diaspora/app/assets/javascripts
Maxwell Salzberg 190fceaf5c [SECURITY FIX] please update your pod ASAP
This is a fix for public messages, where a malicious pod could spoof a message from someone a user was connected to, as the verified signatures were not checked that the object was also from said sender.  This hole only affected public messages, and the private part of code had the correct checks
THX to s-f-s(Stephan Schulz) for reporting and tracking down this issue, and props to Raven24(florian.staudacher@gmx.at) for helping me test the patch
2012-07-02 10:00:12 -07:00
..
app [SECURITY FIX] please update your pod ASAP 2012-07-02 10:00:12 -07:00
helpers
pages "twipsy" is now "tooltip", "position" must be "placement" and "select" is not a valid trigger 2012-04-15 02:02:12 +02:00
widgets new login page. kept the old one for safe keeping. 2012-05-19 11:10:17 -07:00
aspect-edit-pane.js
aspect-sorting.js
aspects-dropdown.js
bootstrap-scrollspy-custom.js add our changes back to bootstrap custom 2012-05-30 16:58:21 -07:00
clear-form.js
contact-edit.js
contact-list.js
diaspora.js use back-to-top initializer, fixes #2840 2012-05-02 00:03:07 +02:00
finder.js
friend-finder.js
home.js
ie.js
inbox.js
jasmine-load-all.js
login.js
mailchimp.js
main.js DG MS; added scrollspy wip 2012-05-30 16:58:21 -07:00
mentions.js
mobile.js add basic profile info to profile; remove random console.logs [ci skip] 2012-04-26 14:52:48 -07:00
people.js
photo-show.js
photos.js
profile.js
publisher.js bugmash #4 2012-05-24 19:50:39 -07:00
templates.js
validation.js DG RY; mostly done, validations pending [ci skip] 2012-05-04 17:38:07 -07:00
view.js