Skip to content
This repository

HTTPS clone URL

Subversion checkout URL

You can clone with HTTPS or Subversion.

Download ZIP

Feb 20, 2012

  1. Aaron Patterson

    protected methods return false unless a second argument is passed to

    respond_to?.  This only impacts trunk ruby, but will be included in Ruby
    2.0.
    
      https://bugs.ruby-lang.org/projects/ruby-trunk/repository/revisions/34580
    authored

Feb 11, 2012

  1. Joshua Peek

    Sprockets 2.3.1

    josh authored
  2. Joshua Peek

    rbx 2 isn't on travis anymore

    josh authored
  3. Joshua Peek

    Changelog for 2.3.1

    josh authored
  4. Joshua Peek

    Add bytesize to manifest

    josh authored
  5. Joshua Peek

    Add Asset#bytesize as an alias for length

    josh authored
  6. Joshua Peek

    Merge pull request #292 from jfirebaugh/traversal

    Check for directory traversal after unescaping
    josh authored
  7. Joshua Peek

    Merge pull request #288 from kevmoo/patch-1

    2.3 is released
    josh authored

Feb 09, 2012

  1. John Firebaugh

    Check for directory traversal after unescaping

    The `forbidden_request?` check could be trivially bypassed
    by percent encoding .. as %2e%2e.
    
    After auditing Sprockets and Hike and fuzzing a simple
    server, I don't believe this is exploitable. However,
    better safe than sorry/defense in depth/etc.
    jfirebaugh authored

Jan 31, 2012

  1. Kevin Moore

    2.3 is released

    kevmoo authored

Jan 16, 2012

  1. Joshua Peek

    Sprockets 2.3.0

    josh authored

Jan 13, 2012

  1. Joshua Peek

    Sprockets 2.3.0.beta

    josh authored

Jan 10, 2012

  1. Joshua Peek

    Add sass note to changelog

    josh authored
  2. Joshua Peek

    Merge pull request #268 from sstephenson/sass

    Sass
    josh authored
  3. Joshua Peek

    Update 2.2 changelog

    josh authored
  4. Joshua Peek

    Lazy require importer

    josh authored
  5. Joshua Peek

    Extend existing sass filesystem import to track dependencies

    josh authored
  6. Joshua Peek

    Merge branch 'master' into sass

    josh authored
  7. Joshua Peek

    Sprockets 2.2.0

    josh authored
  8. Joshua Peek

    Disable test for CI

    josh authored
  9. Joshua Peek

    Only define mime type encodings for 1.9

    josh authored
  10. Joshua Peek

    Fix unused data var warning

    josh authored
  11. Joshua Peek

    Merge pull request #273 from botandrose/automatic_binary_encoding

    force binary encoding for assets with mime types that begin with "image/", "audio/", or "video/".
    josh authored
  12. Joshua Peek

    Merge pull request #271 from KODerFunk/patch-1

    Fix raise text in lib/sprockets/directive_processor.rb
    josh authored
  13. Joshua Peek

    Add option for number of assets to keep

    Fixes #276
    josh authored

Dec 29, 2011

  1. Micah Geisel

    force binary encoding for assets with mime types that begin with "ima…

    …ge/", "audio/", or "video/".
    botandrose authored

Dec 28, 2011

  1. Dmitry Karpunin

    Update lib/sprockets/directive_processor.rb

    KODerFunk authored

Dec 21, 2011

  1. Joshua Peek

    Prepend sass/ to key

    josh authored
  2. Joshua Peek

    Add cache store

    josh authored
  3. Joshua Peek

    Merge branch 'master' into sass

    josh authored
  4. Joshua Peek

    Some docs

    josh authored

Dec 20, 2011

  1. Joshua Peek

    Change default rake task log level to info

    josh authored

Dec 19, 2011

  1. Joshua Peek

    Revert version change

    josh authored
  2. Joshua Peek

    Fix relative nested imports

    josh authored
  3. Joshua Peek

    Merge branch 'master' into sass

    josh authored
Something went wrong with that request. Please try again.