1
0
Fork 0
mirror of https://github.com/rails/rails.git synced 2022-11-09 12:12:34 -05:00
rails--rails/actionpack/test/controller
Greg Campbell 4003a5bd76 Address CVE-2014-4671 (JSONP Flash exploit)
Adds a comment before JSONP callbacks. See
http://miki.it/blog/2014/7/8/abusing-jsonp-with-rosetta-flash/ for more
details on the exploit in question.
2014-07-09 11:37:19 -07:00
..
controller_fixtures
mime Address CVE-2014-4671 (JSONP Flash exploit) 2014-07-09 11:37:19 -07:00
new_base Prevent state leak. 2014-06-05 18:34:39 -07:00
parameters Merge pull request #15933 from rafael/master 2014-06-27 18:16:52 -03:00
request
action_pack_assertions_test.rb
assert_select_test.rb Restore test deliveries for ActionMailer. 2014-06-07 00:18:50 +08:00
base_test.rb
caching_test.rb Add controller and action name to the instrumentation payload 2014-05-10 09:35:29 +00:00
content_type_test.rb Add with_default_charset helper. 2014-05-28 21:17:16 +08:00
default_url_options_with_before_action_test.rb
filters_test.rb Deprecate all *_filter callbacks in favor of *_action callbacks 2014-05-27 19:10:14 -03:00
flash_hash_test.rb
flash_test.rb
force_ssl_test.rb Remove tests method for test cases when controller can be inferred. 2014-05-03 23:55:23 -07:00
helper_test.rb
http_basic_authentication_test.rb
http_digest_authentication_test.rb
http_token_authentication_test.rb Improve token_and_options regex and test 2014-07-01 13:08:22 -07:00
integration_test.rb fixes stack level too deep exception on action named 'status' returning 'head :ok' 2014-05-15 21:14:46 +02:00
live_stream_test.rb Handle client disconnect during live streaming 2014-06-08 07:21:14 +09:30
localized_templates_test.rb Move I18n.locale setting into setup and teardown. 2014-05-28 21:50:30 +08:00
log_subscriber_test.rb
output_escaping_test.rb
params_wrapper_test.rb Clear inflections after test. 2014-05-28 23:33:10 +08:00
permitted_params_test.rb
redirect_test.rb
render_js_test.rb
render_json_test.rb Address CVE-2014-4671 (JSONP Flash exploit) 2014-07-09 11:37:19 -07:00
render_other_test.rb Add and remove renderer inside the test to prevent leak. 2014-05-28 22:24:22 +08:00
render_test.rb Remove redundant code. 2014-06-05 18:34:39 -07:00
render_xml_test.rb
request_forgery_protection_test.rb Avoid hardcoded value in teardown. 2014-05-28 22:35:48 +08:00
required_params_test.rb Merge pull request #15692 from sromano/falseClass 2014-06-14 06:14:19 +09:30
rescue_test.rb
resources_test.rb
routing_test.rb remove warnings 2014-06-12 00:27:58 +05:30
runner_test.rb
selector_test.rb
send_file_test.rb Prevent state leak. 2014-06-05 18:34:39 -07:00
show_exceptions_test.rb
streaming_test.rb
test_case_test.rb Remove symbolized_path_parameters. 2014-07-02 16:05:55 -07:00
url_for_integration_test.rb
url_for_test.rb use Ruby for mocking 2014-06-12 09:19:59 -07:00
url_rewriter_test.rb
webservice_test.rb