version

installer update (fail2ban)

added cron as dep package to installer

Start using .gitignore

Support for Ubuntu 15.10

Fix for lscpu on OpenVZ

chkconfig firewalld off

nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

added html tags escaping

quick fix for issue outroll#638, maybe check on other places where this is possible?

delete template files
tjebbeke pushed a commit to tjebbeke/vesta that referenced this issue Feb 22, 2016
nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

Firwall ipv6

Upgrade script ipv6

firewall update

Update firewall

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

Template update

Update v-list-...

Update ipv4/ipv6 changer

Package update fix

Rebuild fix

Fix v-add-user

Fix v-add-user

proxy_ip.tpl fix

main.sh line 131 error fix

debug info

V-add-user fix

V-add-user fix

v-update-firewall-ipv6

Update rhel 6 packages

php-fpm templates

Rhel 5 configs & templates

rhel 7 configs & templates

rhel 5 template update

fix http://forum.vestacp.com/viewtopic.php?f=13&t=6679

Templates

Installer update

added html tags escaping

Delete file

upd/update_packages.sh

update packages script

update packages fix

upgrade scripts fix

Upgrade packages fix

upgrade add ipv6 fix

Fix upgrade update packages

upgrade add ipv6 fix

upgrade add ipv6 in dns conf

upgrade rebuild dns records

ignore tarballs

notification links to features page

error_reporting

timestamp for sprite.png and templates.js

removed wrong slash

fixed notification link

install notifications

exclude config-version

installer update (fail2ban)

added cron as dep package to installer

Start using .gitignore

Support for Ubuntu 15.10

Fix for lscpu on OpenVZ

chkconfig firewalld off

nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

added html tags escaping

quick fix for issue outroll#638, maybe check on other places where this is possible?

delete template files

ignore tarballs

notification links to features page

error_reporting

timestamp for sprite.png and templates.js

removed wrong slash

fixed notification link

install notifications

exclude config-version

installer update (fail2ban)

added cron as dep package to installer

Start using .gitignore

Support for Ubuntu 15.10

Fix for lscpu on OpenVZ

chkconfig firewalld off

nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

added html tags escaping

quick fix for issue outroll#638, maybe check on other places where this is possible?

delete template files
tjebbeke added a commit to tjebbeke/vesta that referenced this issue Feb 22, 2016
Add domain alias fix

IPV6 support in v-changes-web-...

Change ipv6 fix

edit ipv6 web fix

Progress update

fail tollerance against already synced domains

new and better way to backup - tar without find

remi argument handler

no versions at c.vestacp.com

No apache2.2-common in old Ubuntu

updated log location

no custom location for roundcube configs

smart way to hanlde php.ini

increased client_max_body_size to 256m

new web template scheme

set ip even if ip doesn't exist

no-php template

exclusion list in array

switched to bc for math calculation

check_result function

php-fpm support

imroved favorites handler

removed template selector

fix for js hint

Fixes for FM

Added CJK text support for the + button

Prohibit word breaks for CJK texts at #tooltip

Added Japanese support

Fixed typo

Added Polish translation

i18n update

user notification backend

v-change-sys-ipv6-...

v-...-dns-on-web-alias

Remove IPV6 template suffix

Update domain when no IP6 is defined

Template update rhel 6

Update dns domain

Add config at first login

Fix vst-install-ubuntu.sh

Fix vst-install-debian.sh

Fix vst-install-rhel.sh

Updated Polish translation

Delete (compromised?) cert

As the assumed corresponding private key for this cert is now publicly available, this certificate should not be used.
(in reference to my other pull request.)

Forgotten RSA Private key?

Going through the source, I cannot see any reason that this should exist; seems orphaned, old, and "Why Publish the PRIVATE KEY?".
Perhaps some ancient private commits that didn't get cleaned ?

Typo fixes

web template fixes

translation update

Add Vietnamese Language

Add new language file for support Vietnamese language

Translate phrase "Cron job" into Vietnamese words

Rename LICENSE.txt to LICENSE

Not usually a .txt extension.

Update tr.php

Update add & delete ip

Installer update

default backend

license manager

filemanager fix

fixes for license manager

Firewall support enable/disable

license checker

fix for netmask

removed check for smooth deactivation

file manager fixes

improved server configuration page

set default language

notifications

notifications

mend

no suspend on user level

backend template only for admin

no delete button for now

fix for bulk operations

disabled debug

bulk operation for backup restore

removed error catcher

flushing pipe when domain doesn't exist

white search

style versioning

symlinks fix

commercial plugins

Proper fix for the prefix corruption (for user names with non-alphanumeric characters)
and keep the prevention of addition of ftp user names with non-alphanumeric characters as it was intended initially

one file at the time for now

safe way to check permissions

quotes around path

remove debug

border-bottom: none

Tab name

FM changes

new tab name

footer update

notification bell

commercial plugin links

fix for bulk operations

no old stuff

FileManager latest changes

bulk operations fix

very final fixes for FM

bulk operations for customized restore

Release 0.9.8-15

ignore tarballs

notification links to features page

error_reporting

timestamp for sprite.png and templates.js

removed wrong slash

fixed notification link

install notifications

exclude config-version

installer update (fail2ban)

added cron as dep package to installer

Start using .gitignore

Support for Ubuntu 15.10

Fix for lscpu on OpenVZ

chkconfig firewalld off

nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

Firwall ipv6

Upgrade script ipv6

firewall update

Update firewall

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

Template update

Update v-list-...

