Skip to content
This repository

HTTPS clone URL

Subversion checkout URL

You can clone with HTTPS or Subversion.

Download ZIP
  • 26 commits
  • 20 files changed
  • 0 comments
  • 6 contributors
Jan 13, 2012
Joshua Peek josh Sprockets 2.3.0.beta bcca718
Jan 16, 2012
Joshua Peek josh Sprockets 2.3.0 919bda1
Jan 30, 2012
Kevin Moore kevmoo 2.3 is released 3dac863
Feb 08, 2012
John Firebaugh jfirebaugh Check for directory traversal after unescaping
The `forbidden_request?` check could be trivially bypassed
by percent encoding .. as %2e%2e.

After auditing Sprockets and Hike and fuzzing a simple
server, I don't believe this is exploitable. However,
better safe than sorry/defense in depth/etc.
34a9a21
Feb 11, 2012
Joshua Peek josh Merge pull request #288 from kevmoo/patch-1
2.3 is released
86e031d
Joshua Peek josh Merge pull request #292 from jfirebaugh/traversal
Check for directory traversal after unescaping
13f616a
Joshua Peek josh Add Asset#bytesize as an alias for length 4f611d2
Joshua Peek josh Add bytesize to manifest 7c59834
Joshua Peek josh Changelog for 2.3.1 0edbb37
Joshua Peek josh rbx 2 isn't on travis anymore 01b8cca
Joshua Peek josh Sprockets 2.3.1 98447c9
Feb 14, 2012
Elia Schito elia Add `stub` directive documentation in README
Ported from the method description added in 95ae9b7.
d4c60a1
Feb 20, 2012
Aaron Patterson tenderlove protected methods return false unless a second argument is passed to
respond_to?.  This only impacts trunk ruby, but will be included in Ruby
2.0.

  https://bugs.ruby-lang.org/projects/ruby-trunk/repository/revisions/34580
6ac4248
Joshua Peek josh Merge pull request #297 from tenderlove/master
Ruby 2.0 will return false for respond_to? on protected methods
142733b
Feb 24, 2012
Nick Muerdter GUI Fix Context#logical_path when path contains periods.
Without this, the `logical_path` only grabbed up up until the first period encountered. So if you happened to have a file like `jquery.mobile-1.0.1/jquery.mobile-1.0.1.js` it's logical path was being interpreted as just `jquery` instead of `jquery.mobile-1.0.1/jquery.mobile-1.0.1`.
abe94ac
Feb 26, 2012
Elia Schito elia Add missing space in README ce76059
Mar 26, 2012
Joshua Peek josh Merge pull request #299 from GUI/master
Fix Context#logical_path when path contains periods
d3fcd85
Joshua Peek josh Merge pull request #293 from elia/patch-1
Add `stub` directive documentation in README
e61c3d4
Joshua Peek josh Add changelog for 2.3.2 0c7eec9
Joshua Peek josh Sprockets 2.3.2 1af3d6e
Joshua Peek josh sass has issues on ruby 2 1ce75e1
Joshua Peek josh Allow global processors to be registered 8073f6c
Joshua Peek josh Allow global paths to be registered 246f958
Joshua Peek josh Add registries to changelog 4fa453a
Mar 27, 2012
Joshua Peek josh Prepare 2.4 a1546ef
Joshua Peek josh Sprockets 2.4.0 37e0b4f
Something went wrong with that request. Please try again.