63 Commits

Author SHA1 Message Date
dead-horse
e79d034b49 fix @ bug in topic content 2012-09-18 12:21:01 +08:00
dead-horse
f140211175 not escape html in 2012-09-18 11:42:19 +08:00
dead-horse
4489a1c480 use escape replace of xss() 2012-09-18 01:16:06 +08:00
fengmk2
574a785514 增加时间做前缀 2012-09-17 22:48:01 +08:00
fengmk2
ed2c15b4f9 fixed reply xss 2012-09-17 22:35:43 +08:00
fengmk2
17e16ede74 Merge pull request #80 from dead-horse/master
文件上传过滤
2012-09-17 07:32:11 -07:00
fengmk2
985fb7429c fixed #83 sanitize.xss() 2012-09-17 22:22:34 +08:00
spout
a61bee0dec Update controllers/user.js
解决头像url被注入bug
2012-09-17 20:55:09 +08:00
spout
81f8388946 Update controllers/upload.js
解决file的相对路径的漏洞,将用户提交的filename进行sha1加密,彻底解决
2012-09-13 22:17:23 +08:00
dead-horse
1756e88def 判断文件上传路径 2012-09-13 16:13:04 +08:00
dead-horse
3debf570bd 判断文件上传路径 2012-09-13 16:12:16 +08:00
fengmk2
51d991b617 fixed #68 #75 remove html script 2012-09-11 23:07:36 +08:00
fengmk2
69f0d832e2 support custom profile image url fixed #54 2012-08-26 00:15:16 +08:00
aisk
17b2cc7bf2 Add tag topic list page's background image css. 2012-07-23 22:23:38 +08:00
aisk
c3dd2248ed Add tag backgroud edit 2012-07-23 18:39:02 +08:00
fengmk2
9459713b46 fixed #52 md编辑器需要完全与github的格式兼容 using showdown.js 2012-06-22 17:50:01 +08:00
fengmk2
0906e6347e fixed reset use not active bug; redefined upload controllers; 2012-06-14 01:52:51 +08:00
fengmk2
50e15fe578 add rewire for private methods test. 2012-06-13 21:26:28 +08:00
Jackson Tian
7504ce8c48 Add /status for monitor site status. 2012-06-11 21:24:03 +08:00
fengmk2
69245339fb convert tab to 2 space; 2012-06-04 00:09:40 +08:00
fengmk2
ded0ee8059 add at.js unit tests 2012-06-03 12:53:49 +08:00
fengmk2
62b754ab06 add unit test and jscoverage 2012-06-02 23:33:01 +08:00
fengmk2
eda0b209f4 fixed #49 add one host plugins for bind cnodejs.org 2012-06-02 22:14:27 +08:00
young40
a8f40f96a1 按照代码规范, 修改代码 2012-05-21 20:03:09 +08:00
young40
950fcbea3d 修复搜索分页错误, 更新分页显示方法 2012-05-21 18:45:46 +08:00
fengmk2
2eabad4a03 fixed #30 修复url不正确的问题; 2012-05-21 14:19:39 +08:00
young40
2c3f6883fa 话题置顶相关代码, 按照代码规范修复代码 2012-05-20 23:10:04 +08:00
young40
9c424646d1 用户发表话题或回复时, 同时更新session中用户的积分值, 让用户积分能在页面上及时更新显示. 2012-05-20 16:50:50 +08:00
young40
806414a03f 增加话题置顶功能 2012-05-20 16:35:14 +08:00
fengmk2
6cf5e15cae fixed keyword RegExp 2012-05-08 11:10:53 +08:00
Kenny Zhao
d2c0c7fb06 add community board;highlight the tag in topic list;etc 2012-05-08 00:23:29 +08:00
Kenny Zhao
c764f44286 change googlesearch to mongo in-site search 2012-05-08 00:00:32 +08:00
ericzhang
49e20dae51 convert markdown to html for rss reader 2012-03-17 18:53:47 +08:00
fengmk2
ded499f862 add auto found RSS link 2012-03-17 12:45:54 +08:00
ericzhang
3f24f41437 rss bug fix 2012-03-17 11:28:16 +08:00
ericzhang
fda21b9232 add some fields for rss 2012-03-17 10:43:44 +08:00
ericzhang
5eca619298 rss support 2012-03-17 10:34:03 +08:00
dead-horse
3fa17e7073 添加两个登录跳转首页的页面 2012-03-15 17:47:19 +08:00
fengmk2
42d8dedf71 Merge pull request #20 from dead-horse/master
修复今天的几个问题,修改找回密码逻辑,修改登录跳转逻辑;发送邮件时,不等待邮件发送成功先通知用户,避免用户等待时间过长。邮件压入队列,如果失败1分钟后再次发送
2012-03-13 09:39:29 -07:00
fengmk2
473ecbdbf3 merge #18 pull request. topic页面增加关注和取消关注按钮; 用户排行榜界面改善 2012-03-14 00:32:16 +08:00
dead-horse
da44045184 发送邮件时,不等待邮件发送成功先通知用户,避免用户等待时间过长。邮件压入队列,如果失败1分钟后再次发送 2012-03-13 19:11:37 +08:00
dead-horse
0bb2ecfe05 fix 2012-03-13 17:41:17 +08:00
dead-horse
611e73e97c 修改密码找回文案 2012-03-13 17:40:23 +08:00
dead-horse
a96ea0622f 修改找回密码逻辑,修改登录跳转逻辑 2012-03-13 17:39:04 +08:00
Kenny Zhao
c7f4530af7 在topic页面增加用户关注自动判断
还有一些小更新,如更改用户排行榜样式,前20位增加不同显示
2012-03-13 17:21:49 +08:00
Kenny Zhao
4fa85720c4 fix topic title missing bug when length is less than 10 chars; and change html title for SEO 2012-03-08 01:03:11 +08:00
fengmk2
270653216b add sidebar 2012-03-04 02:56:01 +08:00
fengmk2
828cd49914 fixed #7 2012-03-04 02:36:49 +08:00
fengmk2
b7182b97d4 fixed login will redirect to referer page problem; redfine routes to routes.js 2012-03-04 02:05:34 +08:00
fengmk2
fa03714d32 ensure IncomingForm.UPLOAD_DIR 2012-03-04 00:49:00 +08:00