Display helper should not sanitize its input#5299
Display helper should not sanitize its input#5299deivid-rodriguez merged 3 commits intoactiveadmin:masterfrom
Conversation
|
Sadly |
|
I'm 👍 for copying it until we drop |
c98ebed to
6a2f8f3
Compare
Codecov Report
@@ Coverage Diff @@
## master #5299 +/- ##
==========================================
+ Coverage 98.29% 98.29% +<.01%
==========================================
Files 292 294 +2
Lines 10910 10973 +63
==========================================
+ Hits 10724 10786 +62
- Misses 186 187 +1
Continue to review full report at Codecov.
|
|
Copied |
|
Looks like you might need to copy a couple of unit tests also... |
|
@varyonic I added the unit tests! |
|
Travis CI has failed to bundle, probably has to be restarted. |
|
Restarted! 🤞 |
|
@deivid-rodriguez Perhaps we need to update travis.yml? https://www.ruby-lang.org/en/news/2017/12/14/net-ftp-command-injection-cve-2017-17405/ |
|
Maybe, I restarted the job a few times yesterday but it kept failing. It didn't seem related to this PR though. |
|
It's good to update Travis CI in any case, yeah. We can also take the chance to try out how AA is working with ruby 2.5.0. |
|
I'm actually surprised that all those minitest-style assertions worked out of the box. Merging anyways since these tests are not meant to stay long. |
|
Thanks for cleaning up my mess @faucct! 😃 |
|
You're welcome. |
|
Can anyone backport this in |
Adapt unit tests for copied helper DisplayHelper should not sanitize its input Filters sidebar should not be vulnerable to XSS
Following 0456e2d#r26411218