Many hyperlinks are disabled.
Use anonymous login
to enable hyperlinks.
50 most recent check-ins by user drh
2023-11-24
| ||
12:59 | Update the built-in SQLite to version 3.44.2. ... (check-in: 3f97785608 user: drh tags: trunk) | |
2023-11-22
| ||
20:22 | Update the built-in SQLite to version 3.44.1. ... (check-in: 2edeeee4a8 user: drh tags: trunk) | |
2023-11-19
| ||
11:42 | Improved description on /timeline pages that make use of tl= or rl=. ... (check-in: e03200e545 user: drh tags: trunk) | |
2023-11-18
| ||
20:41 | Add new tl= and rl= query parameters to /timeline ... (check-in: 2288b74257 user: drh tags: trunk) | |
2023-11-11
| ||
17:59 | Check if markdown paragraphs contains lists. Fixes issue reported in [forum:b598ac56defddb2a]. ... (check-in: a8782f33d3 user: drh tags: trunk) | |
17:49 | Suppress compiler warnings associated with jimtcl on OpenBSD. ... (check-in: cd040d1a38 user: drh tags: trunk) | |
2023-11-10
| ||
14:41 | Increase the version number to 2.24 to start the next development cycle. Begin the change log for 2.24. ... (check-in: 9b64259473 user: drh tags: trunk) | |
14:14 | Add the x= query parameter to /timeline. Satisfies ticket [208e3fc206af9b61]. ... (check-in: cad7c10b37 user: drh tags: trunk) | |
2023-11-02
| ||
19:40 | Improvements to "fossil sync" help text. ... (check-in: 88871c0203 user: drh tags: trunk) | |
19:37 | For the "fossil sync" command if the -v option is repeated, then the HTTP_VERBOSE flag is set on the http_exchange() call, resulting in additional debugging output for the wire protocol. ... (check-in: 8089622419 user: drh tags: trunk) | |
2023-11-01
| ||
18:56 | Version 2.23 ... (check-in: 47362306a7 user: drh tags: trunk, release, version-2.23) | |
14:13 | Update the built-in SQLite to version 3.44.0. ... (check-in: 72e143519d user: drh tags: trunk) | |
2023-10-29
| ||
22:52 | Update the built-in SQLite to the first 3.44.0 release candidate, for testing. ... (check-in: e4d2c1d1fc user: drh tags: trunk) | |
22:20 | Replicated the server load aveage limit on the robot-defenses configuration page. ... (check-in: a72e9e181d user: drh tags: trunk) | |
19:19 | Fix typos in and otherwise improved the docs for the "fossil all set" command. ... (check-in: 67094bc299 user: drh tags: trunk) | |
2023-10-25
| ||
12:19 | Fix the password reset request form so that it passes CSRF security tests. ... (check-in: ce8598b6c1 user: drh tags: trunk) | |
2023-10-24
| ||
12:04 | Update the built-in SQLite to the first 3.44.0 beta, for testing. ... (check-in: 39bcd310e8 user: drh tags: trunk) | |
2023-10-23
| ||
10:44 | Remove all calls to sprintf() from makeheaders and mkversion in order to appease prudish compilers. ... (check-in: 8c7bf45096 user: drh tags: trunk) | |
10:21 | Update the built-in SQLite to the latest 3.44.0 alpha yet again. This time, also remember to include the "shell.c" source file from SQLite that includes the removal of an "sprintf()" call, thereby avoiding scary MacOS warnings. ... (check-in: 6ac015311e user: drh tags: trunk) | |
2023-10-22
| ||
23:46 | Update the built-in Fossil to a newer 3.44.0 alpha that fixes the 8-byte alignment problem with duplicated Expr objects, as well as other minor fixes. ... (check-in: 128e503031 user: drh tags: trunk) | |
2023-10-21
| ||
21:38 | Update the built-in SQLite to the first 3.44.0 alpha, for testing. ... (check-in: b0db6ddb5e user: drh tags: trunk) | |
2023-09-29
| ||
12:53 | Fix self-registration bug created by the enhanced CSRF defense changes. ... (check-in: 6ae9941860 user: drh tags: trunk) | |
2023-09-28
| ||
14:15 | Update to the change log. ... (check-in: e3e28f43dc user: drh tags: trunk) | |
14:13 | Changing a setting to an empty string is now the same as unsetting that value, in most cases. Settings that are exceptions to the rule are marked with the "keep-empty" flag. Fix for the issue reported by [forum:/forumpost/a17b5fa51d607e3d|forum post a17b5fa51d607e3d]. ... (check-in: 1f6ae1efb4 user: drh tags: trunk) | |
