Security Advisories (2)
CPANSA-Jifty-2011-01 (2011-03-17)

The path as passed in the fragment request data structure was used verbatim in the dispatcher and other locations. This possibly allowed requests to walk around ACLs by requesting '/some/safe/place/../../../dangerous' as a fragment.

CPANSA-Jifty-2009-01 (2009-04-09)

The REST plugin would let you call any method on the model.

NAME

Jifty::Plugin::Feedback

DESCRIPTION

This plugin provides a "feedback box" for your app.

Add to your app's config:

Plugins: 
  - Feedback: 
      from: defaultsender@example.com
      to: recipient@example.com

Add to your app's UI where you want the feedback box:

show '/feedback/request_feedback';

init

Initializes the Feedback object. Takes a paramhash with keys 'from' and 'to', which are email addresses.