BookStack/resources
Dan Brown e765e61854
Addressed user detail harvesting issue
Altered access & usage of the /search/users/select endpoint with the
following changes:
- Removed searching of email address to prevent email detail discovery
  via hunting via search queries.
- Required the user to be logged in and have permission to manage users
  or manage permissions on items in some way.
- Removed the user migration option on user delete unless they have
  permission to manage users.

For #3108
Reported in https://huntr.dev/bounties/135f2d7d-ab0b-4351-99b9-889efac46fca/
Reported by @haxatron
2021-12-14 18:47:22 +00:00
..
icons Started build of tag view 2021-11-06 16:30:20 +00:00
js Added an env configurable file upload size limit 2021-11-14 22:03:22 +00:00
lang New Crowdin updates (#3076) 2021-11-30 14:24:35 +00:00
sass Changed homepage card header links to be bottom-card-links 2021-11-23 18:18:49 +00:00
views Addressed user detail harvesting issue 2021-12-14 18:47:22 +00:00