Logo
Explore Help
Sign In
gitcaddy/gitea
2
0
Fork 0
You've already forked gitea
Code Issues Packages Releases 7 Wiki
Files
main
gitea/templates/repo/actions
History
silverwind 42d294941c Replace CSRF cookie with CrossOriginProtection (#36183)
Removes the CSRF cookie in favor of
[`CrossOriginProtection`](https://pkg.go.dev/net/http#CrossOriginProtection)
which relies purely on HTTP headers.

Fixes: https://github.com/go-gitea/gitea/issues/11188
Fixes: https://github.com/go-gitea/gitea/issues/30333
Helps: https://github.com/go-gitea/gitea/issues/35107

TODOs:

- [x] Fix tests
- [ ] Ideally add tests to validates the protection

---------

Signed-off-by: wxiaoguang <wxiaoguang@gmail.com>
Co-authored-by: wxiaoguang <wxiaoguang@gmail.com>
2025-12-25 12:33:34 +02:00
..
list.tmpl
Improve online runner check (#35722)
2025-10-24 12:02:52 -07:00
no_workflows.tmpl
Remove unnecessary "Safe" modifier from templates (#29318)
2024-02-22 17:02:33 +00:00
runs_list.tmpl
Improve online runner check (#35722)
2025-10-24 12:02:52 -07:00
status.tmpl
Fix circular spin animation direction (#35785)
2025-11-02 08:30:13 +00:00
view_component.tmpl
Add "Cancel workflow run" button to Actions list page (#34817)
2025-06-22 19:05:16 -04:00
view.tmpl
Add auto-expanding running actions step (#30058)
2024-12-22 18:57:17 +00:00
workflow_dispatch_inputs.tmpl
Fix commit message rendering and some UI problems (#34680)
2025-06-10 23:20:32 +08:00
workflow_dispatch.tmpl
Replace CSRF cookie with CrossOriginProtection (#36183)
2025-12-25 12:33:34 +02:00
Powered by Gitea Version: development Page: 578ms Template: 5ms
Auto
English
Bahasa Indonesia Deutsch English Español Français Gaeilge Italiano Latviešu Magyar nyelv Nederlands Polski Português de Portugal Português do Brasil Suomi Svenska Türkçe Čeština Ελληνικά Български Русский Українська فارسی മലയാളം 日本語 简体中文 繁體中文(台灣) 繁體中文(香港) 한국어
Licenses API