Update ipv4/ipv6 changer

Package update fix

Rebuild fix

Fix v-add-user

Fix v-add-user

proxy_ip.tpl fix

main.sh line 131 error fix

debug info

V-add-user fix

V-add-user fix

v-update-firewall-ipv6

Update rhel 6 packages

php-fpm templates

Rhel 5 configs & templates

rhel 7 configs & templates

rhel 5 template update

fix http://forum.vestacp.com/viewtopic.php?f=13&t=6679

Templates

Installer update

added html tags escaping

Delete file

upd/update_packages.sh

update packages script

update packages fix

upgrade scripts fix

Upgrade packages fix

upgrade add ipv6 fix

Fix upgrade update packages

upgrade add ipv6 fix

upgrade add ipv6 in dns conf

upgrade rebuild dns records

ignore tarballs

notification links to features page

error_reporting

timestamp for sprite.png and templates.js

removed wrong slash

fixed notification link

install notifications

exclude config-version

installer update (fail2ban)

added cron as dep package to installer

Start using .gitignore

Support for Ubuntu 15.10

Fix for lscpu on OpenVZ

chkconfig firewalld off

nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

added html tags escaping

quick fix for issue outroll#638, maybe check on other places where this is possible?

delete template files

ignore tarballs

notification links to features page

error_reporting

timestamp for sprite.png and templates.js

removed wrong slash

fixed notification link

install notifications

exclude config-version

installer update (fail2ban)

added cron as dep package to installer

Start using .gitignore

Support for Ubuntu 15.10

Fix for lscpu on OpenVZ

chkconfig firewalld off

nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

added html tags escaping

quick fix for issue outroll#638, maybe check on other places where this is possible?

delete template files
tjebbeke added a commit to tjebbeke/vesta that referenced this issue Feb 22, 2016
Delete web domains IPV6

Fix add & delete domain

Add domain alias fix

IPV6 support in v-changes-web-...

Change ipv6 fix

edit ipv6 web fix

Progress update

fail tollerance against already synced domains

new and better way to backup - tar without find

remi argument handler

no versions at c.vestacp.com

No apache2.2-common in old Ubuntu

updated log location

no custom location for roundcube configs

smart way to hanlde php.ini

increased client_max_body_size to 256m

new web template scheme

set ip even if ip doesn't exist

no-php template

exclusion list in array

switched to bc for math calculation

check_result function

php-fpm support

imroved favorites handler

removed template selector

fix for js hint

Fixes for FM

Added CJK text support for the + button

Prohibit word breaks for CJK texts at #tooltip

Added Japanese support

Fixed typo

Added Polish translation

i18n update

user notification backend

v-change-sys-ipv6-...

v-...-dns-on-web-alias

Remove IPV6 template suffix

Update domain when no IP6 is defined

Template update rhel 6

Update dns domain

Add config at first login

Fix vst-install-ubuntu.sh

Fix vst-install-debian.sh

Fix vst-install-rhel.sh

Updated Polish translation

Delete (compromised?) cert

As the assumed corresponding private key for this cert is now publicly available, this certificate should not be used.
(in reference to my other pull request.)

Forgotten RSA Private key?

Going through the source, I cannot see any reason that this should exist; seems orphaned, old, and "Why Publish the PRIVATE KEY?".
Perhaps some ancient private commits that didn't get cleaned ?

Typo fixes

web template fixes

translation update

Add Vietnamese Language

Add new language file for support Vietnamese language

Translate phrase "Cron job" into Vietnamese words

Rename LICENSE.txt to LICENSE

Not usually a .txt extension.

Update tr.php

Update add & delete ip

Installer update

default backend

license manager

filemanager fix

fixes for license manager

Firewall support enable/disable

license checker

fix for netmask

removed check for smooth deactivation

file manager fixes

improved server configuration page

set default language

notifications

notifications

mend

no suspend on user level

backend template only for admin

no delete button for now

fix for bulk operations

disabled debug

bulk operation for backup restore

removed error catcher

flushing pipe when domain doesn't exist

white search

style versioning

symlinks fix

commercial plugins

Proper fix for the prefix corruption (for user names with non-alphanumeric characters)
and keep the prevention of addition of ftp user names with non-alphanumeric characters as it was intended initially

one file at the time for now

safe way to check permissions

quotes around path

remove debug

border-bottom: none

Tab name

FM changes

new tab name

footer update

notification bell

commercial plugin links

fix for bulk operations

no old stuff

FileManager latest changes

bulk operations fix

very final fixes for FM

bulk operations for customized restore

Release 0.9.8-15

ignore tarballs

notification links to features page

error_reporting

timestamp for sprite.png and templates.js

removed wrong slash

fixed notification link

install notifications

exclude config-version

installer update (fail2ban)

added cron as dep package to installer

Start using .gitignore

Support for Ubuntu 15.10

Fix for lscpu on OpenVZ

chkconfig firewalld off

nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

Firwall ipv6

Upgrade script ipv6

firewall update

Update firewall

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

Template update

Update v-list-...

Update ipv4/ipv6 changer

Package update fix

Rebuild fix

Fix v-add-user

Fix v-add-user

proxy_ip.tpl fix

main.sh line 131 error fix

debug info

V-add-user fix

V-add-user fix

v-update-firewall-ipv6

Update rhel 6 packages

php-fpm templates

Rhel 5 configs & templates

rhel 7 configs & templates

rhel 5 template update

fix http://forum.vestacp.com/viewtopic.php?f=13&t=6679

Templates

Installer update

added html tags escaping

Delete file

upd/update_packages.sh

update packages script

update packages fix

upgrade scripts fix

Upgrade packages fix

upgrade add ipv6 fix

Fix upgrade update packages

upgrade add ipv6 fix

upgrade add ipv6 in dns conf

upgrade rebuild dns records

ignore tarballs

notification links to features page

error_reporting

timestamp for sprite.png and templates.js

removed wrong slash

fixed notification link

install notifications

exclude config-version

installer update (fail2ban)

added cron as dep package to installer

Start using .gitignore

Support for Ubuntu 15.10

Fix for lscpu on OpenVZ

chkconfig firewalld off

nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

added html tags escaping

quick fix for issue outroll#638, maybe check on other places where this is possible?

delete template files

ignore tarballs

notification links to features page

error_reporting

timestamp for sprite.png and templates.js

removed wrong slash

fixed notification link

install notifications

exclude config-version

installer update (fail2ban)

added cron as dep package to installer

Start using .gitignore

Support for Ubuntu 15.10

Fix for lscpu on OpenVZ

chkconfig firewalld off

nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

added html tags escaping

quick fix for issue outroll#638, maybe check on other places where this is possible?

delete template files
tjebbeke added a commit to tjebbeke/vesta that referenced this issue Feb 22, 2016
Add IPV6 DNS domain

Update user counter

Add IP update

update add domain

Add domain ipv 4 & 6 split

Default templates

Delete ipv6

counter fix

v-add-web-domain-... update

Delete web domains IPV6

Fix add & delete domain

Add domain alias fix

IPV6 support in v-changes-web-...

