Security Advisories (1)
CPANSA-Jifty-2011-01 (2011-03-17)

The path as passed in the fragment request data structure was used verbatim in the dispatcher and other locations. This possibly allowed requests to walk around ACLs by requesting '/some/safe/place/../../../dangerous' as a fragment.

NAME

Jifty::Subs::Render - Helper for subscriptions rendering

SYNOPSIS

Jifty::Subs::Render->render($id, $callback);

DESCRIPTION

render($id, $callback)

Render all outstanding messages, and call $callback with render mode, region name, and content.

render_single CLASS, MESSAGE, INFO, CALLBACK

Renders a single region, based on the region information in INFO.