Ghost/core/test
Sebastian Gierlinger 90176e1f40 Security improvements
no issue
- added CSRF protection
- changed session handling to express.session
- changed session handling to change session id
- added config property useCookieSession
- added file extension check for /ghost/upload
- removed /ghost/debug/db/reset
2013-10-17 15:28:28 +02:00
..
functional Adds slashes to urls 2013-09-17 02:39:55 +01:00
unit Security improvements 2013-10-17 15:28:28 +02:00