Change ipv6 fix

edit ipv6 web fix

Progress update

fail tollerance against already synced domains

new and better way to backup - tar without find

remi argument handler

no versions at c.vestacp.com

No apache2.2-common in old Ubuntu

updated log location

no custom location for roundcube configs

smart way to hanlde php.ini

increased client_max_body_size to 256m

new web template scheme

set ip even if ip doesn't exist

no-php template

exclusion list in array

switched to bc for math calculation

check_result function

php-fpm support

imroved favorites handler

removed template selector

fix for js hint

Fixes for FM

Added CJK text support for the + button

Prohibit word breaks for CJK texts at #tooltip

Added Japanese support

Fixed typo

Added Polish translation

i18n update

user notification backend

v-change-sys-ipv6-...

v-...-dns-on-web-alias

Remove IPV6 template suffix

Update domain when no IP6 is defined

Template update rhel 6

Update dns domain

Add config at first login

Fix vst-install-ubuntu.sh

Fix vst-install-debian.sh

Fix vst-install-rhel.sh

Updated Polish translation

Delete (compromised?) cert

As the assumed corresponding private key for this cert is now publicly available, this certificate should not be used.
(in reference to my other pull request.)

Forgotten RSA Private key?

Going through the source, I cannot see any reason that this should exist; seems orphaned, old, and "Why Publish the PRIVATE KEY?".
Perhaps some ancient private commits that didn't get cleaned ?

Typo fixes

web template fixes

translation update

Add Vietnamese Language

Add new language file for support Vietnamese language

Translate phrase "Cron job" into Vietnamese words

Rename LICENSE.txt to LICENSE

Not usually a .txt extension.

Update tr.php

Update add & delete ip

Installer update

default backend

license manager

filemanager fix

fixes for license manager

Firewall support enable/disable

license checker

fix for netmask

removed check for smooth deactivation

file manager fixes

improved server configuration page

set default language

notifications

notifications

mend

no suspend on user level

backend template only for admin

no delete button for now

fix for bulk operations

disabled debug

bulk operation for backup restore

removed error catcher

flushing pipe when domain doesn't exist

white search

style versioning

symlinks fix

commercial plugins

Proper fix for the prefix corruption (for user names with non-alphanumeric characters)
and keep the prevention of addition of ftp user names with non-alphanumeric characters as it was intended initially

one file at the time for now

safe way to check permissions

quotes around path

remove debug

border-bottom: none

Tab name

FM changes

new tab name

footer update

notification bell

commercial plugin links

fix for bulk operations

no old stuff

FileManager latest changes

bulk operations fix

very final fixes for FM

bulk operations for customized restore

Release 0.9.8-15

ignore tarballs

notification links to features page

error_reporting

timestamp for sprite.png and templates.js

removed wrong slash

fixed notification link

install notifications

exclude config-version

installer update (fail2ban)

added cron as dep package to installer

Start using .gitignore

Support for Ubuntu 15.10

Fix for lscpu on OpenVZ

chkconfig firewalld off

nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

Firwall ipv6

Upgrade script ipv6

firewall update

Update firewall

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

Template update

Update v-list-...

Update ipv4/ipv6 changer

Package update fix

Rebuild fix

Fix v-add-user

Fix v-add-user

proxy_ip.tpl fix

main.sh line 131 error fix

debug info

V-add-user fix

V-add-user fix

v-update-firewall-ipv6

Update rhel 6 packages

php-fpm templates

Rhel 5 configs & templates

rhel 7 configs & templates

rhel 5 template update

fix http://forum.vestacp.com/viewtopic.php?f=13&t=6679

Templates

Installer update

added html tags escaping

Delete file

upd/update_packages.sh

update packages script

update packages fix

upgrade scripts fix

Upgrade packages fix

upgrade add ipv6 fix

Fix upgrade update packages

upgrade add ipv6 fix

upgrade add ipv6 in dns conf

upgrade rebuild dns records

ignore tarballs

notification links to features page

error_reporting

timestamp for sprite.png and templates.js

removed wrong slash

fixed notification link

install notifications

exclude config-version

installer update (fail2ban)

added cron as dep package to installer

Start using .gitignore

Support for Ubuntu 15.10

Fix for lscpu on OpenVZ

chkconfig firewalld off

nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

added html tags escaping

quick fix for issue outroll#638, maybe check on other places where this is possible?

delete template files

ignore tarballs

notification links to features page

error_reporting

timestamp for sprite.png and templates.js

removed wrong slash

fixed notification link

install notifications

exclude config-version

installer update (fail2ban)

added cron as dep package to installer

Start using .gitignore

Support for Ubuntu 15.10

Fix for lscpu on OpenVZ

chkconfig firewalld off

nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

added html tags escaping

quick fix for issue outroll#638, maybe check on other places where this is possible?

delete template files
tjebbeke added a commit to tjebbeke/vesta that referenced this issue Feb 22, 2016
IPV6 Add web domain

IPV6 progress

Add IPV6 DNS domain

Update user counter

Add IP update

update add domain

Add domain ipv 4 & 6 split

Default templates

Delete ipv6

counter fix

v-add-web-domain-... update

Delete web domains IPV6

Fix add & delete domain

Add domain alias fix

IPV6 support in v-changes-web-...

Change ipv6 fix

edit ipv6 web fix

Progress update

fail tollerance against already synced domains

new and better way to backup - tar without find

remi argument handler

no versions at c.vestacp.com

No apache2.2-common in old Ubuntu

updated log location

no custom location for roundcube configs

smart way to hanlde php.ini

increased client_max_body_size to 256m

new web template scheme

set ip even if ip doesn't exist

no-php template

exclusion list in array

switched to bc for math calculation

check_result function

php-fpm support

imroved favorites handler

removed template selector

fix for js hint

Fixes for FM

Added CJK text support for the + button

Prohibit word breaks for CJK texts at #tooltip

Added Japanese support

Fixed typo

Added Polish translation

i18n update

user notification backend

v-change-sys-ipv6-...

v-...-dns-on-web-alias

Remove IPV6 template suffix

Update domain when no IP6 is defined

Template update rhel 6

Update dns domain

Add config at first login

Fix vst-install-ubuntu.sh

Fix vst-install-debian.sh

Fix vst-install-rhel.sh

Updated Polish translation

Delete (compromised?) cert

As the assumed corresponding private key for this cert is now publicly available, this certificate should not be used.
(in reference to my other pull request.)

