1
0
Fork 0
mirror of https://github.com/DanielnetoDotCom/YouPHPTube synced 2025-10-03 09:49:28 +02:00
Commit graph

634 commits

Author SHA1 Message Date
Daniel Neto
099313b89a Update 2023-09-01 09:17:08 -03:00
Daniel Neto
31ba5ccc8c Update 2023-08-31 10:22:48 -03:00
Daniel Neto
aadd1744da https://github.com/WWBN/AVideo/issues/8327#issuecomment-1699643618 2023-08-30 16:00:28 -03:00
Daniel Neto
ad3a416bd6 https://github.com/WWBN/AVideo/issues/8325 2023-08-30 15:30:55 -03:00
Daniel Neto
e36f56b9e0 update 2023-08-28 09:00:58 -03:00
Daniel Neto
d329a1d0ec update 2023-08-24 09:18:10 -03:00
Daniel Neto
9453952faa update 2023-08-16 18:16:58 -03:00
Daniel Neto
5ea6359a97 Autoplay fix 2023-08-14 14:30:04 -03:00
Daniel Neto
462f913abc update 2023-08-11 14:21:16 -03:00
Daniel Neto
44b32afede update 2023-08-11 14:13:24 -03:00
Daniel Neto
c989ef99bf update 2023-08-11 14:12:28 -03:00
Daniel Neto
7197a238bf update 2023-08-09 08:06:43 -03:00
Daniel Neto
e2515e60af https://github.com/WWBN/AVideo/issues/8253 2023-07-27 11:05:52 -03:00
Daniel Neto
48504cdc1f https://github.com/WWBN/AVideo/issues/8212 2023-07-21 17:50:58 -03:00
Daniel Neto
79281a5237 https://github.com/WWBN/AVideo/issues/8210 2023-07-21 09:54:46 -03:00
Daniel Neto
2f7c00a55d https://github.com/WWBN/AVideo/issues/8204
https://github.com/WWBN/AVideo/issues/8198
2023-07-20 15:17:50 -03:00
Daniel Neto
2a76d13be3 https://github.com/WWBN/AVideo/issues/8159 2023-07-18 15:00:57 -03:00
Daniel Neto
a883429051 updates 2023-07-14 14:25:41 -03:00
Daniel Neto
d138f2b022 Separate the add view script 2023-07-10 09:14:21 -03:00
Daniel Neto
a29f6d44d8 update 2023-07-02 11:37:52 -03:00
Daniel Neto
7ddce01f98 update 2023-07-02 11:34:54 -03:00
Daniel Neto
37e90e3dfe https://github.com/WWBN/AVideo/issues/8137 2023-06-30 09:47:34 -03:00
Daniel Neto
20a971ae4f Update 2023-06-23 12:08:57 -03:00
Daniel Neto
dad7169340 https://github.com/WWBN/AVideo/issues/8011 2023-05-15 09:34:07 -03:00
Daniel Neto
f9bb45f215 Update 2023-04-26 12:35:24 -03:00
Daniel Neto
04065e2d6c update 2023-04-24 15:06:57 -03:00
Daniel Neto
5ef6e84a8c update 2023-04-08 12:03:58 -03:00
Daniel Neto
f83cdc2989 update 2023-04-08 11:56:47 -03:00
Daniel Neto
8b7e6967fd update 2023-04-08 11:49:19 -03:00
Daniel Neto
6d97421440 update 2023-04-08 11:41:23 -03:00
Daniel Neto
1b9fa95c26 update 2023-04-08 11:26:29 -03:00
Daniel Neto
5cf8ada037 update 2023-04-08 11:18:00 -03:00
Daniel Neto
9dcf0278d3 update 2023-04-08 11:06:21 -03:00
Daniel Neto
b883cb05be update 2023-03-06 15:52:01 -03:00
Daniel Neto
e1bf080979 update socket 2023-03-06 15:36:54 -03:00
Daniel Neto
cea1a3ee95 autoplay update 2023-03-03 13:42:19 -03:00
Daniel Neto
60f735ba62 update 2023-03-03 13:31:32 -03:00
Daniel Neto
4cd726f580 Docker logs 2023-03-01 13:14:37 -03:00
Daniel Neto
9c94150b6b update 2023-02-27 15:41:07 -03:00
Daniel Neto
b1048c7827 update 2023-02-27 15:37:33 -03:00
Daniel Neto
d545f864ac fix 2023-02-27 15:26:43 -03:00
Daniel Neto
c6a075e56d update 2023-02-27 14:22:49 -03:00
DanieL
b732e43941 Update not found image 2023-02-10 21:57:58 -03:00
DanieL
649dd5e829 Update 2023-02-01 08:40:03 -03:00
DanieL
2b44dee815 Thanks Jefferson Gonzales
this update prevents the XSS attack

Description:

While making an account in demo.avideo.com I found a parameter "?success=" which did not sanitize any symbol character properly which leads to XSS attack.

Impact:

Since there's an Admin account on demo.avideo.com attacker can use this attack to Takeover the admin's account

Step to Reproduce:

1. Click the link below

https://demo.avideo.com/user?success="><img src=x onerror=alert(document.cookie)>

2. Then XSS will be executed
2023-01-31 11:59:34 -03:00
DanieL
f574e97d2a Add a new video status
unlisted but searchable
2023-01-26 14:15:36 -03:00
KrzysioMisio
25707b6888
Update script.js
Polish characters
2023-01-07 21:23:00 +01:00
DanieL
02fd89e23b New mobile app assets 2023-01-04 10:29:20 -03:00
DanieL
e170e053e1 Updates 2022-12-30 10:06:43 -03:00
DanieL
49d1a93ad0 Login updates 2022-12-29 10:57:01 -03:00