discourse/spec/requests
Dan Ungureanu adfa793731
SECURITY: Ensure only image uploads can be inlined
This prevents malicious files (for example special crafted XMLs) to be
used in XSS attacks.
2019-12-11 17:04:49 +02:00
..
admin DEV: s/\$redis/Discourse\.redis (#8431) 2019-12-03 10:05:53 +01:00
about_controller_spec.rb
application_controller_spec.rb FEATURE: add site setting to remove `X-Frame-Options` header. 2019-12-06 03:15:09 +05:30
associate_accounts_controller_spec.rb DEV: Add test to ensure :after_auth event is triggered (#8400) 2019-11-25 14:31:57 +02:00
badges_controller_spec.rb
bookmarks_controller_spec.rb Improving bookmarks part 1 (#8466) 2019-12-11 14:04:02 +10:00
categories_controller_spec.rb
category_hashtags_controller_spec.rb
clicks_controller_spec.rb
composer_controller_spec.rb
composer_messages_controller_spec.rb
csp_reports_controller_spec.rb
directory_items_controller_spec.rb
draft_controller_spec.rb
drafts_controller_spec.rb
email_controller_spec.rb DEV: Implement a faster Discourse.cache 2019-11-27 16:11:49 +11:00
embed_controller_spec.rb
exceptions_controller_spec.rb
export_csv_controller_spec.rb
extra_locales_controller_spec.rb
finish_installation_controller_spec.rb
forums_controller_spec.rb
groups_controller_spec.rb
inline_onebox_controller_spec.rb
invites_controller_spec.rb
list_controller_spec.rb
metadata_controller_spec.rb
notifications_controller_spec.rb
offline_controller_spec.rb
omniauth_callbacks_controller_spec.rb DEV: Add test to ensure :after_auth event is triggered (#8400) 2019-11-25 14:31:57 +02:00
onebox_controller_spec.rb FIX: Cache failed onebox URL request server-side (#8421) 2019-11-28 07:48:29 +10:00
permalinks_controller_spec.rb
post_action_users_controller_spec.rb
post_actions_controller_spec.rb
post_readers_controller_spec.rb FIX: Filter readers avatars correctly when the post is a whisper 2019-12-03 10:50:02 -03:00
posts_controller_spec.rb DEV: Refactor API key specs to avoid hard-coding keys 2019-11-29 15:16:22 +00:00
push_notification_controller_spec.rb
reviewable_claimed_topics_controller_spec.rb
reviewables_controller_spec.rb
robots_txt_controller_spec.rb
safe_mode_controller_spec.rb
search_controller_spec.rb DEV: s/\$redis/Discourse\.redis (#8431) 2019-12-03 10:05:53 +01:00
session_controller_spec.rb DEV: s/\$redis/Discourse\.redis (#8431) 2019-12-03 10:05:53 +01:00
similar_topics_controller_spec.rb
site_controller_spec.rb
static_controller_spec.rb
steps_controller_spec.rb
stylesheets_controller_spec.rb
svg_sprite_controller_spec.rb
tag_groups_controller_spec.rb
tags_controller_spec.rb FIX: tag input doesn't show all top 5 permitted tags 2019-12-10 10:30:01 -05:00
theme_javascripts_controller_spec.rb
topics_controller_spec.rb
uploads_controller_spec.rb SECURITY: Ensure only image uploads can be inlined 2019-12-11 17:04:49 +02:00
user_actions_controller_spec.rb
user_api_keys_controller_spec.rb DEV: s/\$redis/Discourse\.redis (#8431) 2019-12-03 10:05:53 +01:00
user_avatars_controller_spec.rb
user_badges_controller_spec.rb
users_controller_spec.rb FEATURE: Featured topic for user profile & card (#8461) 2019-12-09 11:15:47 -08:00
users_email_controller_spec.rb
webhooks_controller_spec.rb DEV: s/\$redis/Discourse\.redis (#8431) 2019-12-03 10:05:53 +01:00
wizard_controller_spec.rb