Forgotten RSA Private key?

Going through the source, I cannot see any reason that this should exist; seems orphaned, old, and "Why Publish the PRIVATE KEY?".
Perhaps some ancient private commits that didn't get cleaned ?

Typo fixes

web template fixes

translation update

Add Vietnamese Language

Add new language file for support Vietnamese language

Translate phrase "Cron job" into Vietnamese words

Rename LICENSE.txt to LICENSE

Not usually a .txt extension.

Update tr.php

Update add & delete ip

Installer update

default backend

license manager

filemanager fix

fixes for license manager

Firewall support enable/disable

license checker

fix for netmask

removed check for smooth deactivation

file manager fixes

improved server configuration page

set default language

notifications

notifications

mend

no suspend on user level

backend template only for admin

no delete button for now

fix for bulk operations

disabled debug

bulk operation for backup restore

removed error catcher

flushing pipe when domain doesn't exist

white search

style versioning

symlinks fix

commercial plugins

Proper fix for the prefix corruption (for user names with non-alphanumeric characters)
and keep the prevention of addition of ftp user names with non-alphanumeric characters as it was intended initially

one file at the time for now

safe way to check permissions

quotes around path

remove debug

border-bottom: none

Tab name

FM changes

new tab name

footer update

notification bell

commercial plugin links

fix for bulk operations

no old stuff

FileManager latest changes

bulk operations fix

very final fixes for FM

bulk operations for customized restore

Release 0.9.8-15

ignore tarballs

notification links to features page

error_reporting

timestamp for sprite.png and templates.js

removed wrong slash

fixed notification link

install notifications

exclude config-version

installer update (fail2ban)

added cron as dep package to installer

Start using .gitignore

Support for Ubuntu 15.10

Fix for lscpu on OpenVZ

chkconfig firewalld off

nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

Firwall ipv6

Upgrade script ipv6

firewall update

Update firewall

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

Template update

Update v-list-...

Update ipv4/ipv6 changer

Package update fix

Rebuild fix

Fix v-add-user

Fix v-add-user

proxy_ip.tpl fix

main.sh line 131 error fix

debug info

V-add-user fix

V-add-user fix

v-update-firewall-ipv6

Update rhel 6 packages

php-fpm templates

Rhel 5 configs & templates

rhel 7 configs & templates

rhel 5 template update

fix http://forum.vestacp.com/viewtopic.php?f=13&t=6679

Templates

Installer update

added html tags escaping

Delete file

upd/update_packages.sh

update packages script

update packages fix

upgrade scripts fix

Upgrade packages fix

upgrade add ipv6 fix

Fix upgrade update packages

upgrade add ipv6 fix

upgrade add ipv6 in dns conf

upgrade rebuild dns records

ignore tarballs

notification links to features page

error_reporting

timestamp for sprite.png and templates.js

removed wrong slash

fixed notification link

install notifications

exclude config-version

installer update (fail2ban)

added cron as dep package to installer

Start using .gitignore

Support for Ubuntu 15.10

Fix for lscpu on OpenVZ

chkconfig firewalld off

nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

added html tags escaping

quick fix for issue outroll#638, maybe check on other places where this is possible?

delete template files

ignore tarballs

notification links to features page

error_reporting

timestamp for sprite.png and templates.js

removed wrong slash

fixed notification link

install notifications

exclude config-version

installer update (fail2ban)

added cron as dep package to installer

Start using .gitignore

Support for Ubuntu 15.10

Fix for lscpu on OpenVZ

chkconfig firewalld off

nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

added html tags escaping

quick fix for issue outroll#638, maybe check on other places where this is possible?

delete template files
tjebbeke added a commit to tjebbeke/vesta that referenced this issue Feb 22, 2016
IPV6 Add & List support

IPV6 Add web domain

IPV6 progress

Add IPV6 DNS domain

Update user counter

Add IP update

update add domain

Add domain ipv 4 & 6 split

Default templates

Delete ipv6

counter fix

v-add-web-domain-... update

Delete web domains IPV6

Fix add & delete domain

Add domain alias fix

IPV6 support in v-changes-web-...

Change ipv6 fix

edit ipv6 web fix

Progress update

fail tollerance against already synced domains

new and better way to backup - tar without find

remi argument handler

no versions at c.vestacp.com

No apache2.2-common in old Ubuntu

updated log location

no custom location for roundcube configs

smart way to hanlde php.ini

increased client_max_body_size to 256m

new web template scheme

set ip even if ip doesn't exist

no-php template

exclusion list in array

switched to bc for math calculation

check_result function

php-fpm support

imroved favorites handler

removed template selector

fix for js hint

Fixes for FM

Added CJK text support for the + button

Prohibit word breaks for CJK texts at #tooltip

Added Japanese support

Fixed typo

Added Polish translation

i18n update

user notification backend

v-change-sys-ipv6-...

v-...-dns-on-web-alias

Remove IPV6 template suffix

Update domain when no IP6 is defined

Template update rhel 6

Update dns domain

Add config at first login

Fix vst-install-ubuntu.sh

Fix vst-install-debian.sh

Fix vst-install-rhel.sh

Updated Polish translation

Delete (compromised?) cert

As the assumed corresponding private key for this cert is now publicly available, this certificate should not be used.
(in reference to my other pull request.)

Forgotten RSA Private key?

Going through the source, I cannot see any reason that this should exist; seems orphaned, old, and "Why Publish the PRIVATE KEY?".
Perhaps some ancient private commits that didn't get cleaned ?

Typo fixes

web template fixes

translation update

Add Vietnamese Language

Add new language file for support Vietnamese language

Translate phrase "Cron job" into Vietnamese words

Rename LICENSE.txt to LICENSE

Not usually a .txt extension.

