diff --git a/docs/NEWS b/docs/NEWS index 017b2651..fab38df4 100644 --- a/docs/NEWS +++ b/docs/NEWS @@ -3,6 +3,11 @@ Version 1.3 () ------------------------------------------------------------------------ + * Add ability to plugins to check uploaded media files for invalid + file extensions. Added more escaping to user- and groupnames + for untrusted author environments, thanks to Hanno Boeck. + (garvinhicking) + * Added czech translation to bulletproof templates and bundled plugins, by Vlada Ajgl diff --git a/include/admin/category.inc.php b/include/admin/category.inc.php index 39307f0c..ed70a31b 100644 --- a/include/admin/category.inc.php +++ b/include/admin/category.inc.php @@ -120,9 +120,9 @@ if ($serendipity['GET']['adminAction'] == 'doDelete' && serendipity_checkFormTok || (serendipity_checkPermission('adminCategoriesDelete') && ($serendipity['authorid'] == $this_cat['authorid'] || $this_cat['authorid'] == '0')) || (serendipity_checkPermission('adminCategoriesDelete') && serendipity_ACLCheck($serendipity['authorid'], $serendipity['GET']['cid'], 'category', 'write'))) { ?> -