Ghost/core/server
Thibaut Patel 2bcc934eb4 Disable CSRF on the oauth callback route
no issue

Keeping CSRF enabled there would prevent oauth from working as users are redirected from the provider domain to the /callback route, where they are logged-in
2021-05-18 20:44:21 +02:00
..
adapters Moved i18n to shared 2021-05-04 13:03:38 +01:00
api Fixed typos 2021-05-12 17:06:10 +04:00
data Added settings for monthly/yearly price ids 2021-05-18 13:34:31 +05:30
lib Moved getLocalSize() from mobiledoc to image-size lib 2021-05-14 11:57:37 +01:00
models Added support for gating content by member labels and products (#12946) 2021-05-10 19:32:11 +01:00
public New logo in Admin (#12768) 2021-03-18 17:27:27 +00:00
services Filtered selected prices in Portal settings 2021-05-18 20:27:20 +05:30
views Added new, simpler, linear boot process 2021-02-08 11:56:44 +00:00
web Disable CSRF on the oauth callback route 2021-05-18 20:44:21 +02:00
analytics-events.js Expanded requires of lib/common i18n and events 2021-05-03 17:14:52 +01:00
ghost-server.js Refactored urlUtils out of ghost-server 2021-05-05 14:24:59 +01:00
notify.js Refactored notify to send started + ready 2021-02-19 20:42:10 +00:00
overrides.js Moved sqlite3 override rules to db connection lib 2021-02-05 11:51:56 +00:00
update-check.js Moved i18n to shared 2021-05-04 13:03:38 +01:00