OO-4636, OO-4635: CSRF protection, open in new window
Implement a CSRF token to protect a little more against CSRF attack. Enhance the UI framework to allow opening a link in a new browser window.
Showing
- src/main/java/de/tuchemnitz/wizard/workflows/coursecreation/model/CourseCreationConfiguration.java 1 addition, 1 deletion...ows/coursecreation/model/CourseCreationConfiguration.java
- src/main/java/org/olat/admin/security/SecurityAdminConfigurationController.java 12 additions, 1 deletion.../admin/security/SecurityAdminConfigurationController.java
- src/main/java/org/olat/admin/security/_i18n/LocalStrings_de.properties 2 additions, 0 deletions.../org/olat/admin/security/_i18n/LocalStrings_de.properties
- src/main/java/org/olat/admin/security/_i18n/LocalStrings_en.properties 2 additions, 1 deletion.../org/olat/admin/security/_i18n/LocalStrings_en.properties
- src/main/java/org/olat/basesecurity/AuthHelper.java 15 additions, 12 deletionssrc/main/java/org/olat/basesecurity/AuthHelper.java
- src/main/java/org/olat/commons/calendar/ICalServlet.java 62 additions, 56 deletionssrc/main/java/org/olat/commons/calendar/ICalServlet.java
- src/main/java/org/olat/core/_i18n/LocalStrings_de.properties 2 additions, 1 deletionsrc/main/java/org/olat/core/_i18n/LocalStrings_de.properties
- src/main/java/org/olat/core/_i18n/LocalStrings_en.properties 1 addition, 0 deletionssrc/main/java/org/olat/core/_i18n/LocalStrings_en.properties
- src/main/java/org/olat/core/commons/controllers/impressum/ImpressumAdminController.java 2 additions, 1 deletion...mmons/controllers/impressum/ImpressumAdminController.java
- src/main/java/org/olat/core/commons/fullWebApp/BaseFullWebappController.java 15 additions, 10 deletions...lat/core/commons/fullWebApp/BaseFullWebappController.java
- src/main/java/org/olat/core/commons/fullWebApp/BaseFullWebappPopupBrowserWindow.java 4 additions, 0 deletions.../commons/fullWebApp/BaseFullWebappPopupBrowserWindow.java
- src/main/java/org/olat/core/commons/fullWebApp/MessageWindowController.java 2 additions, 2 deletions...olat/core/commons/fullWebApp/MessageWindowController.java
- src/main/java/org/olat/core/commons/fullWebApp/_content/fullwebapplayout.html 28 additions, 16 deletions...at/core/commons/fullWebApp/_content/fullwebapplayout.html
- src/main/java/org/olat/core/commons/fullWebApp/_content/message.html 4 additions, 4 deletions...va/org/olat/core/commons/fullWebApp/_content/message.html
- src/main/java/org/olat/core/commons/persistence/PersistenceHelper.java 1 addition, 1 deletion.../org/olat/core/commons/persistence/PersistenceHelper.java
- src/main/java/org/olat/core/commons/services/csp/CSPModule.java 17 additions, 0 deletions...in/java/org/olat/core/commons/services/csp/CSPModule.java
- src/main/java/org/olat/core/dispatcher/mapper/model/PersistedMapper.java 3 additions, 6 deletions...rg/olat/core/dispatcher/mapper/model/PersistedMapper.java
- src/main/java/org/olat/core/gui/UserRequest.java 17 additions, 2 deletionssrc/main/java/org/olat/core/gui/UserRequest.java
- src/main/java/org/olat/core/gui/UserRequestImpl.java 47 additions, 2 deletionssrc/main/java/org/olat/core/gui/UserRequestImpl.java
- src/main/java/org/olat/core/gui/WindowManager.java 3 additions, 4 deletionssrc/main/java/org/olat/core/gui/WindowManager.java
Loading
Please register or sign in to comment