mirror of
https://github.com/mastodon/mastodon.git
synced 2024-12-27 13:34:59 +01:00
69378eac99
* Don't allow URLs that contain non-normalized paths to be verified This stops things like https://example.com/otheruser/../realuser where "/otheruser" appears to be the verified URL, but the actual URL being verified is "/realuser" due to the "/../". Also fix a test to use 'https', so it is testing the right thing, now that since #20304 https is required. * missing do |
||
---|---|---|
.. | ||
field_spec.rb |