Skip to content
GitLab
  • Menu
Projects Groups Snippets
  • /
  • Help
    • Help
    • Support
    • Community forum
    • Submit feedback
    • Contribute to GitLab
  • Sign in / Register
  • funkwhale funkwhale
  • Group information
    • Group information
    • Activity
    • Labels
    • Members
  • Issues 494
    • Issues 494
    • List
    • Board
    • Milestones
  • Merge requests 29
    • Merge requests 29
  • Packages & Registries
    • Packages & Registries
    • Package Registry
Collapse sidebar
  • funkwhale
  • Merge requests
  • Open 0
  • Merged 17
  • Closed 2
  • All 19
  • Fix X-Frame-Options HTTP header for embed and force it to SAMEORIGIN value for other pages   1 of 2 tasks completed
    funkwhale!1388 · created Oct 20, 2021 by JuniorJPDJ   1.2.0   Area: Deployment Area: Security Component: Docker Status: Ready
    • MERGED
    • 3
    updated Oct 21, 2021
  • Resolve "prevent open redirect on login"
    funkwhale!1352 · created Jul 26, 2021 by Ciarán Ainsworth   1.1.3   Area: Frontend Area: Security Status: Ready
    • MERGED
    • 0
    updated Jul 26, 2021
  • Add beforeRouteEnter guards for moderation pages
    funkwhale!1351 · created Jul 22, 2021 by Ciarán Ainsworth   1.1.3   Area: Security Status: Ready
    • MERGED
    • 8
    updated Jul 26, 2021
  • Update backend dependencies   0 of 2 tasks completed
    funkwhale!1303 · created Apr 25, 2021 by Georg Krause   1.2.0   Area: Backend Area: Security Status: Ready
    • MERGED
    • 2
    updated Apr 30, 2021
  • Upgraded dependencies
    funkwhale!1165 · created Jul 11, 2020 by Agate   1.0   Area: Backend Area: Security Type: Enhancement
    • MERGED
    • 0
    updated Jul 18, 2020
  • See #1108: support using OAuth instead of JWT in front when logging in to a different domain   4 of 4 tasks completed
    funkwhale!1127 · created May 18, 2020 by Agate   1.0   Area: Backend Area: Frontend Area: Security Component: Auth Severity: Critical
    • MERGED
    • 0
    updated May 18, 2020
  • Support session/cookie based auth, see #1108   4 of 4 tasks completed
    funkwhale!1126 · created May 18, 2020 by Agate   1.0   Area: Backend Area: Frontend Area: Security Component: Auth Severity: Critical
    • MERGED
    • 0
    updated May 18, 2020
  • Use scoped tokens to load <audio> urls instead of JWT
    funkwhale!1124 · created May 08, 2020 by Agate   1.0   Area: Backend Area: Frontend Area: Security Component: Auth Severity: Critical
    • MERGED
    • 0
    updated May 11, 2020
  • See #170: switch to PKCS#8 for public key serialization
    funkwhale!1064 · created Mar 24, 2020 by Agate   0.21   Area: Backend Area: Security Component: Federation
    • MERGED
    • 0
    updated Mar 25, 2020
  • Dependency care - upgrade to django 3
    funkwhale!1037 · created Feb 25, 2020 by Agate   backlog   Area: Backend Area: Security Type: Enhancement
    • MERGED
    • 0
    updated Feb 25, 2020
  • Fix #883: Prevent usage of too weak passwords   4 of 4 tasks completed
    funkwhale!901 · created Sep 20, 2019 by Agate   0.20   Area: Backend Area: Security Type: Enhancement
    • MERGED
    • 2
    • 2
    updated Sep 21, 2019
  • Resolve "Improve the security via HTTP headers"   4 of 4 tasks completed
    funkwhale!826 · created Jul 10, 2019 by Agate   0.20   Area: Backend Area: Frontend Area: Security Status: Review wanted Type: Enhancement
    • MERGED
    • 5
    updated Aug 15, 2019
  • Updated to django 2.2.4
    funkwhale!849 · created Aug 01, 2019 by Agate   0.20   Area: Backend Area: Security Type: Enhancement
    • MERGED
    • 0
    updated Aug 01, 2019
  • Increase the security of JWT token generation by using DJANGO_SECRET_KEY as...
    funkwhale!828 · created Jul 13, 2019 by Agate   0.20   Area: Backend Area: Security Type: Enhancement
    • MERGED
    • 1
    updated Jul 16, 2019
  • Resolve "Hide an artist in the UI"   1 of 1 task completed
    funkwhale!618 · created Feb 13, 2019 by Agate   0.19   Area: Backend Area: Frontend Area: Security Size: L Status: input wanted Type: New feature Type: UX/UI
    • MERGED
    • 0
    updated Feb 20, 2019
  • Fix #678: Removed potential BREACH exploit because of Gzip compression
    funkwhale!572 · created Jan 29, 2019 by Agate   0.18.1   master   Area: Backend Area: Deployment Area: Security Difficulty: Easy-pick
    • MERGED
    • 0
    updated Jan 29, 2019
  • Fix #658: Support blind key rotation in HTTP Signatures   1 of 1 task completed
    funkwhale!530 · created Jan 11, 2019 by Agate   0.18   Area: Backend Area: Security Component: Federation Status: Ready Type: Enhancement
    • MERGED
    • 1
    updated Jan 14, 2019