Update tr.php

Update add & delete ip

Installer update

default backend

license manager

filemanager fix

fixes for license manager

Firewall support enable/disable

license checker

fix for netmask

removed check for smooth deactivation

file manager fixes

improved server configuration page

set default language

notifications

notifications

mend

no suspend on user level

backend template only for admin

no delete button for now

fix for bulk operations

disabled debug

bulk operation for backup restore

removed error catcher

flushing pipe when domain doesn't exist

white search

style versioning

symlinks fix

commercial plugins

Proper fix for the prefix corruption (for user names with non-alphanumeric characters)
and keep the prevention of addition of ftp user names with non-alphanumeric characters as it was intended initially

one file at the time for now

safe way to check permissions

quotes around path

remove debug

border-bottom: none

Tab name

FM changes

new tab name

footer update

notification bell

commercial plugin links

fix for bulk operations

no old stuff

FileManager latest changes

bulk operations fix

very final fixes for FM

bulk operations for customized restore

Release 0.9.8-15

ignore tarballs

notification links to features page

error_reporting

timestamp for sprite.png and templates.js

removed wrong slash

fixed notification link

install notifications

exclude config-version

installer update (fail2ban)

added cron as dep package to installer

Start using .gitignore

Support for Ubuntu 15.10

Fix for lscpu on OpenVZ

chkconfig firewalld off

nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

Firwall ipv6

Upgrade script ipv6

firewall update

Update firewall

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

Template update

Update v-list-...

Update ipv4/ipv6 changer

Package update fix

Rebuild fix

Fix v-add-user

Fix v-add-user

proxy_ip.tpl fix

main.sh line 131 error fix

debug info

V-add-user fix

V-add-user fix

v-update-firewall-ipv6

Update rhel 6 packages

php-fpm templates

Rhel 5 configs & templates

rhel 7 configs & templates

rhel 5 template update

fix http://forum.vestacp.com/viewtopic.php?f=13&t=6679

Templates

Installer update

added html tags escaping

Delete file

upd/update_packages.sh

update packages script

update packages fix

upgrade scripts fix

Upgrade packages fix

upgrade add ipv6 fix

Fix upgrade update packages

upgrade add ipv6 fix

upgrade add ipv6 in dns conf

upgrade rebuild dns records

ignore tarballs

notification links to features page

error_reporting

timestamp for sprite.png and templates.js

removed wrong slash

fixed notification link

install notifications

exclude config-version

installer update (fail2ban)

added cron as dep package to installer

Start using .gitignore

Support for Ubuntu 15.10

Fix for lscpu on OpenVZ

chkconfig firewalld off

nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

added html tags escaping

quick fix for issue outroll#638, maybe check on other places where this is possible?

delete template files

ignore tarballs

notification links to features page

error_reporting

timestamp for sprite.png and templates.js

removed wrong slash

fixed notification link

install notifications

exclude config-version

installer update (fail2ban)

added cron as dep package to installer

Start using .gitignore

Support for Ubuntu 15.10

Fix for lscpu on OpenVZ

chkconfig firewalld off

nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

added html tags escaping

quick fix for issue outroll#638, maybe check on other places where this is possible?

delete template files
tjebbeke pushed a commit to tjebbeke/vesta that referenced this issue Feb 22, 2016
fix for md5 hashes

fix for ip selection ctr+c

disable error reporting

removed salt lenght check

firewall comment field lenght

ip list fix

Fix for server restart url

Update tr.php

A little update for translation

Update vst-install-debian.sh

typo mistake

Update ua.php

Dates and Server management

Update list_updates.html

Fix broken links

Update ua.php

Update UI

fix for chrome on win7

Added words for sorting feature

compact styles

bulk fail2ban

js bugfixes

Sort_by  feature

lowercase on sort_by text

added sort-star class

css improvements

js ftp user bugfix

leave page /starred sorting

list by creation date

chmod/touch/mkdir command consolidation

simple email validator

system check for wildcard search

mysql stop/start fix for rhel

Added if statements to check for directories/files before removing them.
Updated download location to include $release structure from http://c.vestacp.com/0.9.8/rhel/
Fixed error message that appears if /etc/dovecot doesn't exist when chowning.

fix for iptables restart on Debian/Ubuntu

no custom css

fix for postgres service listing

http auth api feature

fix for unlimited mail quota

permissions on htpasswd file

API backend for Web File Manager

fix for long dns records

WebFileManager css styles

WebFileManager JS stuff

HotKey navigation help

removed shell selection for user accounts

cleanup proxy cache pool

Changed comment for nginx.conf

fix for mbox creation

Improved file manager API functions

full path to named-checkconf command

fixed suspend/unsuspend issues

Ingore exim restart issues if any

Ignore errors if certificate is missing

Optimized chown & chmod calls

optimized web domain adding (almost 2x faster

fix for fs quota unlim

humanize_usage update

filemanager stuff

Server monitoring tools

File Manager stuff

list dir

API for user favourites

File Manager stuff

fix for /32 netmask

Link to system monitoring page

Fixed favourites config name

ketboard shortcuts for vesta control panel

Updated template header

Jailed SFTP via OpenSSH

user favourites

FM updates

fix for php-fpm stack

search api for file manager

multiple name servers

file manager stuff

mail settings hint

multiple name servers

File Manager update

fix for symlinked /tmp dir

hotkeys for filemanager

fix for caching template

FileManger stuff

uniq databases during restore

FileManager stuff

flush vars before list them

FileManager stuff

FM style update

DNS Cluster Serial fix

FileManager stuff

FM HotKeys

Improved Even Logger + check_result()

Improved domain validation plus added SERIAL support

Improved remote API

Fix SERIAL sync in DNS cluster

Fix for bulk actions

Fix for borken exlucssion missing symlinks and hidden files

New syntax to hide password from logger

multiple name servers support

fix date/time format for fail2ban

fix for fail2ban ip removal

fix for missing chain after reboot

fix for pgsql listing

Delete chains on firewall stop

.escapeshellarg protection

118n for File Manager

global suspend

multiple name servers

.htmlentities fix

new header and footer

global suspend

FileManager stuff

New vesta installer

Correct shell setting when SFTP chroot is enabled

json listing support

Fix for MariaDB listing

typo fix

FS manager stuff

Update SSL Ciphers

To fix RC4 immediate deprecation by major web browsers. Using old configuration results in "Insecure Certificate" errors.
Strong Ciphers via CloudFlare (https://github.com/cloudflare/sslconfig/blob/master/conf).
Excluded CloudFlare's use of ChaCha cipher due to compatibility patch required.

