1. 26 Jul, 2018 1 commit
  2. 25 Jul, 2018 2 commits
  3. 24 Jul, 2018 1 commit
  4. 19 Jul, 2018 5 commits
  5. 18 Jul, 2018 3 commits
  6. 17 Jul, 2018 1 commit
  7. 16 Jul, 2018 1 commit
  8. 12 Jul, 2018 2 commits
  9. 10 Jul, 2018 1 commit
  10. 02 Jul, 2018 2 commits
    • azul's avatar
      fix: return 404 if files for assets are missing · ae2c35c1
      azul authored
      Removing files from the server should result in 404 responses
      rather than 500 error codes.
      ae2c35c1
    • azul's avatar
      fix: prevent 500 on invalid format urls · b83bc9bb
      azul authored
      during scans we often see requests for
        /test.xml
      and similar.
      
      Since a test group exists this request will trigger the Group::HomeController
      and attempt to render an xml version.
      This leads to a  template not found exception resulting in a 500 response.
      
      Instead we now only accept html requests to the context_urls (the ones without a prefix).
      This should deal with most of these requests.
      
      We might want to add format constraints to all routes
       - this would result in blocking requests
      b83bc9bb
  11. 20 Jun, 2018 8 commits
  12. 19 Jun, 2018 2 commits
    • azul's avatar
      pundit: clean up group and membership policy a bit · fc8a4302
      azul authored
      We still have a bunch of may_create_... functions.
      But it is getting better.
      
      Adds a @membership instance var to all Group::BaseController subclasses.
      This holds either the current_users membership record
      or a new_record that serves as a null object.
      
      Note that in order to check if the current_user actually is a member
      you need to check @membership.persisted?
      - the fact that @membership is present is not enough.
      fc8a4302
    • dgt's avatar
      Small changes to request validation · 477ac6d5
      dgt authored
      all other TODOS / FIXMEs handled
      477ac6d5
  13. 18 Jun, 2018 7 commits
  14. 15 Jun, 2018 1 commit
  15. 13 Jun, 2018 1 commit
  16. 12 Jun, 2018 2 commits