aboutsummaryrefslogtreecommitdiffstats
path: root/actionpack/lib/action_controller
Commit message (Expand)AuthorAgeFilesLines
* use secure string comparisons for basic auth username / passwordAaron Patterson2016-01-221-1/+6
* Fix force_ssl.rb documentation. Close tt tag.Josef Šimánek2014-01-061-1/+1
* Remove the use of String#% when formatting durations in log messagesMichael Koziarski2013-09-301-6/+5
* Merge pull request #10478 from cainlevy/patch-1Rafael Mendonça França2013-05-061-1/+1
* Fixed test failures on 1.8.7 caused by 74e59eaFred Wu2013-03-271-1/+1
* Backport #5808Mack Earnhardt2013-03-241-6/+21
* Merge pull request #9802 from newsline/fix-broken-action-missingRafael Mendonça França2013-03-201-1/+1
* fix protocol checking in sanitization [CVE-2013-1857]Aaron Patterson2013-03-151-2/+2
* fix incorrect ^$ usage leading to XSS in sanitize_css [CVE-2013-1855]Charlie Somerville2013-03-151-3/+3
* Check for `method_missing` in public and protectedPrem Sichanugrist2013-02-241-1/+2
* There is already a Set of non-hidden action_names lying around.thedarkone2013-02-241-8/+2
* Remove warning of not used variableCarlos Antonio da Silva2013-01-171-1/+1
* Merge pull request #5288 from lest/patch-2José Valim2013-01-171-0/+2
* Accept symbols as #send_data :disposition valueElia Schito2012-11-271-1/+1
* Revert "Merge pull request #7659 from HugoLnx/template_error_no_matches_rebased"Rafael Mendonça França2012-10-311-13/+6
* Revert "Merge pull request #7797 from senny/7459_prefix_tempalte_assertion_va...Rafael Mendonça França2012-10-301-20/+20
* Merge pull request #7848 from senny/3415_assert_template_has_nil_variableRafael Mendonça França2012-10-061-3/+7
* Merge pull request #7797 from senny/7459_prefix_tempalte_assertion_variablesRafael Mendonça França2012-10-011-20/+20
* Merge pull request #7659 from HugoLnx/template_error_no_matches_rebasedRafael Mendonça França2012-09-301-6/+13
* Don't paramify ActionDispatch::Http::UploadedFile in testsTim Vandecasteele2012-09-291-1/+1
* log 404 status when ActiveRecord::RecordNotFound was raised (#7646)Yves Senn2012-09-171-1/+2
* Backport 5c51cd0: #send_file leans on Rack::Sendfile to X-Accel-Redirect the ...Jeremy Kemper2012-08-151-2/+22
* * Do not convert digest auth strings to symbols. CVE-2012-3424Aaron Patterson2012-07-261-2/+2
* Show in log correct wrapped keysDmitry Vorotilin2012-07-051-1/+2
* ActionController::Caching depends on RackDelegation and AbstractController::C...Santiago Pastorino2012-06-131-0/+3
* Revert "fix the Flash middleware loading the session on every request (very d...Rafael Mendonça França2012-06-051-0/+1
* If content_type is explicitly passed to the :head method use the value or fal...Kunal Shah2012-05-071-1/+2
* Add a role option to wrap_parameters.Nick Ragaz2012-05-041-2/+3
* fix the Flash middleware loading the session on every request (very dangerous...Will Bryant2012-04-301-1/+0
* Add note about using 303 See Other for XHR requests other than GET/POSTAndrew White2012-04-301-0/+10
* Don't convert params if the request isn't HTML - fixes #5341Andrew White2012-04-291-6/+18
* We dont need to merge in the parameters as thats all being reset by the rack ...David Heinemeier Hansson2012-03-201-1/+0
* Merge pull request #5456 from brianmario/redirect-sanitizationAaron Patterson2012-03-151-1/+1
* Remove ActionController::TestCase#rescue_action_in_public!Piotr Sarnacki2012-03-151-5/+0
* Remove usage of deprecated module.José Valim2012-03-071-1/+0
* Set the rendered_format on respond_to.José Valim2012-03-071-0/+1
* Deprecate ActionController::SessionManagementSantiago Pastorino2012-03-061-0/+5
* Always passing a respond block from to responderPrem Sichanugrist2012-03-052-12/+13
* format lookup for partials is derived from the format in which the template i...Santiago Pastorino2012-02-222-2/+2
* search private / protected methods in trunk rubyAaron Patterson2012-02-201-1/+1
* Rack body respond to each and not to joinSantiago Pastorino2012-02-141-2/+4
* Fixed force_ssl redirects to include original query paramsRyan McGeary2012-02-061-0/+1
* Clean up a bit default_response handling and cache format negotiation.José Valim2012-02-042-19/+17
* Fix override API response bug in respond_withPrem Sichanugrist2012-02-031-8/+23
* example bracket errorDamian Le Nouaille2012-01-261-1/+1
* Do not deprecate performed?José Valim2012-01-192-6/+4
* Remove duplicated constant definitionCarlos Antonio da Silva2012-01-171-3/+0
* Deprecate AC::UnknownError and AC::DoubleRenderErrorCarlos Antonio da Silva2012-01-171-2/+2
* Deprecate default_charset= at controller levelCarlos Antonio da Silva2012-01-171-2/+4
* Add some deprecations for logic being removed in 4.0Carlos Antonio da Silva2012-01-171-2/+15