Security Advisories (1)
CPANSA-Jifty-2011-01 (2011-03-17)

The path as passed in the fragment request data structure was used verbatim in the dispatcher and other locations. This possibly allowed requests to walk around ACLs by requesting '/some/safe/place/../../../dangerous' as a fragment.

NAME

Jifty::Plugin::Config::Action::Config - Register config

METHODS

arguments

Provides a single argument, config, which is a textarea with Jifty's YAML configuration in it.

take_action

Attempts to update the application's etc/config.yml file with the new configuration.

report_success

Reports that the action succeeded.