Info Source:
https://tools.ietf.org/html/rfc7465
https://www.pcicomplianceguide.org/pci-dss-v3-1-and-ssl-what-you-should-do-now/
https://blog.digicert.com/major-browsers-announce-rc4-deprecation/

Update v-update-user-quota

Update v-update-user-quota

Update v-update-user-quota

fix 1/2

serghey-rodin/vesta/outroll#434

fix 2/2

outroll#434

Less installation steps.

I prefer installing like this, so I assume other will.

Removed closing PHP tags

They aren't needed, and every little helps. :)

Removed closing PHP tags.

They aren't needed, and every little helps.

Removed closing PHP tags.

Removed closing PHP tags.

Removed closing PHP tags.

Removed double space that was not needed.

Saving bytes, that's all!

Removed closing PHP tags.

Cleaned it up a bit.

Fix for application/javascript from  infinitnet

Fixes from  Neilpang

File Manger stuff

made email a requirement for ssl generation

Added a check for username length

Removing debug loging

Revert auto update fix

IPV6 Add & List support

IPV6 Add web domain

IPV6 progress

Add IPV6 DNS domain

Update user counter

Add IP update

update add domain

Add domain ipv 4 & 6 split

Default templates

Delete ipv6

counter fix

v-add-web-domain-... update

Delete web domains IPV6

Fix add & delete domain

Add domain alias fix

IPV6 support in v-changes-web-...

Change ipv6 fix

edit ipv6 web fix

Progress update

fail tollerance against already synced domains

new and better way to backup - tar without find

remi argument handler

no versions at c.vestacp.com

No apache2.2-common in old Ubuntu

updated log location

no custom location for roundcube configs

smart way to hanlde php.ini

increased client_max_body_size to 256m

new web template scheme

set ip even if ip doesn't exist

no-php template

exclusion list in array

switched to bc for math calculation

check_result function

php-fpm support

imroved favorites handler

removed template selector

fix for js hint

Fixes for FM

Added CJK text support for the + button

Prohibit word breaks for CJK texts at #tooltip

Added Japanese support

Fixed typo

Added Polish translation

i18n update

user notification backend

v-change-sys-ipv6-...

v-...-dns-on-web-alias

Remove IPV6 template suffix

Update domain when no IP6 is defined

Template update rhel 6

Update dns domain

Add config at first login

Fix vst-install-ubuntu.sh

Fix vst-install-debian.sh

Fix vst-install-rhel.sh

Updated Polish translation

Delete (compromised?) cert

As the assumed corresponding private key for this cert is now publicly available, this certificate should not be used.
(in reference to my other pull request.)

Forgotten RSA Private key?

Going through the source, I cannot see any reason that this should exist; seems orphaned, old, and "Why Publish the PRIVATE KEY?".
Perhaps some ancient private commits that didn't get cleaned ?

Typo fixes

web template fixes

translation update

Add Vietnamese Language

Add new language file for support Vietnamese language

Translate phrase "Cron job" into Vietnamese words

Rename LICENSE.txt to LICENSE

Not usually a .txt extension.

Update tr.php

Update add & delete ip

Installer update

default backend

license manager

filemanager fix

fixes for license manager

Firewall support enable/disable

license checker

fix for netmask

removed check for smooth deactivation

file manager fixes

improved server configuration page

set default language

notifications

notifications

mend

no suspend on user level

backend template only for admin

no delete button for now

fix for bulk operations

disabled debug

bulk operation for backup restore

removed error catcher

flushing pipe when domain doesn't exist

white search

style versioning

symlinks fix

commercial plugins

Proper fix for the prefix corruption (for user names with non-alphanumeric characters)
and keep the prevention of addition of ftp user names with non-alphanumeric characters as it was intended initially

one file at the time for now

safe way to check permissions

quotes around path

remove debug

border-bottom: none

Tab name

FM changes

new tab name

footer update

notification bell

commercial plugin links

fix for bulk operations

no old stuff

FileManager latest changes

bulk operations fix

very final fixes for FM

bulk operations for customized restore

Release 0.9.8-15

ignore tarballs

notification links to features page

error_reporting

timestamp for sprite.png and templates.js

removed wrong slash

fixed notification link

install notifications

exclude config-version

installer update (fail2ban)

added cron as dep package to installer

Start using .gitignore

Support for Ubuntu 15.10

Fix for lscpu on OpenVZ

chkconfig firewalld off

nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

Firwall ipv6

Upgrade script ipv6

firewall update

Update firewall

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

Template update

Update v-list-...

Update ipv4/ipv6 changer

Package update fix

Rebuild fix

Fix v-add-user

Fix v-add-user

proxy_ip.tpl fix

main.sh line 131 error fix

debug info

V-add-user fix

V-add-user fix

v-update-firewall-ipv6

Update rhel 6 packages

php-fpm templates

Rhel 5 configs & templates

rhel 7 configs & templates

rhel 5 template update

fix http://forum.vestacp.com/viewtopic.php?f=13&t=6679

Templates

Installer update

added html tags escaping

Delete file

upd/update_packages.sh

update packages script

update packages fix

upgrade scripts fix

Upgrade packages fix

upgrade add ipv6 fix

Fix upgrade update packages

upgrade add ipv6 fix

upgrade add ipv6 in dns conf

upgrade rebuild dns records

ignore tarballs

notification links to features page

error_reporting

timestamp for sprite.png and templates.js

removed wrong slash

fixed notification link

install notifications

exclude config-version

installer update (fail2ban)

added cron as dep package to installer

Start using .gitignore

Support for Ubuntu 15.10

Fix for lscpu on OpenVZ

chkconfig firewalld off

nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

added html tags escaping

quick fix for issue outroll#638, maybe check on other places where this is possible?

delete template files

ignore tarballs

notification links to features page

error_reporting

timestamp for sprite.png and templates.js

removed wrong slash

fixed notification link

install notifications

exclude config-version

installer update (fail2ban)

added cron as dep package to installer

Start using .gitignore

Support for Ubuntu 15.10

Fix for lscpu on OpenVZ

chkconfig firewalld off

nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

added html tags escaping

quick fix for issue outroll#638, maybe check on other places where this is possible?

