Glitch-Shrike/app/controllers/api/v1
Claire 502cf75b16
Merge pull request from GHSA-58x8-3qxw-6hm7
* Fix insufficient permission checking for public timeline endpoints

Note that this changes unauthenticated access failure code from 401 to 422

* Add more tests for public timelines

* Require user token in `/api/v1/statuses/:id/translate` and `/api/v1/scheduled_statuses`
2024-07-04 16:26:49 +02:00
..
accounts Change `read:me` scope to `profile` scope (#30357) 2024-06-06 07:30:10 +00:00
admin Extract permitted params constant in v1/admin/tags (#30652) 2024-06-11 15:29:41 +00:00
announcements
apps Support multiple redirect_uris when creating OAuth 2.0 Applications (#29192) 2024-05-17 13:46:12 +00:00
crypto Move `pagination_params` into `API::BaseController` (#28845) 2024-05-30 14:56:48 +00:00
emails
featured_tags Add `not_featured_by` scope to Tag (#28815) 2024-04-17 10:05:38 +00:00
instances Update `current_user` override mode description in controllers (#30515) 2024-06-03 07:16:29 +00:00
lists Move `pagination_params` into `API::BaseController` (#28845) 2024-05-30 14:56:48 +00:00
notifications Rename `cache_*` methods to `preload_*` in controller concern (#30209) 2024-05-16 08:03:46 +00:00
peers
polls
profile
push Fix race condition in `POST /api/v1/push/subscription` (#30166) 2024-05-06 12:41:14 +00:00
statuses Merge pull request from GHSA-58x8-3qxw-6hm7 2024-07-04 16:26:49 +02:00
timelines Merge pull request from GHSA-58x8-3qxw-6hm7 2024-07-04 16:26:49 +02:00
trends Move `pagination_params` into `API::BaseController` (#28845) 2024-05-30 14:56:48 +00:00
accounts_controller.rb Change `ids` param to `id` in `/api/v1/statuses` and `/api/v1/accounts` for consistency (#30465) 2024-05-29 09:19:17 +00:00
announcements_controller.rb
annual_reports_controller.rb
apps_controller.rb Support multiple redirect_uris when creating OAuth 2.0 Applications (#29192) 2024-05-17 13:46:12 +00:00
blocks_controller.rb Move `pagination_params` into `API::BaseController` (#28845) 2024-05-30 14:56:48 +00:00
bookmarks_controller.rb Move `pagination_params` into `API::BaseController` (#28845) 2024-05-30 14:56:48 +00:00
conversations_controller.rb Move `pagination_params` into `API::BaseController` (#28845) 2024-05-30 14:56:48 +00:00
custom_emojis_controller.rb
directories_controller.rb
domain_blocks_controller.rb Move `pagination_params` into `API::BaseController` (#28845) 2024-05-30 14:56:48 +00:00
endorsements_controller.rb Move `pagination_params` into `API::BaseController` (#28845) 2024-05-30 14:56:48 +00:00
favourites_controller.rb Move `pagination_params` into `API::BaseController` (#28845) 2024-05-30 14:56:48 +00:00
featured_tags_controller.rb
filters_controller.rb
follow_requests_controller.rb Move `pagination_params` into `API::BaseController` (#28845) 2024-05-30 14:56:48 +00:00
followed_tags_controller.rb Move `pagination_params` into `API::BaseController` (#28845) 2024-05-30 14:56:48 +00:00
instances_controller.rb Update `current_user` override mode description in controllers (#30515) 2024-06-03 07:16:29 +00:00
invites_controller.rb
lists_controller.rb
markers_controller.rb
media_controller.rb
mutes_controller.rb Move `pagination_params` into `API::BaseController` (#28845) 2024-05-30 14:56:48 +00:00
notifications_controller.rb Rename `cache_*` methods to `preload_*` in controller concern (#30209) 2024-05-16 08:03:46 +00:00
polls_controller.rb
preferences_controller.rb
reports_controller.rb
scheduled_statuses_controller.rb Merge pull request from GHSA-58x8-3qxw-6hm7 2024-07-04 16:26:49 +02:00
statuses_controller.rb Move `pagination_params` into `API::BaseController` (#28845) 2024-05-30 14:56:48 +00:00
streaming_controller.rb
suggestions_controller.rb
tags_controller.rb