14:08 | Minor tweaks to the hash color test page. ... (check-in: 19799565b7 user: drh tags: trunk) | |
13:51 | The "branch ls" command should flag private branches with -R. ... (check-in: 016f6c5ec5 user: drh tags: trunk) | |
13:43 | Remove an unnecessary while() loop. ... (check-in: 225abb37df user: drh tags: trunk) | |
13:38 | Mark closed leaves with an X on the timeline graph. ... (check-in: 57bea365a3 user: drh tags: trunk) | |
2023-09-25
| ||
15:47 | If the value of a setting is changed into an empty string, then unset it, except for the rare setting that has the new keep-empty property. ... (Closed-Leaf check-in: b9bbb8d7fd user: drh tags: unset-empty-settings) | |
2023-09-19
| ||
11:41 | Improvements to documentation for the "patch" command. ... (check-in: 14ebbe9d99 user: drh tags: trunk) | |
11:31 | Improvements to help-text HTML formatting. ... (check-in: ccc780f552 user: drh tags: trunk) | |
11:19 | Updates to the change log. ... (check-in: 5afa42e4ec user: drh tags: trunk) | |
10:42 | Fix a harmless compiler warning in SQLite. This is a direct edit to the imported sqlite3.c file, which will be overwritten the next time we update SQLite. But that's ok since the warning is fixed in the SQLite tree too. ... (check-in: ead5a95b47 user: drh tags: trunk) | |
2023-09-18
| ||
20:43 | Merge the CSRF-defense enhancements into trunk. ... (check-in: 920ace1739 user: drh tags: trunk) | |
17:13 | Omit the SameSite=strict specifier for the login cookie, since that prevents users from clicking a hyperlink on an email notification and then going directly to the relevant page and getting logged in. ... (Closed-Leaf check-in: fc5b49e990 user: drh tags: csrf-defense-enhancement) | |
15:36 | Set the "SameSite=strict" value on cookies (used for authentication) as a further defense-in-depth against CSRF attacks. ... (check-in: bc643c32f8 user: drh tags: csrf-defense-enhancement) | |
15:24 | Fix forum-post approval buttons so that they send the CSRF token. ... (check-in: bf9974cf8d user: drh tags: csrf-defense-enhancement) | |
15:10 | More intensive use of the Synchronizer Token Pattern for CSRF defense. ... (check-in: 0a66be2b75 user: drh tags: csrf-defense-enhancement) | |
14:32 | Strengthen CSRF requirements for the skin editor. ... (check-in: 6912636dc3 user: drh tags: csrf-defense-enhancement) | |
14:29 | Cleanup forms on the skin editor page. ... (check-in: 5feae3fd75 user: drh tags: csrf-defense-enhancement) | |
14:13 | Stronger CSRF token based on a SHA1 hash of the login cookie. ... (check-in: ff3746c4c2 user: drh tags: csrf-defense-enhancement) | |
13:18 | Try to simplify and rationalize the defenses against cross-site request forgery attacks. A hodgepodge of techniques have been used in the past. This changes attempts to make everything work more alike and to centralize CSRF defenses for easier auditing. ... (check-in: 88a402fe2a user: drh tags: csrf-defense-enhancement) | |
2023-08-31
| ||
12:20 | Show the complete CGI environment in the error log on a 418 hack attempt error. ... (check-in: 0204f4aab5 user: drh tags: trunk) | |
2023-08-30
| ||
19:42 | Improvements to the tools/codecheck1.c injection-attack static analyzer tool. ... (check-in: 2afff83e7e user: drh tags: trunk) | |
2023-08-27
| ||
19:01 | On the /docdir page, omit the submenu and other page decorations. ... (check-in: 0313f0f90d user: drh tags: trunk) | |
18:42 | Add the /docdir page which is an alias for /dir with the "dx" query parameter. ... (check-in: 5d7e153ff7 user: drh tags: trunk) | |
18:15 | Add the "dx" query parameter to the "dir" page, which if present causes links to file to use /doc instead of /file. ... (check-in: d4d10c0165 user: drh tags: trunk) | |
2023-08-23
| ||
15:57 | New Pikchr that fixes text positioning on negative thickness lines. ... (check-in: 2bdd36e4ad user: drh tags: trunk) | |
15:36 | Update Pikchr to support zero-thickness objects. ... (check-in: 8ed25a31b4 user: drh tags: trunk) | |
2023-08-20
| ||
18:07 | Update the built-in zlib library to version 1.3. ... (check-in: f1f1d6c4eb user: drh tags: trunk) | |