Commit Graph

23 Commits (945e2148be77d6ed6e515531ad33e033538b7b88)

Author SHA1 Message Date
CodeKevin b8518b7e26 Merge branch 'master' of https://github.com/isislab/CTFd 2015-05-03 17:26:14 -04:00
CodeKevin f63b894258 Preventing team name changes 2015-05-03 17:25:59 -04:00
Kevin Chung 44df12550a Removing extra checkbox 2015-04-19 18:39:09 -04:00
CodeKevin 5e24fba459 Closes #16 2015-04-19 04:24:48 -04:00
CodeKevin ac83c8a576 Fixing DOM XSS issues, upload issues, and usability issues 2015-03-16 16:03:58 -04:00
CodeKevin a0d3a1e640 Fixing XSS issue 2015-03-15 14:42:31 -04:00
CodeKevin 8334c15f98 Adding favicon 2015-03-15 04:19:58 -04:00
CodeKevin d09d0a9678 Closes #21 2015-03-15 04:18:39 -04:00
CodeKevin f2484c519a Closes #15 (Thanks mwinstead3790), various fixes 2015-03-14 23:01:21 -04:00
Kevin Chung b4dd54d36a Adding score and place to team page, fixing create_app 2015-03-08 13:39:22 -04:00
CodeKevin 81ea0f8d52 Send email tested and improved 2015-01-24 20:04:58 -05:00
CodeKevin 29071a6d5c Cleaning out some leftover text 2015-01-24 19:41:34 -05:00
CodeKevin 52becebbdb Adding team emailing
Untested since I don't have a mail server on my dev environment
2015-01-24 19:40:52 -05:00
CodeKevin b1c09e832e Listing DO hosts
Swapped out API wrappers
2015-01-24 03:50:45 -05:00
CodeKevin 6b81ac4577 Merging local changes 2015-01-24 00:51:32 -05:00
CodeKevin 7642aeb1e5 Starting DO integration 2015-01-24 00:48:41 -05:00
Kevin Chung 8ec79d9337 Removing hits calculation for issue #12 2015-01-18 20:25:05 -05:00
Kevin Chung 3b93a40f2b Closes #9 2015-01-18 20:07:02 -05:00
Kevin Chung 4a128e83dc Adding user deletion from admin panel 2015-01-18 19:17:57 -05:00
Blake Burkhart 2972cf506d Optionally allow unregistered users to view challenges
Add a Config entry `view_challenges_unregistered` to indicate whether
unregistered users can view challenges. Add the setting to the admin config
page.

Add can_view_challenges() to utils to test if a user is either authed, or the
configuration allow unauthenticated users to view the challenges.

Return a HTTP 401 Unauthorized error when the /chals/solves API can't provide
results for an unauthenticated user. This is needed because the client side
code in `chalboard.js` doesn't know if it's logged in or not and requests this
anyway. (And AJAX doesn't handle redirects very well.) Alternately the client
could actually know if they're logged in and not make needless API calls.

When an unregistered user attempts to submit a flag, it will also fail. The
user will be redirected to a login page.
2015-01-07 22:11:31 -06:00
Kevin Chung ce4766003a Admin teams javascript removes whitespace before opening modal 2015-01-07 21:12:52 -05:00
Kevin Chung a1f30547d2 Admins can edit users from the admin interface 2015-01-07 21:03:37 -05:00
CodeKevin 376c90189b CTFd code push 2015-01-01 00:45:25 -05:00