Skip to content
This repository

Jan 23, 2012

  1. James Tucker

    Multipart percentage fail, round 3, the final character. Fixes string…

    …s terminated with %. See #323. Revisit for 1.5.
    authored January 22, 2012
  2. James Tucker

    Prep for 1.4.1

    authored January 22, 2012
  3. James Tucker

    Merge remote-tracking branch 'thedarkone/nested_params_key_space2'

    * thedarkone/nested_params_key_space2:
      Rack::Utils#normalize_params should be ignorant of the provided params class.
      Correctly count the key space size for nested param queries.
    authored January 22, 2012
  4. James Tucker

    Correct multipart parser skips for cases where we have data that look…

    …s partially like it's percent-hex encoded
    authored January 22, 2012

Jan 22, 2012

  1. James Tucker

    Make the multipart filename unescaping just slightly more resilient t…

    …o potential use cases, as we don't have a way to get better real world coverage yet
    authored January 22, 2012
  2. James Tucker

    Multipart parsing now accepts filenames with unescaped percentages. T…

    …his could be improved.
    authored January 22, 2012
  3. Rack::Utils#normalize_params should be ignorant of the provided param…

    …s class.
    authored January 22, 2012
  4. James Tucker

    added Rack::Response::Helpers#method_not_allowed?

    Rack::File now returns 404 during illegal directory traversal, for backward compat
    Rack::File now returns 405 for illegal methods
    Rack::Cascade now defaults to catch 405 aswell as 404, for backward compat with 1.3.x in most common use cases
    authored January 22, 2012

Jan 21, 2012

  1. James Tucker

    Merge pull request #314 from goosmurf/master

    Fix crash when Rack::Session::Cookie value does not contain "--" delimiter
    authored January 21, 2012
  2. James Tucker

    Merge pull request #324 from rkyrychuk/patch-1

    Wrong version
    authored January 21, 2012
  3. James Tucker

    Merge pull request #325 from qertoip/patch-1

    Removed incorrect fragment of comment.
    authored January 21, 2012
  4. qertoip

    Removed incorrect fragment of comment.

    authored January 21, 2012
  5. rkyrychuk

    Wrong version

    authored January 21, 2012

Jan 20, 2012

  1. Correctly count the key space size for nested param queries.

    authored January 20, 2012

Jan 18, 2012

  1. James Tucker

    Add spec for #300. Appears to pass.

    authored January 07, 2012
  2. Konstantin Haase

    Merge pull request #317 from brainopia/master

    A few stylistic changes
    authored January 18, 2012
  3. Ravil Bayramgalin

    Finish that Jose has started in 4defbe5

    I mean his work with extracting DEFAULT_OPTIONS[:key] and then
    forgetting to use it :)
    authored January 18, 2012
  4. Ravil Bayramgalin

    Replace inline usage of begin-end with parenthesis

    authored January 18, 2012
  5. Ravil Bayramgalin

    Nitpicking

    authored January 18, 2012

Jan 17, 2012

  1. Konstantin Haase

    Merge pull request #315 from gogolok/fix_typo

    fix typo
    authored January 17, 2012
  2. Robert Gogolok

    fix typo

    authored January 17, 2012

Jan 16, 2012

  1. prevent crash when session cookie value does not contain "--" delimiter

    authored January 16, 2012

Jan 13, 2012

  1. Aaron Patterson

    Merge pull request #313 from josevalim/ensure_proxy

    Rack::BodyProxy should execute block even on failures.
    authored January 13, 2012
  2. José Valim

    Rack::BodyProxy should execute block even on failures.

    In general, Rack frameworks are moving logic to close hooks in order
    to support async behavior increasing the chance an exception will
    happen on close. Most servers will actually die if there is an exception
    on close, but such exceptions can also happen in the test environment.
    In such cases, we can accidentally leave a mutex locked, a database
    connection not collected and so forth, therefore, we need to ensure
    the block is called regardless closing the body failed.
    authored January 13, 2012

Jan 12, 2012

  1. Aaron Patterson

    Merge pull request #312 from josevalim/assert_secure

    Assert the cookie is secure (there were no tests for this).
    authored January 12, 2012
  2. José Valim

    Assert the cookie is secure (there were no tests for this).

    authored January 12, 2012

Jan 07, 2012

  1. James Tucker

    Add missing spec coverage for when secrets do not match (ACHTUNG!)

    Fix Rack::Session::Cookie when old_secret or secret are not supplied.
    Always encode cookies with one of the two secret options, if provided, preferencing :secret
    Based on contribution from ciberch. Closes #304. Closes #299.
    authored January 07, 2012
  2. James Tucker

    Merge pull request #296 from jm3/patch-2

    ...except after c.
    authored January 07, 2012
  3. James Tucker

    Merge pull request #298 from hannesg/tests_should_not_depent_on_set_o…

    …rder
    
    Tests should not depent on set order
    authored January 07, 2012
  4. James Tucker

    Merge pull request #307 from laserlemon/patch-1

    Add build and dependency status images to README
    authored January 07, 2012
  5. James Tucker

    Merge pull request #306 from postmodern/master

    Require 'stringio' to fix a NameError in the BodyProxy tests.
    authored January 07, 2012
  6. James Tucker

    Merge pull request #302 from lgierth/rack-static-bug

    Don't implicitly respond with index file. Fixes #301
    authored January 07, 2012
  7. Steve Richert

    Add build and dependency status images to README

    authored January 07, 2012

Jan 04, 2012

  1. Postmodern

    Require 'stringio' to fix a NameError in the BodyProxy tests.

    authored January 04, 2012
  2. Lars Gierth

    Don't implicitly respond with index file. Fixes #301

    authored January 04, 2012
Something went wrong with that request. Please try again.