382 Commits (64bea717145521d9bc913ba90966b36595b6082b)

Author SHA1 Message Date
Claire d587a268fd
Add logging for Rails cache timeouts (#21667)
2 years ago
Claire 7955d4b959
Add form-action CSP directive (#20781)
2 years ago
trwnh a2931d19ae
Add missing admin scopes (fix #20892) (#20918)
2 years ago
Eugen Rochko 43b0b2f3f4
Fix wrong directive `unsafe-wasm-eval` to `wasm-unsafe-eval` (#20729)
2 years ago
prplecake b46b7c3d5e
Use "unsafe-wasm-eval" instead of "unsafe-eval" in script-src CSP (#20606)
2 years ago
Eugen Rochko 21fd25a269
Fix rate limiting for paths with formats (#20675)
2 years ago
Matt Corallo 9d039209cc
Add `Cache-Control` header to openstack-stored files (#20610)
2 years ago
David Hewitt 290d78cea4
Allow unsetting x-amz-acl S3 Permission headers (#20510)
2 years ago
prplecake aafbc82d88
Add "unsafe-eval" to script-src CSP (#18817)
2 years ago
Eugen Rochko bf0ab3e0fa
Fix vacuum scheduler missing lock, locks never expiring (#19458)
2 years ago
Eugen Rochko 0d6b878808
Add user content translations with configurable backends (#19218)
2 years ago
Eugen Rochko 546672e292
Change "Allow trends without prior review" setting to include statuses (#17977)
2 years ago
Jeong Arm 861b35dd54
Support "http_hidden_proxy" ENV var for hidden service only proxy (#18427)
2 years ago
Eugen Rochko e7aa2be828
Change how hashtags are normalized (#18795)
2 years ago
Claire ae4f068a84
Fix CAS_DISPLAY_NAME, SAML_DISPLAY_NAME and OIDC_DISPLAY_NAME being ignored (#18568)
2 years ago
Eugen Rochko 96129c2f10
Fix confirmation redirect to app without `Location` header (#18523)
2 years ago
Eugen Rochko 679b7158e3
Change search indexing to use batches to minimize resource usage (#18451)
2 years ago
Eugen Rochko 7b0fe4aef9
Fix opening and closing Redis connections instead of using a pool (#18171)
2 years ago
Claire 8284110c55
Fix stoplight not using REDIS_NAMESPACE (#18160)
2 years ago
Eugen Rochko 3917353645
Fix single Redis connection being used across all threads (#18135)
2 years ago
Eugen Rochko 6e418bf346
Fix cookies secure flag being set when served over Tor (#17992)
2 years ago
Holger 39b489ba4c
fix: `s3_force_single_request` not parsed (#17922)
3 years ago
Eugen Rochko cefa526c6d
Refactor formatter (#17828)
3 years ago
Claire 895212bb2f
Fix PgHero suggesting migrations (#17807)
3 years ago
Yamagishi Kazutoshi eb9a7e3626
Fix LetterOpennerWeb CSP (#17770)
3 years ago
dependabot[bot] 46ad7fea9d
Bump rack-attack from 6.5.0 to 6.6.0 (#17405)
3 years ago
chandrn7 a6ed6845c9
Allow login through OpenID Connect (#16221)
3 years ago
Josh Soref b5329e0035
Spelling (#17705)
3 years ago
luzpaz 73f5e4a1d9
Fix various typos (#17621)
3 years ago
Claire 8603a07504
Fix error when trying to register (#17600)
3 years ago
zunda f9e7f2e409
Avoid return within block (#17590)
3 years ago
Jeong Arm 1de2e3f980
Throttle IPv6 signup for subnet (#17588)
3 years ago
Claire cfa583fa71
Remove support for OAUTH_REDIRECT_AT_SIGN_IN (#17287)
3 years ago
Eugen Rochko 8e84ebf0cb
Remove IP tracking columns from users table (#16409)
3 years ago
Jeong Arm ea61d3acd6
Fix media API limit (#17272)
3 years ago
Eugen Rochko fe71548844
Fix warnings on Rails boot (#16946)
3 years ago
Takeshi Umeda 06631fdc53
Fix ElasticSearch to Elasticsearch (#17050)
3 years ago
Takeshi Umeda 3419d3ec84
Bump chewy from 5.2.0 to 7.2.3 (supports Elasticsearch 7.x) (#16915)
3 years ago
Claire 6da135a493
Fix reviving revoked sessions and invalidating login (#16943)
3 years ago
Jeong Arm c8ce728705
Support authentication for ElasticSearch (#16890)
3 years ago
Claire b21f3aa21d
Minor memory optimizations (#16507)
3 years ago
Daniel 2ed1c92c63
New env variable: CAS_SECURITY_ASSUME_EMAIL_IS_VERIFIED (#16655)
3 years ago
Claire 211d5c3c30
Fix inefficiencies in auto-linking code (#16506)
3 years ago
Claire b715cede4d
Fix mailer jobs for deleted notifications erroring out (#16294)
3 years ago
Claire 97539b6a96
Fix host check on healthcheck path not being disabled (#16270)
3 years ago
Jeong Arm f09322f9cc
Disable host check on healthcheck path (#16243)
3 years ago
Takeshi Umeda 9b18914c35
Add a Redis environment variable for sidekiq (#16188)
3 years ago
Claire 566fc90913
Add Ruby 3.0 support (#16046)
3 years ago
Takeshi Umeda 2360191434
Fix guard against DNS rebinding attacks (#16095)
3 years ago
Takeshi Umeda 8323023464
Add guard against DNS rebinding attacks (#16087)
3 years ago