tailscale/client/web
Chris Palmer b62a3fc895
client/web: keep redirects on-site (#10525)
Ensure we don't create Location: header URLs that have leading //, which is a
schema-less reference to arbitrary 3rd-party sites. That is, //example.com/foo
redirects off-site, while /example.com/foo is an on-site path URL.

Fixes tailscale/corp#16268

Signed-off-by: Chris Palmer <cpalmer@tailscale.com>
2023-12-13 14:28:50 -08:00
..
build client/web: precompress assets 2023-12-07 20:57:31 -05:00
src client/web: fix redirect logic when accessing login client over TS IP 2023-12-13 12:22:06 -05:00
assets.go client/web: only add cache header for assets 2023-12-12 15:51:22 -05:00
auth.go client/web: use prefs.ControlURLOrDefault from controlSupportsCheckMode 2023-12-12 11:03:58 -05:00
index.html client/web: use CSP hash for inline javascript 2023-12-11 20:22:56 -08:00
package.json client/web: add confirmation dialogs 2023-12-08 19:31:21 -05:00
qnap.go client/web: add readonly/manage toggle 2023-11-10 15:01:34 -05:00
styles.json client/web: adjust colors and some UI margins 2023-12-01 15:41:57 -05:00
synology.go client/web: add readonly/manage toggle 2023-11-10 15:01:34 -05:00
tailwind.config.js client/web: adjust colors and some UI margins 2023-12-01 15:41:57 -05:00
tsconfig.json client/web: add debug mode for web client ui updates 2023-09-28 15:45:33 -04:00
vite.config.ts client/web: fix hotreload proxy 2023-11-06 16:31:30 -05:00
web.go client/web: keep redirects on-site (#10525) 2023-12-13 14:28:50 -08:00
web_test.go client/web: keep redirects on-site (#10525) 2023-12-13 14:28:50 -08:00
yarn.lock client/web: add confirmation dialogs 2023-12-08 19:31:21 -05:00