piwigo/include
plegall 87a30ff064 bug 3050: increase security on reset password algorithm.
* reset key has a 1-hour life
* reset key is automatically deleted once used
* reset key is stored as a hash

Thank you effigies for code suggestions


git-svn-id: http://piwigo.org/svn/trunk@29111 68402e56-0260-453c-a942-63ccdbb3a9ee
2014-07-28 19:27:50 +00:00
..
dblayer feature 2999: (incomplete) doc of mysqli functions 2014-02-11 22:12:57 +00:00
inflectors english inflection rules ing/er 2014-04-30 18:49:36 +00:00
php_compat removed functions provided for php backward compatibility as 5.2 is now required 2014-02-03 21:15:19 +00:00
phpmailer feature 2965: move phpmailer files in a specific directory 2013-10-17 13:25:12 +00:00
smarty 2816: {strip} removes too much things, fixed again for smarty 3 2013-10-12 11:14:07 +00:00
ws_functions bug 3104: less rights for admins (compared to webmaster). Now an admin can't: 2014-07-25 09:10:49 +00:00
ws_protocols Update headers to 2014. Happy new year!! 2014-01-05 00:19:25 +00:00
block.class.php feature 3010 : replace trigger_action/event by trigger_notify/change 2014-06-02 07:55:46 +00:00
cache.class.php increase frequency of persistent cache purge (every ~100 set ops instead of ~200 set ops) 2014-06-02 19:55:38 +00:00
calendar_base.class.php more query2array 2014-02-13 22:21:12 +00:00
calendar_monthly.class.php bug 3002: Two classes with the same name : Calendar 2014-07-02 21:07:16 +00:00
calendar_weekly.class.php bug 3002: Two classes with the same name : Calendar 2014-07-02 21:07:16 +00:00
category_cats.inc.php feature 2807: nicer display of "from to" dates (required changes in "format_date" function) 2014-07-07 09:54:15 +00:00
category_default.inc.php feature 3010 : replace trigger_action/event by trigger_notify/change 2014-06-02 07:55:46 +00:00
common.inc.php since number of accepted args not required for add_event_handler, simplify calls 2014-06-18 19:51:42 +00:00
config_default.inc.php remove unused config variable 2014-05-29 05:19:46 +00:00
constants.php next release is 2.7.0beta3 2014-07-01 11:01:52 +00:00
cssmin.class.php fix cssmin issue: surrounding @ names with double quotes (W3C invalid and breaks animations on Firefox) 2013-12-07 22:36:24 +00:00
derivative.inc.php feature 3010 : replace trigger_action/event by trigger_notify/change 2014-06-02 07:55:46 +00:00
derivative_params.inc.php Update headers to 2014. Happy new year!! 2014-01-05 00:19:25 +00:00
derivative_std_params.inc.php Update headers to 2014. Happy new year!! 2014-01-05 00:19:25 +00:00
emogrifier.class.php remove "virtual" namespaces (or whatever it's called) in emogrifier 2014-02-18 17:35:38 +00:00
feedcreator.class.php
filter.inc.php Update headers to 2014. Happy new year!! 2014-01-05 00:19:25 +00:00
functions.inc.php feature:2807 better fix for svn:28995 2014-07-08 19:00:47 +00:00
functions_calendar.inc.php bug 3002: Two classes with the same name : Calendar 2014-07-02 21:07:16 +00:00
functions_category.inc.php feature 3010 : replace trigger_action/event by trigger_notify/change 2014-06-02 07:55:46 +00:00
functions_comment.inc.php bug 3100 display IP address of comment author on admin page and also save the entire ip address in the database, not only the first three ip components 2014-07-20 21:32:56 +00:00
functions_cookie.inc.php Update headers to 2014. Happy new year!! 2014-01-05 00:19:25 +00:00
functions_filter.inc.php Update headers to 2014. Happy new year!! 2014-01-05 00:19:25 +00:00
functions_html.inc.php removed unused get_html_tag_selection function + css rules 2014-06-18 20:39:25 +00:00
functions_mail.inc.php feature 3046: Add option "force_fallback" to load_language + clean code 2014-07-02 08:12:16 +00:00
functions_metadata.inc.php feature 3010 : replace trigger_action/event by trigger_notify/change 2014-06-02 07:55:46 +00:00
functions_notification.inc.php added persistent cache for some slow queries in feed notification (even if not important to be fast on RSS feed, it might slow down galleries that are very large and actively used) 2014-05-29 05:27:57 +00:00
functions_picture.inc.php Update headers to 2014. Happy new year!! 2014-01-05 00:19:25 +00:00
functions_plugins.inc.php improves regexes parsing plugins metadata 2014-07-06 14:05:05 +00:00
functions_rate.inc.php feature 3010 : replace trigger_action/event by trigger_notify/change 2014-06-02 07:55:46 +00:00
functions_search.inc.php bug 3056 quick search - fix regex for date searches (was not working with months 11 and 12) 2014-07-10 21:00:12 +00:00
functions_session.inc.php bug 3082: increase generate_key randomness with openssl_random_pseudo_bytes (with fallback on mt_rand for Windows+PHP<5.3.4) 2014-06-03 08:07:32 +00:00
functions_tag.inc.php feature 3010 : replace trigger_action/event by trigger_notify/change 2014-06-02 07:55:46 +00:00
functions_url.inc.php more query2array and remove unnecessary tests in often called url functions 2014-02-16 07:39:19 +00:00
functions_user.inc.php bug 3050: increase security on reset password algorithm. 2014-07-28 19:27:50 +00:00
index.php Update headers to 2014. Happy new year!! 2014-01-05 00:19:25 +00:00
jshrink.class.php bug:2663 replace JSmin by JShrink 2012-12-26 11:39:32 +00:00
mdetect.php bug 3058: update mdetect for windows 8 mobile etc ... 2014-04-04 04:20:34 +00:00
menubar.inc.php fix php warning (from one of my previous commits) 2014-05-15 19:24:29 +00:00
no_photo_yet.inc.php feature 3010 : replace trigger_action/event by trigger_notify/change 2014-06-02 07:55:46 +00:00
page_header.php feature 3010 : replace trigger_action/event by trigger_notify/change 2014-06-02 07:55:46 +00:00
page_tail.php bug:3098 2014-07-05 15:29:59 +00:00
passwordhash.class.php merge r22280 from branch 2.5 to trunk 2013-04-18 13:01:57 +00:00
picture_comment.inc.php feature:2807 better fix for svn:28995 2014-07-08 19:00:47 +00:00
picture_metadata.inc.php when displaying iptc metadata, add a space between iptc keywords (if there are many, the html line is unbreakable) 2014-04-05 19:33:48 +00:00
picture_rate.inc.php Update headers to 2014. Happy new year!! 2014-01-05 00:19:25 +00:00
section_init.inc.php feature 3010 : replace trigger_action/event by trigger_notify/change 2014-06-02 07:55:46 +00:00
template.class.php i18n for the new HTML5 upload (use i18n files from plupload) 2014-07-02 12:43:29 +00:00
user.inc.php feature 3010 : replace trigger_action/event by trigger_notify/change 2014-06-02 07:55:46 +00:00
ws_core.inc.php feature 3010 : replace trigger_action/event by trigger_notify/change 2014-06-02 07:55:46 +00:00
ws_functions.inc.php Update headers to 2014. Happy new year!! 2014-01-05 00:19:25 +00:00