Commit Graph

74 Commits

Author SHA1 Message Date
fb17ef58f1 Fix crash on /timings paste (#55) (#56) 2022-07-27 21:25:58 -05:00
aba21aaf49 Fix ClickEvents on Signs bypassing permissions (#49) 2022-07-13 14:41:31 -05:00
dcf6dab4ee Fix container click patch (#45) 2022-07-12 11:18:30 -05:00
cb464a0b3a Removes patch that broke container clicking 2022-07-11 15:31:22 -06:00
71804a2e65 Validate block entity tag query positions (#42) 2022-07-11 15:15:03 -05:00
611e77e503 Add scissors config, command & disable command books (1.17.1) (#39)
* Add Scissors configuration file & command

* Disable running commands in books by default
2022-07-10 10:46:47 -05:00
3b8ad1a45d Improve invalid container event patch (#36) 2022-07-10 01:07:55 -05:00
c2b2427622 Patch 'sploits (1.17.1) (#33)
* Prevent invalid container events

* Do not attempt to cast items to recipes
2022-07-09 21:21:35 -05:00
a877b648d5 Fixes attributes being wrongfully removed due to a previous patch 2022-07-08 15:39:05 -06:00
c4afa459b5 Add spectator teleport event (#26) 2022-07-05 08:31:51 -06:00
2907ef1436 Add MasterBlockFireEvent 2022-07-04 22:26:04 +01:00
7885894176 Update CI link 2022-06-23 00:16:11 -05:00
106edf19b7 Prevent crash paintings and similar entity OOB exploits 2022-05-17 07:01:13 +01:00
236e8a95a3 Don't log invalid teams to console 2022-05-17 06:00:19 +01:00
9e244f52c9 Optimize getTagSize method in NbtUtility (#15)
The getAsString method which was used before uses StringTagVisitor,
which takes way too long.
2022-05-02 17:39:35 -06:00
61fd911106 Account for large items inside containers & add more methods to NbtUtility (#14) 2022-05-01 02:37:23 -06:00
6f32742d79 Fix a few of my patches being formatted incorrectly & fix the Minecart/Boat lag/crash exploit (#13)
* Fix a few of my patches being formatted incorrectly

* Limit amount of vehicle collision checks to 3 and discard vehicles if they collide with more than 15 other entities
2022-04-28 01:55:02 -06:00
dc1a5399f7 Futureproof the auto updater 2022-04-22 03:26:08 -05:00
39916e2102 Fix negative death times 2022-04-19 11:56:30 +01:00
c2618f2522 Reset large tags (#11) 2022-04-18 17:20:08 -06:00
d120903a36 Get branch for version checking automatically 2022-04-18 17:23:52 -05:00
5be5c364cd Update Paper 2022-04-14 20:07:20 -05:00
42ce42b668 Fixes creative-killing potion effects and certain potion effect overflows 2022-04-11 13:38:34 -06:00
a9cc494a94 Backport patch 888 from the regular Paper 2022-04-10 15:58:40 -06:00
d4a73a9b3f Limit ListTags to 1024 elements (#9)
* Limit ListTags to 1024 elements

* a
2022-04-09 18:06:20 -06:00
ecfd11a180 Don't query NBT from players in the nbt text component 2022-04-09 13:02:56 -06:00
646f5e6002 Prevent non-living entities from being spawned by spawners (#7) 2022-04-04 02:39:28 -06:00
6760ad5417 Properly renames patch #19 to stop it from renaming itself 2022-04-04 02:13:12 -06:00
6950f39d8c Prevent attributes with invalid namespaces from being applied to CraftMetaItems 2022-03-30 18:24:02 -06:00
8fdf4dce39 Validate String UUIDs during the CompoundTag -> GameProfile conversion process 2022-03-30 02:04:27 -06:00
4cecc52099 Reject oversized components from updating + removes unnecessary imports from dev-imports.txt 2022-03-28 17:13:43 -06:00
50e5b29c3d Merge pull request #6 from AtlasMediaGroup/FS-176
block excessive nbt that kicks players
2022-03-28 17:30:11 -04:00
31aad362c1 prepare for pr + fix typo 2022-03-28 17:24:47 -04:00
77cc5f291f Better handling of invalid JSON components
This commit has some behavioral changes!

An issue regarding the treatment of invalid JSON components was raised this morning. This commit changes the behavior for many things using the component system to instead replace the invalid JSON with text saying "** Invalid JSON Component **". Some things will not do this (e.g. the conversion process).

Here's a list of things that are affected by this change:
- Hover event components (specifically, the show_entity action)
- NBT components
- Entity names
- Beacons
- Enchantment tables
- Scoreboard save data loading
2022-03-28 15:17:49 -06:00
dbfbd9bca9 patch server side chunkbans 2022-03-28 17:07:28 -04:00
83cbb45e49 Attempt to fix security warnings 2022-03-26 23:25:45 -05:00
a9ff8bbf56 This time it really works, trust me 2022-03-26 23:03:57 -05:00
b633a0b588 Force the exception so we do use Git 2022-03-26 22:34:10 -05:00
c50ed524ed Don't rely on Jenkins / Paper API 2022-03-26 22:13:07 -05:00
5ecc13f8e7 Create 0017-Change-version-fetcher-to-AMG.patch 2022-03-26 22:00:15 -05:00
de72c29550 Merge pull request #5 from LunaWasFlaggedAgain/main
Do not log invalid items in HoverEvent and ItemFrame
2022-03-22 03:59:58 -05:00
d929190ea2 I'm fucking retarded 2022-03-20 11:40:17 -06:00
0afb6fef8d Merge branch 'AtlasMediaGroup:main' into main 2022-03-20 13:43:40 -03:00
330a8ac936 t 2022-03-20 13:43:35 -03:00
dcef1afe08 A better solution
Realized what they are doing. Will rename commit later
2022-03-20 08:38:11 -06:00
72b2109450 Validate coordinates before attempting to get block entities when handling Creative Inventory packets 2022-03-20 07:49:57 -06:00
57b96d20af Do not log invalid items in HoverEvent and ItemFrame 2022-03-20 09:31:54 -03:00
ca57c181e4 Fixes crash exploit related to out of bounds Axolotl variants 2022-03-20 04:41:32 -06:00
529a33f1be Even more ResourceLocation validation and log spam fixes 2022-03-20 04:21:47 -06:00
2b36e3b591 Even more resource location validation 2022-03-14 00:52:57 -06:00