v3.14.0
Changelog
All notable changes to this project will be documented in this file. See standard-version for commit guidelines.
π 3.14.0 (2022-06-28)
β¨ Features
- web-security: web security basic notes (f6fc104)
π Bug Fixes
β¨ Today I Learned
- css-at rule:
[@container](https://github.com/container)
style query (82ab6de) - css-layout:
position
impact on display items (46c18fd) - css-media: media queries level 4 syntax (c0cfb8f)
- css-normalize: modern normalize styles (05d81c8)
- css-pseudo: pseudo element click area (8111633)
- css-selector:
:has()
selector (6d757c3) - css-shapes: bars line shape (303360b)
- css-text: text wrapping and word breaking (b5b07f4)
- css: 3D perspective transform parallax effect (e3e3cee)
- js-comparison: loose comparison algorithm (851f245)
- js-CORS:
GET
cross origin request (005c548) - js-iframe:
<iframe>
sandbox
security attribute (9c7ce95) - js-performance: lazy loading scripts (497d83c)
- js: AJAX cross origin request (81afa9c)
- network-CORS: cross origin resource sharing (78324a9)
- network-HTTP: HTTP/3 details (067b80f)
- network-security: HTTP strict transport security (e06e22b)
- network-security: HTTPS nginx configuration (45ae023)
- react-hooks:
useId
internal (a161c65) - react-SSR: React SSR guide (1e022a8)
- react-SSR: React SSR hydration warning (3ae3026)
- security-CSP: content security policy (bc2aa70)
- security-CSP: content security policy configuration (3d8bc03)
- security-CSRF: client side local long-lifetime cookie attack (605351f)
- security-CSRF: CSRF attack methods (64679b5)
- security-CSRF: CSRF protection (4d3c837)
- security-CSRF: CSRF protection (29d8886)
- security-CSRF: CSRF sensitive action protection (514971e)
- security-CSRF: http request protection (7d3881e)
- security-CSRF: salt token protection (db6c942)
- security-DDoS: distributed denial of service attack and (fb905dd)
- security-DoS: denial of service protection (032c2d6)
- security-DoS: DoS protection (95bf1eb)
- security-HTTP: HTTP header injection attack (ca1d82e)
- security-HTTP: secure HTTP headers (a426e1a)
- security-injection: command injection (608b887)
- security-injection: file upload injection (a2ad111)
- security-injection: file upload protection (f8c7709)
- security-injection: HTTP header injection protection (6c0b4a5)
- security-injection: remote command injection (4883dac)
- security-injection: SQL injection protection (c8becae)
- security-injection: user input validation (ac3cb33)
- security-model: threat and risk analysis model (9c98702)
- security-network: web storage same origin policy (7eb4b2b)
- security-origin: same origin policy (f500a51)
- security-password: password management (792f9cc)
- security-password: password security (765f19c)
- security-principles: security principles (66c79d0)
- security-programming: defensive programming (3fa8499)
- security-session: session fixation protection (5b51406)
- security-session: session hijacking protection (ef5edc0)
- security-session: session protection (b8f0ff0)
- security-vulnerability: security vulnerability (5974c67)
- security-XML: XML bombs and external entities protection (b23e132)
- security-XSS: consistent encode protection (e61e790)
- security-XSS: DOM XSS injection (9ef5f8d)
- security-XSS: HTML5 XSS attack tags (41d6d33)
- security-XSS: secure encode protection (0e74724)
- security-XSS: XSS attack HTML tags (6882e80)
- security-XSS: XSS attack methods (f656767)
- security-XSS: XSS attack surface (8995e7e)
- security-XSS: XSS output protection (6837a87)
- security:
Referer
header security (ea58961) - security: authentication protection (3997f36)
- security: authentication vulnerability (40004cd)
- security: click jacking
X-Frame-Options
protection (ab24484) - security: click jacking protection (6769a96)
- security: directory traversal protection (d64d9f0)
- security: file upload protection (581bea1)
- security: frame busting attack (0fa2a8f)
- security: information leakage protection (2f060f7)
- security: information leakage protection (20e52f0)
- security: malicious redirect protection (d6276c8)
- security: malicious redirect protection (69e2847)
- security: MetaSploit penetration testing framework (abe5f0a)
- security: open source security state of 2022 (79b6c8b)
- security: remove sensitive data in URL query and
Referer
(bbe7c7f) - security: same origin policy (b91a4ae)
- security: secure HTTP query and
Referer
header (c59a8f4) - security: software security assurance (94b4651)
- security: supply chain protection (e1aa450)
- security: third-party URL redirect protection (81b156d)
- security: UI jacking protection (28688e9)
- security: user enumeration protection (e52e653)
- security: user information protection (7420acf)
- security: user input check (dd12f21)
- security: web security cheat sheet (6ac6b4d)
- security: XSS and CSRF protection (bcd05d1)
- web-cookie: cookie data range (81f750e)
- web-library: CRDT library (3d08768)
- web-library: development CLI tools (56620fd)
- web-library: hooks library (a8a7312)
- web-library: icons and avatars library (4ec208c)
- web-library: ORM tool (6a5b376)
- web-library: penetration testing framework (94acaec)
- web-library: PSD parser (ee14288)
- web-library: React teleport component (dd2a77e)
- web-library: React tree component (8532579)
- web-library: responsive email framework (b2848d0)
- web-library: select library (ad905a6)
- web-library: Shopify hydrogen React framework (3217500)
- web-library: Tailwind-in-JS solution (a463f6c)
- web-library: Telegram bot framework (3fdcbb6)
- web-library: timeline parser and editor (f495477)
- web-library: tiny thread pool (3e3ec8b)
- web-logging: logging information (1ac846c)
- web-logging: logging type (316d811)