delete template files
tjebbeke added a commit to tjebbeke/vesta that referenced this issue Feb 22, 2016
fix font color / dropdown list

fix for md5 hashes

fix for ip selection ctr+c

disable error reporting

removed salt lenght check

firewall comment field lenght

ip list fix

Fix for server restart url

Update tr.php

A little update for translation

Update vst-install-debian.sh

typo mistake

Update ua.php

Dates and Server management

Update list_updates.html

Fix broken links

Update ua.php

Update UI

fix for chrome on win7

Added words for sorting feature

compact styles

bulk fail2ban

js bugfixes

Sort_by  feature

lowercase on sort_by text

added sort-star class

css improvements

js ftp user bugfix

leave page /starred sorting

list by creation date

chmod/touch/mkdir command consolidation

simple email validator

system check for wildcard search

mysql stop/start fix for rhel

Added if statements to check for directories/files before removing them.
Updated download location to include $release structure from http://c.vestacp.com/0.9.8/rhel/
Fixed error message that appears if /etc/dovecot doesn't exist when chowning.

fix for iptables restart on Debian/Ubuntu

no custom css

fix for postgres service listing

http auth api feature

fix for unlimited mail quota

permissions on htpasswd file

API backend for Web File Manager

fix for long dns records

WebFileManager css styles

WebFileManager JS stuff

HotKey navigation help

removed shell selection for user accounts

cleanup proxy cache pool

Changed comment for nginx.conf

fix for mbox creation

Improved file manager API functions

full path to named-checkconf command

fixed suspend/unsuspend issues

Ingore exim restart issues if any

Ignore errors if certificate is missing

Optimized chown & chmod calls

optimized web domain adding (almost 2x faster

fix for fs quota unlim

humanize_usage update

filemanager stuff

Server monitoring tools

File Manager stuff

list dir

API for user favourites

File Manager stuff

fix for /32 netmask

Link to system monitoring page

Fixed favourites config name

ketboard shortcuts for vesta control panel

Updated template header

Jailed SFTP via OpenSSH

user favourites

FM updates

fix for php-fpm stack

search api for file manager

multiple name servers

file manager stuff

mail settings hint

multiple name servers

File Manager update

fix for symlinked /tmp dir

hotkeys for filemanager

fix for caching template

FileManger stuff

uniq databases during restore

FileManager stuff

flush vars before list them

FileManager stuff

FM style update

DNS Cluster Serial fix

FileManager stuff

FM HotKeys

Improved Even Logger + check_result()

Improved domain validation plus added SERIAL support

Improved remote API

Fix SERIAL sync in DNS cluster

Fix for bulk actions

Fix for borken exlucssion missing symlinks and hidden files

New syntax to hide password from logger

multiple name servers support

fix date/time format for fail2ban

fix for fail2ban ip removal

fix for missing chain after reboot

fix for pgsql listing

Delete chains on firewall stop

.escapeshellarg protection

118n for File Manager

global suspend

multiple name servers

.htmlentities fix

new header and footer

global suspend

FileManager stuff

New vesta installer

Correct shell setting when SFTP chroot is enabled

json listing support

Fix for MariaDB listing

typo fix

FS manager stuff

Update SSL Ciphers

To fix RC4 immediate deprecation by major web browsers. Using old configuration results in "Insecure Certificate" errors.
Strong Ciphers via CloudFlare (https://github.com/cloudflare/sslconfig/blob/master/conf).
Excluded CloudFlare's use of ChaCha cipher due to compatibility patch required.

Info Source:
https://tools.ietf.org/html/rfc7465
https://www.pcicomplianceguide.org/pci-dss-v3-1-and-ssl-what-you-should-do-now/
https://blog.digicert.com/major-browsers-announce-rc4-deprecation/

Update v-update-user-quota

Update v-update-user-quota

Update v-update-user-quota

fix 1/2

serghey-rodin/vesta/outroll#434

fix 2/2

outroll#434

Less installation steps.

I prefer installing like this, so I assume other will.

Removed closing PHP tags

They aren't needed, and every little helps. :)

Removed closing PHP tags.

They aren't needed, and every little helps.

Removed closing PHP tags.

Removed closing PHP tags.

Removed closing PHP tags.

Removed double space that was not needed.

Saving bytes, that's all!

Removed closing PHP tags.

Cleaned it up a bit.

Fix for application/javascript from  infinitnet

Fixes from  Neilpang

File Manger stuff

made email a requirement for ssl generation

Added a check for username length

Removing debug loging

Revert auto update fix

IPV6 Add & List support

IPV6 Add web domain

IPV6 progress

Add IPV6 DNS domain

Update user counter

Add IP update

update add domain

Add domain ipv 4 & 6 split

Default templates

Delete ipv6

counter fix

v-add-web-domain-... update

Delete web domains IPV6

Fix add & delete domain

Add domain alias fix

IPV6 support in v-changes-web-...

Change ipv6 fix

edit ipv6 web fix

Progress update

fail tollerance against already synced domains

new and better way to backup - tar without find

remi argument handler

no versions at c.vestacp.com

No apache2.2-common in old Ubuntu

updated log location

no custom location for roundcube configs

smart way to hanlde php.ini

increased client_max_body_size to 256m

new web template scheme

set ip even if ip doesn't exist

no-php template

exclusion list in array

switched to bc for math calculation

check_result function

php-fpm support

imroved favorites handler

removed template selector

fix for js hint

Fixes for FM

Added CJK text support for the + button

Prohibit word breaks for CJK texts at #tooltip

Added Japanese support

Fixed typo

Added Polish translation

i18n update

user notification backend

v-change-sys-ipv6-...

v-...-dns-on-web-alias

Remove IPV6 template suffix

Update domain when no IP6 is defined

Template update rhel 6

Update dns domain

Add config at first login

Fix vst-install-ubuntu.sh

Fix vst-install-debian.sh

Fix vst-install-rhel.sh

Updated Polish translation

Delete (compromised?) cert

As the assumed corresponding private key for this cert is now publicly available, this certificate should not be used.
(in reference to my other pull request.)

Forgotten RSA Private key?

