| Commit message (Expand) | Author | Age | Files | Lines |
* | error_messages_for and friends also work with local variables. Closes #9699. | Jeremy Kemper | 2007-10-07 | 2 | -5/+21 |
* | Fix url_for, redirect_to, etc. with :controller => :symbol instead of 'string... | Jeremy Kemper | 2007-10-07 | 2 | -1/+5 |
* | String#to_xs uses the fast_xs extension if available for Builder speedup. | Jeremy Kemper | 2007-10-07 | 1 | -0/+1 |
* | BlankSlate -> BasicObject | Jeremy Kemper | 2007-10-07 | 1 | -1/+1 |
* | Use StringIO and Tempfile subclasses instead of defining singleton methods on... | Jeremy Kemper | 2007-10-06 | 1 | -47/+59 |
* | Rewind stdin if possible after multipart parsing. | Jeremy Kemper | 2007-10-06 | 1 | -0/+1 |
* | Don't generate strings to log unless they'll actually get logged. | Jeremy Kemper | 2007-10-06 | 1 | -1/+1 |
* | Bump versions for 1.2.4 release. | Jeremy Kemper | 2007-10-05 | 1 | -2/+2 |
* | Move #query_string to AbstractRequest | Jeremy Kemper | 2007-10-03 | 2 | -3/+10 |
* | rescue LoadError if memcache isn't available while loading the MemCache fragm... | Rick Olson | 2007-10-03 | 1 | -0/+4 |
* | Use #require_library_or_gem to load the memcache library for the MemCache ses... | Rick Olson | 2007-10-03 | 2 | -1/+2 |
* | Move ActionController::Routing.optimise_named_routes to ActionController::Bas... | Rick Olson | 2007-10-03 | 3 | -14/+14 |
* | Merge session fixation fixes from stable | Michael Koziarski | 2007-10-02 | 1 | -4/+12 |
* | Ruby 1.9 compat, consistent load paths | Jeremy Kemper | 2007-10-02 | 24 | -128/+148 |
* | Fixed that render template did not honor exempt_from_layout (closes #9698) [p... | David Heinemeier Hansson | 2007-09-30 | 1 | -3/+3 |
* | Fixed that a response has to be available for that exact mime type for it to ... | David Heinemeier Hansson | 2007-09-29 | 1 | -1/+1 |
* | Fixed that strip_tags blows up with invalid html (closes #9730) [lifo] | David Heinemeier Hansson | 2007-09-29 | 1 | -4/+6 |
* | Ensure request is present, as well as defined. [nzkoz] | Michael Koziarski | 2007-09-29 | 1 | -4/+4 |
* | Re-enable Routing optimisation code for _url methods, add defined?(request) t... | Michael Koziarski | 2007-09-28 | 2 | -9/+5 |
* | Better error messages if you leave out the :secret option for request forgery... | Rick Olson | 2007-09-28 | 1 | -1/+5 |
* | Allow ability to disable request forgery protection, disable it in test mode ... | Rick Olson | 2007-09-28 | 5 | -9/+20 |
* | Fixed spelling errors (closes #9706) [tarmo/rmm5t] | David Heinemeier Hansson | 2007-09-28 | 10 | -11/+11 |
* | Fixed the layout defaults (closes #9564) [lifo] | David Heinemeier Hansson | 2007-09-28 | 1 | -14/+19 |
* | Avoid calling is_missing on LoadErrors. Closes #7460. | Nicholas Seckar | 2007-09-27 | 1 | -1/+1 |
* | Reinstate the default AR.instantiate_observers to_prepare block. | Jeremy Kemper | 2007-09-26 | 1 | -0/+6 |
* | Move Railties' Dispatcher to ActionController::Dispatcher, introduce before_ ... | Jeremy Kemper | 2007-09-26 | 1 | -0/+183 |
* | Protect button_to behind protect_from_forgery (closes #9675) [lifo] | David Heinemeier Hansson | 2007-09-25 | 1 | -2/+7 |
* | Added failing tests for iphone | David Heinemeier Hansson | 2007-09-25 | 1 | -4/+11 |
* | Change from InvalidToken to InvalidAuthenticityToken to be more specific | David Heinemeier Hansson | 2007-09-24 | 2 | -16/+21 |
* | Stop rdoc from whining | David Heinemeier Hansson | 2007-09-24 | 2 | -8/+8 |
* | Move rescue_action_with_handler from rescue_action to perform_action so it is... | Jeremy Kemper | 2007-09-24 | 1 | -2/+2 |
* | Include asset host in public path cache key. Clear cache between asset tag te... | Jeremy Kemper | 2007-09-24 | 2 | -9/+17 |
* | port over some of the csrf_killer README docs | Rick Olson | 2007-09-24 | 1 | -0/+13 |
* | Beefed up docs a bit | David Heinemeier Hansson | 2007-09-24 | 1 | -17/+27 |
* | Cache computed public asset paths. | Jeremy Kemper | 2007-09-24 | 1 | -16/+20 |
* | Cache more file existence checks. Flip-flop escaping. | Jeremy Kemper | 2007-09-24 | 1 | -9/+16 |
* | Cache file existence checks and the list of all stylesheet sources. Manually ... | Jeremy Kemper | 2007-09-24 | 1 | -7/+10 |
* | The tag helper may bypass escaping. | Jeremy Kemper | 2007-09-24 | 1 | -17/+26 |
* | Cache asset ids. | Jeremy Kemper | 2007-09-24 | 1 | -3/+12 |
* | escape_once uses negative lookahead to avoid double-escaping instead of a sec... | Jeremy Kemper | 2007-09-24 | 1 | -6/+1 |
* | Optimized named routes respect AbstractRequest.relative_url_root. Closes #9612. | Jeremy Kemper | 2007-09-23 | 1 | -0/+2 |
* | Dont need all of test/unit (closes #6673) [zenspider/josh] | David Heinemeier Hansson | 2007-09-23 | 1 | -1/+0 |
* | Remove , and ; (comma and semicolon) from routing separators again. Reference... | Jeremy Kemper | 2007-09-23 | 1 | -2/+2 |
* | Fixed cache_page to use the request url instead of the routing options when p... | David Heinemeier Hansson | 2007-09-23 | 1 | -8/+11 |
* | Introduce ActionController::Base.rescue_from to declare exception-handling me... | Jeremy Kemper | 2007-09-23 | 1 | -2/+51 |
* | Rename some RequestForgeryProtection methods. The class method is now #prote... | Rick Olson | 2007-09-23 | 5 | -24/+35 |
* | move TextHelper#sanitize config options to the TextHelper module so it can be... | Rick Olson | 2007-09-23 | 2 | -130/+146 |
* | Merge csrf_killer plugin into rails. Adds RequestForgeryProtection model tha... | Rick Olson | 2007-09-23 | 9 | -22/+127 |
* | Secure #sanitize, #strip_tags, and #strip_links helpers against xss attacks. ... | Rick Olson | 2007-09-23 | 2 | -38/+227 |
* | Roll back #7578, tests failed | David Heinemeier Hansson | 2007-09-22 | 1 | -2/+3 |