Commit
1cc1598d1678bba595c22d92e4a074ab5641d245
Exists in
staging
and in
38 other branches
all_pending_tasks_api, api-articles-period, api_roles, caching-rails4, captcha_serpro_plugin, comments_permissions, elasticsearch, elasticsearch_api, elasticsearch_categories, elasticsearch_filter, elasticsearch_sort, elasticsearch_to_merge, elasticsearch_view, environment-exposes-api, export-comment-api, export-comment-paragraph, export_data, external_followers, federation-webfinger, federation_followers, federation_followers_backend, federation_oauth_provider, federation_webfinger, fix_notification_email, fix_string_downcase_and_upcase, follower_permition, json_cookie_serializer, master, master_profile_followers, oauth_external_login, oauth_login, private-scraps, private-scraps-rebase, production, production-vendorized, profile_api_improvements, user_mention, webfinger_server
bugfix in xss permission - map in my_profile
1
| class MapsController < MyProfileController |
1
| class MapsController < MyProfileController |
2
| |
2
| |
| |
3
| + skip_before_filter :verify_authenticity_token, only: [:google_map] |
| |
4
| + |
3
| protect 'edit_profile', :profile |
5
| protect 'edit_profile', :profile |
4
| |
6
| |
5
| def edit_location |
7
| def edit_location |