Current configuration on the wiki
Find a file
Brian Wolff 1c7889446d SECURITY: Disable <html> tag on system messages despite $wgRawHtml = true;
System messages may take parameters from untrusted sources. This
may include taking parameters from urls given by unauthenticated
users even if the wiki is a read-only wiki. Allowing <html> tags
in such a context seems like an accident waiting to happen.

Bug: T156184
Change-Id: I661f482986d319cf41da1d3e7b20a0f028a42e90
2017-03-28 21:51:44 +00:00
cache
docs RC Filters docs: Directly mention group classes 2017-03-23 21:07:38 -04:00
extensions Added a link to Developer Hub in docs/README, Sectioning minor rewording, localisation links added to extentsions/README. Other minor changes 2016-07-31 17:33:42 +00:00
images Change bug ID to Phabricator task ID 2016-02-03 20:13:10 -05:00
includes SECURITY: Disable <html> tag on system messages despite $wgRawHtml = true; 2017-03-28 21:51:44 +00:00
languages SECURITY: Disable <html> tag on system messages despite $wgRawHtml = true; 2017-03-28 21:51:44 +00:00
maintenance maintenance: Fix broken url in comment for createCommonPasswordCdb.php 2017-03-20 22:51:04 +00:00
mw-config stylelint: Drop over-ride for 'declaration-no-important' and make pass 2017-03-01 12:55:16 -08:00
resources Merge "RCFilters UI: Only show full coverage message if item isn't highlighted" 2017-03-27 22:18:01 +00:00
serialized Clean up after "Kill mbstring fallbacks" 2016-04-07 09:02:37 -04:00
skins Point skins/extension READMEs to Phabricator 2016-04-29 12:23:04 -07:00
tests SECURITY: Disable <html> tag on system messages despite $wgRawHtml = true; 2017-03-28 21:51:44 +00:00
.eslintrc.json qunit: Make eslint config pass on qunit test files 2017-02-22 11:15:40 -08:00
.gitattributes Basic support for WebP 2015-06-26 19:38:38 +00:00
.gitignore Add configuration for running etsy/phan against core 2016-12-07 20:04:01 -08:00
.gitreview Swapping defaultbranch for track 2016-10-25 00:32:10 +00:00
.mailmap Update CREDITS and .mailmap files 2017-03-13 18:29:15 +00:00
.rubocop.yml rubocop: ignore node_modules and fix a single offense 2015-07-10 12:41:47 +02:00
.stylelintrc stylelint: Drop over-ride for 'declaration-no-important' and make pass 2017-03-01 12:55:16 -08:00
.travis.yml build: Make Travis CI 'Postgres' build non-voting 2017-03-27 17:47:05 -07:00
api.php api.php: Fully spell out "constructor" 2017-02-28 20:50:31 -08:00
autoload.php Back-end of new RecentChanges page, refactoring 2017-03-11 01:42:01 +00:00
composer.json Update RemexHtml to 1.0.1 2017-03-23 02:22:03 +00:00
composer.local.json-sample Add a composer.local.json-sample 2016-01-08 20:25:38 +00:00
COPYING COPYING: Update the list of CC licenses icons used 2014-09-26 19:09:27 +00:00
CREDITS Add MusikAnimal to CREDITS 2017-03-23 02:36:56 +00:00
FAQ Documentation link changes 2016-10-07 20:32:45 +00:00
Gemfile Update tests to Selenium 3 2017-02-27 15:11:49 +01:00
Gemfile.lock Update tests to Selenium 3 2017-02-27 15:11:49 +01:00
Gruntfile.js build: karma now reports with mocha formatter 2017-03-20 19:12:18 +00:00
HISTORY ApiCreateAccount was removed in REL1_27 2017-02-21 16:48:05 +00:00
img_auth.php /*.php: Replace implicit Bugzilla bug numbers with Phab ones 2017-02-21 02:14:48 +00:00
index.php Add Localisation to the links, add the link to Localisation in Languages/Language.php 2016-09-17 01:33:37 +00:00
INSTALL Documentation link changes 2016-10-07 20:32:45 +00:00
jsduck.json Remove unused 'jquery.arrowSteps' (deprecated in 1.28) 2017-03-17 17:13:26 -07:00
load.php resourceloader: Disable ChronologyProtector to speed up wfGetLB() 2016-09-28 21:47:23 +01:00
opensearch_desc.php Warn on session access in profileinfo.php and opensearch_desc.php 2016-05-05 11:35:10 -04:00
package.json build: karma now reports with mocha formatter 2017-03-20 19:12:18 +00:00
phpcs.xml Have phpcs skip local configuration files 2016-11-22 13:13:52 -05:00
profileinfo.php Warn on session access in profileinfo.php and opensearch_desc.php 2016-05-05 11:35:10 -04:00
Rakefile Migration of browsertests* Jenkins jobs to selenium* jobs 2016-04-25 16:58:06 +02:00
README Fix typo in README 2017-01-21 03:57:22 +00:00
README.mediawiki
RELEASE-NOTES-1.29 Add support for Atikamekw 2017-03-26 20:34:13 +00:00
StartProfiler.sample Fixed class name typo in docs 2015-04-02 17:43:37 -07:00
thumb.php Replace deprecated Context::getStats() with MWServices::getStatsdDataFactory() 2017-03-17 12:07:03 +01:00
thumb_handler.php
UPGRADE Fix link to Help:Contents in UPGRADE file 2016-08-11 06:38:10 +00:00

== MediaWiki ==

MediaWiki is a free and open-source wiki software package written in PHP. It
serves as the platform for Wikipedia and the other Wikimedia projects, used
by hundreds of millions of people each month. MediaWiki is localised in over
350 languages and its reliability and robust feature set have earned it a large
and vibrant community of third-party users and developers.

MediaWiki is:

* feature-rich and extensible, both on-wiki and with hundreds of extensions;
* scalable and suitable for both small and large sites;
* simple to install, working on most hardware/software combinations; and
* available in your language.

For system requirements, installation, and upgrade details, see the files
RELEASE-NOTES, INSTALL, and UPGRADE.

* Ready to get started?
** https://www.mediawiki.org/wiki/Special:MyLanguage/Download
* Looking for the technical manual?
** https://www.mediawiki.org/wiki/Special:MyLanguage/Manual:Contents
* Seeking help from a person?
** https://www.mediawiki.org/wiki/Special:MyLanguage/Communication
* Looking to file a bug report or a feature request?
** https://bugs.mediawiki.org/
* Interested in helping out?
** https://www.mediawiki.org/wiki/Special:MyLanguage/How_to_contribute

MediaWiki is the result of global collaboration and cooperation. The CREDITS
file lists technical contributors to the project. The COPYING file explains
MediaWiki's copyright and license (GNU General Public License, version 2 or
later). Many thanks to the Wikimedia community for testing and suggestions.