aboutsummaryrefslogtreecommitdiffstats
path: root/actionpack
Commit message (Expand)AuthorAgeFilesLines
* Ruby 1.9 compat, consistent load pathsJeremy Kemper2007-10-0233-170/+193
* Fixed that render template did not honor exempt_from_layout (closes #9698) [p...David Heinemeier Hansson2007-09-304-3/+24
* Docfix (closes #9740) [chuyeow]David Heinemeier Hansson2007-09-301-5/+4
* Fixed JSON encoding to use quoted keys according to the JSON standard (closes...David Heinemeier Hansson2007-09-301-3/+3
* UpdatedDavid Heinemeier Hansson2007-09-291-1/+600
* Fixed that a response has to be available for that exact mime type for it to ...David Heinemeier Hansson2007-09-291-1/+1
* Fixed that strip_tags blows up with invalid html (closes #9730) [lifo]David Heinemeier Hansson2007-09-292-4/+9
* Ensure request is present, as well as defined. [nzkoz]Michael Koziarski2007-09-291-4/+4
* Re-enable Routing optimisation code for _url methods, add defined?(request) t...Michael Koziarski2007-09-283-17/+23
* Better error messages if you leave out the :secret option for request forgery...Rick Olson2007-09-283-46/+81
* Add missing requireMichael Koziarski2007-09-281-0/+1
* Allow ability to disable request forgery protection, disable it in test mode ...Rick Olson2007-09-2812-21/+75
* Fixed spelling errors (closes #9706) [tarmo/rmm5t]David Heinemeier Hansson2007-09-2818-30/+30
* Fixed the layout defaults (closes #9564) [lifo]David Heinemeier Hansson2007-09-288-17/+96
* Avoid calling is_missing on LoadErrors. Closes #7460.Nicholas Seckar2007-09-272-1/+3
* Reinstate the default AR.instantiate_observers to_prepare block.Jeremy Kemper2007-09-261-0/+6
* Move Railties' Dispatcher to ActionController::Dispatcher, introduce before_ ...Jeremy Kemper2007-09-264-1/+302
* Protect button_to behind protect_from_forgery (closes #9675) [lifo]David Heinemeier Hansson2007-09-252-108/+45
* Please do rememberDavid Heinemeier Hansson2007-09-251-0/+1
* Added another failing testDavid Heinemeier Hansson2007-09-251-0/+24
* Doh, forgot this fileDavid Heinemeier Hansson2007-09-251-0/+1
* Better failing testsDavid Heinemeier Hansson2007-09-253-6/+6
* Added failing tests for iphoneDavid Heinemeier Hansson2007-09-253-6/+15
* Updated iphone_with_html_response_type to fail as it uses the new register_al...David Heinemeier Hansson2007-09-241-2/+2
* Change from InvalidToken to InvalidAuthenticityToken to be more specificDavid Heinemeier Hansson2007-09-243-28/+33
* Stop rdoc from whiningDavid Heinemeier Hansson2007-09-242-8/+8
* Move rescue_action_with_handler from rescue_action to perform_action so it is...Jeremy Kemper2007-09-241-2/+2
* Include asset host in public path cache key. Clear cache between asset tag te...Jeremy Kemper2007-09-243-9/+22
* port over some of the csrf_killer README docsRick Olson2007-09-241-0/+13
* Beefed up docs a bitDavid Heinemeier Hansson2007-09-241-17/+27
* Cache computed public asset paths.Jeremy Kemper2007-09-241-16/+20
* Cache more file existence checks. Flip-flop escaping.Jeremy Kemper2007-09-241-9/+16
* Cache file existence checks and the list of all stylesheet sources. Manually ...Jeremy Kemper2007-09-241-7/+10
* The tag helper may bypass escaping.Jeremy Kemper2007-09-243-17/+32
* Cache asset ids.Jeremy Kemper2007-09-242-3/+14
* escape_once uses negative lookahead to avoid double-escaping instead of a sec...Jeremy Kemper2007-09-241-6/+1
* Optimized named routes respect AbstractRequest.relative_url_root. Closes #9612.Jeremy Kemper2007-09-233-4/+13
* Dont need all of test/unit (closes #6673) [zenspider/josh]David Heinemeier Hansson2007-09-231-1/+0
* Remove , and ; (comma and semicolon) from routing separators again. Reference...Jeremy Kemper2007-09-232-3/+3
* Fixed cache_page to use the request url instead of the routing options when p...David Heinemeier Hansson2007-09-232-8/+20
* Introduce ActionController::Base.rescue_from to declare exception-handling me...Jeremy Kemper2007-09-233-12/+91
* Rename some RequestForgeryProtection methods. The class method is now #prote...Rick Olson2007-09-238-44/+50
* move TextHelper#sanitize config options to the TextHelper module so it can be...Rick Olson2007-09-232-130/+146
* Merge csrf_killer plugin into rails. Adds RequestForgeryProtection model tha...Rick Olson2007-09-2316-22/+368
* Secure #sanitize, #strip_tags, and #strip_links helpers against xss attacks. ...Rick Olson2007-09-234-53/+423
* Test fix (closes #6911)David Heinemeier Hansson2007-09-221-1/+1
* Improve tests (closes #7240) [josh]David Heinemeier Hansson2007-09-221-0/+5
* Roll back #7578, tests failedDavid Heinemeier Hansson2007-09-222-12/+3
* Improve the error message for assert_redirected_to (closes #7337) [sandofsky]David Heinemeier Hansson2007-09-222-3/+12
* Disable the routing optimisation code when dealing with foo_url helpers. Add...Michael Koziarski2007-09-222-9/+11