Going through the source, I cannot see any reason that this should exist; seems orphaned, old, and "Why Publish the PRIVATE KEY?".
Perhaps some ancient private commits that didn't get cleaned ?

Typo fixes

web template fixes

translation update

Add Vietnamese Language

Add new language file for support Vietnamese language

Translate phrase "Cron job" into Vietnamese words

Rename LICENSE.txt to LICENSE

Not usually a .txt extension.

Update tr.php

Update add & delete ip

Installer update

default backend

license manager

filemanager fix

fixes for license manager

Firewall support enable/disable

license checker

fix for netmask

removed check for smooth deactivation

file manager fixes

improved server configuration page

set default language

notifications

notifications

mend

no suspend on user level

backend template only for admin

no delete button for now

fix for bulk operations

disabled debug

bulk operation for backup restore

removed error catcher

flushing pipe when domain doesn't exist

white search

style versioning

symlinks fix

commercial plugins

Proper fix for the prefix corruption (for user names with non-alphanumeric characters)
and keep the prevention of addition of ftp user names with non-alphanumeric characters as it was intended initially

one file at the time for now

safe way to check permissions

quotes around path

remove debug

border-bottom: none

Tab name

FM changes

new tab name

footer update

notification bell

commercial plugin links

fix for bulk operations

no old stuff

FileManager latest changes

bulk operations fix

very final fixes for FM

bulk operations for customized restore

Release 0.9.8-15

ignore tarballs

notification links to features page

error_reporting

timestamp for sprite.png and templates.js

removed wrong slash

fixed notification link

install notifications

exclude config-version

installer update (fail2ban)

added cron as dep package to installer

Start using .gitignore

Support for Ubuntu 15.10

Fix for lscpu on OpenVZ

chkconfig firewalld off

nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

Firwall ipv6

Upgrade script ipv6

firewall update

Update firewall

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

Template update

Update v-list-...

Update ipv4/ipv6 changer

Package update fix

Rebuild fix

Fix v-add-user

Fix v-add-user

proxy_ip.tpl fix

main.sh line 131 error fix

debug info

V-add-user fix

V-add-user fix

v-update-firewall-ipv6

Update rhel 6 packages

php-fpm templates

Rhel 5 configs & templates

rhel 7 configs & templates

rhel 5 template update

fix http://forum.vestacp.com/viewtopic.php?f=13&t=6679

Templates

Installer update

added html tags escaping

Delete file

upd/update_packages.sh

update packages script

update packages fix

upgrade scripts fix

Upgrade packages fix

upgrade add ipv6 fix

Fix upgrade update packages

upgrade add ipv6 fix

upgrade add ipv6 in dns conf

upgrade rebuild dns records

ignore tarballs

notification links to features page

error_reporting

timestamp for sprite.png and templates.js

removed wrong slash

fixed notification link

install notifications

exclude config-version

installer update (fail2ban)

added cron as dep package to installer

Start using .gitignore

Support for Ubuntu 15.10

Fix for lscpu on OpenVZ

chkconfig firewalld off

nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

added html tags escaping

quick fix for issue outroll#638, maybe check on other places where this is possible?

delete template files

ignore tarballs

notification links to features page

error_reporting

timestamp for sprite.png and templates.js

removed wrong slash

fixed notification link

install notifications

exclude config-version

installer update (fail2ban)

added cron as dep package to installer

Start using .gitignore

Support for Ubuntu 15.10

Fix for lscpu on OpenVZ

chkconfig firewalld off

nginx repo url update

Remove invalid dot cause translation error

Translate new version strings, re-translate some wrong programing-phrases

Translation optimization

Lowercase large string

fix for fm sudo usage

keboard navigation support

Fix outroll#502

Improve grammar.

Use soft-tabs.

Split duplicated functions into web/inc/i18n.php

Detect user language

Fix minor typo.

Added / Improved some Japanese translations.

[LANG-JA] Some improvements.

Update v-list-web-templates

1. Custom web template whith dot:
- php-5.5-fcgid
- php-5.6-fcgid
...

2. natural sort of numbers within text

Fixed License link

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Fixed typos and made identical to RHEL version of this page

Update en.php

Update ro.php

The correct translation for romanian language.

Update add_package.html

Update edit_package.html

Update list_mail.html

Update add_firewall_banlist.html

Update ua.php

Full translate for current version VestaCP

Update vst-install-rhel.sh

hotfix installer

Replace cn.php

This is the new version completely from scratch.
Huge change, more than 100% of the translated degree.
Complete and extremely accurate Chinese localization translation.
Tip: Add some new keywords to improve the quality of translation.

Update v-add-sys-quota

- Supports journaled quotas (version 2 quota)
- Journaled quotas have the advantage that even after a crash no quota check is required
- Quotacheck on reboot

Update v-delete-sys-quota

- minor updates
- see: v-add-sys-quota

:lock: Fix OS command injection vulnerability.

:lock: :recycle: Implement secure `exec` wrapper functions.

Revert "[SECURITY] Fix OS command injection."

Flatta's security fixes from PullRequest outroll#516

Update index.php

Strict backup filename check.

TW translation fix

There is unnecessary code "<?php" on line 465. If we're use this
translation, we can get VestaCP internal server error. ;-(

+backup directory check, -closing PHP tag.

I added a backup directory check (as of now, you can download fake backups).

I also removed the closing PHP tag that isn't needed.

Duplicate session_start

Duplicate session_start

Corrected spelling mistakes

Forgot to escape that

Whoopsies

Update ro.php

Small changes.

Update cn.php

Hello @serghey-rodin.
Update:
  1. L155 -- Add keywords that are missing. (Comparative en are missing)
  2. L199-202 -- Replaced by a more accurate translation.

In addition, in here I explained cn and en differences: outroll#514 (comment)

update portuguese (Portugal) and add portuguese (Brazil) language files

Fix Undefined Var & Require $_POST['cmd'].

I fixed an undefined variable in my past commit, and also enabled the requirement for the `cmd` POST field.

added html tags escaping

quick fix for issue outroll#638, maybe check on other places where this is possible?

delete template files
@skurudo
Copy link
Collaborator

skurudo commented Jun 29, 2016

Fixed in 0.9.8-16
#639

@skurudo skurudo closed this as completed Jun 29, 2016
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants