Elias Schneider
ac9b0a1d53
release: 1.6.1
2024-11-26 15:53:33 +01:00
Elias Schneider
ba2e7e122c
fix: error for non oidc oauth clients
2024-11-26 15:53:01 +01:00
Elias Schneider
3527dd1dd9
release: 1.6.0
2024-11-25 12:44:42 +01:00
Elias Schneider
3160f90e1d
fix: add validation for share id and zip compression config variables
2024-11-25 12:41:03 +01:00
Elias Schneider
da54ce6ee0
feat: add config variable to specify the requested OIDC sopes
2024-11-25 12:21:17 +01:00
Elias Schneider
468b25828b
release: 1.5.0
2024-11-24 17:26:14 +01:00
Romain Ricard
9d4bb55a09
feat(share): add share ID length setting ( #677 )
...
- Add share ID length to share > settings
- Use cryptographically secure RNG for IDs
- Use secure default value for IDs length
- Add FR and EN translation
Co-authored-by: Romain Ricard <romain.ricard@mines-ales.org >
2024-11-24 17:25:50 +01:00
Elias Schneider
c8f05f2475
fix: totp can't be enabled if user is a ldap user
2024-11-23 18:55:47 +01:00
Elias Schneider
18d8cbbbab
release: 1.4.0
2024-11-17 16:22:29 +01:00
Elias Schneider
c7dacb26e8
feat: add "creatorEmail" config bariable to share recipient email message
2024-11-17 16:11:30 +01:00
Elias Schneider
b6d98c7c42
chore: upgrade vulnerable dependencies
2024-11-17 16:09:40 +01:00
Elias Schneider
c52ec71920
refactor: use fs promises in file service
2024-11-17 16:09:23 +01:00
Elias Schneider
6cf5c66fe2
fix: remote arbitrary file overwrite on file upload endpoint
2024-11-17 16:07:21 +01:00
Elias Schneider
51478b6a9f
release: 1.3.0
2024-11-14 19:10:37 +01:00
Elias Schneider
c26de4e881
fix: throw error if no disk space is left
2024-11-14 18:44:32 +01:00
Elias Schneider
d870b5721a
refactor: run formatter
2024-11-14 18:04:18 +01:00
Elias Schneider
e1a5d19544
fix: prevent deletion of last admin account
2024-11-14 17:39:06 +01:00
Elias Schneider
4ce64206be
feat: add 'secureCookies' configuration variable to explicitly set the secure flag and prevent confusion
2024-11-14 17:31:17 +01:00
Elias Schneider
ab4f19e921
release: 1.2.4
2024-10-24 14:45:05 +02:00
Elias Schneider
428c1d2b99
fix: don't enforce password lenght for sign in form because of LDAP
2024-10-24 14:44:07 +02:00
Elias Schneider
c89ca7e64b
fix: use app name as totp issuer
2024-10-24 13:59:54 +02:00
Elias Schneider
297e8c0ab1
release: 1.2.3
2024-10-23 15:49:09 +02:00
Elias Schneider
446f9dd209
refactor: run formatter
2024-10-23 15:48:55 +02:00
Elias Schneider
acbff6e129
fix: share password can be bypassed if a deleted share with the same id was visited before
2024-10-23 15:48:47 +02:00
Elias Schneider
08079744a0
release: 1.2.2
2024-10-18 16:09:19 +02:00
Elias Schneider
e195565630
release: 1.2.1
2024-10-15 20:58:36 +02:00
Marvin A. Ruder
bfbe8de98a
fix(oauth): add post_logout_redirect_uri to OAuth logout redirect URI ( #638 )
...
* Add `post_logout_redirect_uri` to OAuth logout redirect URI
Signed-off-by: Marvin A. Ruder <signed@mruder.dev >
* Update OAuth2 configuration documentation
Signed-off-by: Marvin A. Ruder <signed@mruder.dev >
---------
Signed-off-by: Marvin A. Ruder <signed@mruder.dev >
2024-10-15 20:49:43 +02:00
Elias Schneider
2e692241c5
fix: disallow passwort reset if it's a ldap user
2024-10-15 20:12:56 +02:00
Elias Schneider
1e96011793
refactor: run formatter
2024-10-15 20:12:09 +02:00
Elias Schneider
522a041ca1
release: 1.2.0
2024-10-14 18:19:02 +02:00
Marvin A. Ruder
2b3ce3ffd2
feat(oauth): Add option to logout from OpenID Connect provider
...
* Fixes #598
Signed-off-by: Marvin A. Ruder <signed@mruder.dev >
2024-10-14 18:16:47 +02:00
Elias Schneider
4a50a5aa3b
Merge branch 'main' of https://github.com/stonith404/pingvin-share
2024-10-14 17:15:42 +02:00
Elias Schneider
d6b8b56247
fix: use unique port env variable for backend
2024-10-14 17:15:38 +02:00
COMPLEX
5883dff4cf
feat(oauth): add ability to limit user IDs for Discord authentication ( #621 )
2024-09-30 08:53:58 +02:00
Elias Schneider
511ae933fa
release: 1.1.3
2024-09-27 16:10:48 +02:00
Elias Schneider
8f16d6b53e
refactor: run formatter
2024-09-27 16:03:53 +02:00
WolverinDEV
3310fe53b3
feat: improve the LDAP implementation ( #615 )
...
* feat(logging): add PV_LOG_LEVEL environment variable to set backend log level
* feat(ldap): Adding a more verbose logging output to debug LDAP issues
* fix(ldap): fixed user logins with special characters within the users dn by switching to ldapts
* feat(ldap): made the member of and email attribute names configurable
* fix(ldap): properly handle email like usernames and fixing #601
* Revert "fix: disable email login if ldap is enabled"
This reverts commit d9cfe697d6 .
* feat(ldap): disable the ability for a user to change his email when it's a LDAP user
* feat(ldap): relaxed username pattern by allowing the @ character in usernames
2024-09-27 16:02:49 +02:00
Elias Schneider
adc4af996d
fix: omit invalid username characters in oidc registration
2024-09-26 21:50:23 +02:00
Elias Schneider
eba7984a0f
release: 1.1.2
2024-09-24 12:21:56 +02:00
Elias Schneider
69752b8b41
fix: enable secure cookies if app url starts with https
2024-09-24 12:21:41 +02:00
Elias Schneider
6b39adfd03
release: 1.1.1
2024-09-18 23:32:52 +02:00
Elias Schneider
d00d52baa9
chore: dump dependencies
2024-09-18 11:04:06 +02:00
Elias Schneider
4c8848a2d9
release: 1.1.0
2024-09-14 18:15:44 +02:00
Elias Schneider
325122b802
refactor: run formatter
2024-09-14 18:13:32 +02:00
Elias Schneider
8b3e28bac8
feat: allow smpt without username and password
2024-09-14 17:24:19 +02:00
Elias Schneider
be202d3d41
release: 1.0.4
2024-09-06 09:03:11 +02:00
Elias Schneider
92e1e82e09
fix: oauth2 login can fail in some cases because the user can't be found
2024-09-06 09:02:30 +02:00
Elias Schneider
0670aaa331
release: 1.0.3
2024-09-03 22:56:19 +02:00
Elias Schneider
dee70987eb
fix: improve oidc error logging
2024-09-03 22:55:44 +02:00
Elias Schneider
3d2b978daf
refactor: run formatter
2024-09-03 22:54:53 +02:00