Security Advisories (4)
CPANSA-Jifty-2011-01 (2011-03-17)

The path as passed in the fragment request data structure was used verbatim in the dispatcher and other locations. This possibly allowed requests to walk around ACLs by requesting '/some/safe/place/../../../dangerous' as a fragment.

CPANSA-Jifty-2009-01 (2009-04-09)

The REST plugin would let you call any method on the model.

CPANSA-Jifty-2008-01 (2009-04-08)

Allowed all actions on GET.

CPANSA-Jifty-2006-01 (2006-07-06)

Jifty did not protect users against a class of remote data access vulnerability. If an attacker knew the structure of your local filesystem and you were using the "standalone" webserver in production, the attacker could gain read only access to local files.

NAME

Jifty::Action::Redirect - Redirect the browser

new

By default, redirect actions happen as late as possible in the run order. Defaults the "order" in Jifty::Action to be 100 so it runs later than most actions.

arguments

The only argument to redirect is the url to redirect to.

take_action

If the other actions in the request have been a success so far, redirects to the provided url. The redirect preserves all of the Jifty::Results for this action, in case the destination page wishes to inspect them.