This project is archived and is in readonly mode.
Routing docs - info /re default routing making application accessible via GET requests
Reported by Clemens Kofler | July 9th, 2008 @ 08:49 PM | in 2.x
As discussed with Koz and David via e-mail, here's the properly formatted patch for the Routing docs regarding the possibility of accessing the full application via GET requests with default routes enabled. I also added a little comment in the routes.rb just above the default routes definition.
Comments and changes to this ticket
-
Jacek Becela July 9th, 2008 @ 10:37 PM
A good one. I mean a +1. Now it feels almost like a security patch. Some years ago a lot more people didn't know the difference between GET and POST.
-
Pratik July 9th, 2008 @ 10:58 PM
- State changed from new to wontfix
-
Pratik July 9th, 2008 @ 11:01 PM
- State changed from wontfix to open
Ok, Clemens said he had a chat with Koz about this.
-
Pratik July 16th, 2008 @ 11:45 PM
- State changed from open to resolved
Create your profile
Help contribute to this project by taking a few moments to create your personal profile. Create your profile »
<h2 style="font-size: 14px">Tickets have moved to Github</h2>
The new ticket tracker is available at <a href="https://github.com/rails/rails/issues">https://github.com/rails/rails/issues</a>