-
Notifications
You must be signed in to change notification settings - Fork 2.1k
Pull requests: owncloud/core
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
fix(changelog): use correct prefix
#41604
opened Jun 8, 2026 by
DeepDiver1975
Member
Loading…
11 tasks
fix(login): prevent user enumeration via differential password reset UI
#41586
opened Jun 5, 2026 by
DeepDiver1975
Member
Loading…
2 tasks
fix(files_external): sanitize exception messages in storage status response
#41585
opened Jun 5, 2026 by
DeepDiver1975
Member
Loading…
2 tasks
fix(login): add per-IP brute-force throttling to tryLogin()
#41584
opened Jun 5, 2026 by
DeepDiver1975
Member
Loading…
3 tasks
fix(command): restrict allowed_classes in ClosureJob unserialize() to prevent RCE
#41583
opened Jun 5, 2026 by
DeepDiver1975
Member
Loading…
3 tasks
fix(command): restrict allowed_classes in CommandJob unserialize() to prevent RCE
#41582
opened Jun 5, 2026 by
DeepDiver1975
Member
Loading…
3 tasks
fix(files_external): add SSRF host validation to external storage backend
#41581
opened Jun 5, 2026 by
DeepDiver1975
Member
Loading…
3 tasks
fix(files_sharing): enforce minimum search length in getUsers() and getGroups()
#41580
opened Jun 5, 2026 by
DeepDiver1975
Member
Loading…
2 tasks
fix(federation): replace strcmp token oracle with hash-based comparison in requestSharedSecret
#41579
opened Jun 5, 2026 by
DeepDiver1975
Member
Loading…
3 tasks
fix(federation): remove plaintext auth token from error log in getSharedSecret
#41578
opened Jun 5, 2026 by
DeepDiver1975
Member
Loading…
2 tasks
fix(occ): prevent params command key from overriding validated allowlist command
#41577
opened Jun 5, 2026 by
DeepDiver1975
Member
Loading…
2 tasks
fix(files/storage): add SSRF host validation to DAV storage constructor
#41576
opened Jun 5, 2026 by
DeepDiver1975
Member
Loading…
3 tasks
security: restrict allowed_classes in ClosureJob::run() to prevent PHP Object Injection
#41568
opened May 31, 2026 by
XananasX7
Loading…
chore: add namespaces for acceptance tests
#41350
opened Dec 31, 2024 by
phil-davis
Contributor
•
Draft
1 of 11 tasks
chore(deps): bump @bower_components/bowser from 1.9.4 to 2.11.0 in /build
dependencies
javascript
#41339
opened Nov 25, 2024 by
dependabot
Bot
Loading…
chore(deps-dev): bump karma-jasmine from 1.1.2 to 5.1.0 in /build
dependencies
javascript
#40153
opened Jun 20, 2022 by
dependabot
Bot
Loading…
chore(deps): bump @bower_components/blueimp-md5 from 1.0.1 to v2.19.0 in /build
dependencies
javascript
#39420
opened Oct 25, 2021 by
dependabot
Bot
•
Draft
Bump @bower_components/jcrop from 0.9.12 to v2.0.4 in /build
dependencies
javascript
#38666
opened Apr 29, 2021 by
dependabot
Bot
Loading…
ProTip!
no:milestone will show everything without a milestone.