Git Security Vulnerability

Dec. 20th, 2014 10:01 pm
fu: Close-up of Fu, bringing a scoop of water to her mouth (Default)
[staff profile] fu posting in [site community profile] dw_dev
A critical security vulnerability has been announced for Git which affects Windows/Mac. Make sure you update your clients!

The Github announcement has a bunch of useful links to clients. If you're on a Mac and use Homebrew, that one has also been updated. I believe macports has as well, but double-check to be sure.

Changelog Digest for Thu, Dec 18

Dec. 18th, 2014 05:27 pm
kareila: IT prepares you for a life of fighting with PCs nonstop. (sysadmin)
[personal profile] kareila posting in [community profile] changelog_digest
Part two of the backlog. I should be caught up after the next batch.

[dw-free]

1712329: Issue #1065: Librarians Dream / Battle Raven - Missing background
Add missing image file for the Librarian's Dream "Battle Raven" theme.
83ab577: Issue #1068: Update to Foundation 5.4.7
Update to Foundation 5.4.7, for compatibility with later versions of Compass.
9f3f645: Issue #1068: Update to Foundation 5.4.7
Override default Foundation settings.
433f8e1: Issue #1035: Convert misc BML pages in htdocs/tools/endpoints
Register URLs of the form www.../$user/__rpc_... for legacy JS files.
19467ff: Issue #977: Enable non-logged-in users to post from the new entry page
Clarify that posting the entry won't log you in.
2e7ee77: Issue #1068: Update to Foundation 5.4.7
Ensure that contextual hover menu has a background color on Foundation pages.
3104484: Issue #1061: Convert /manage/circle/add, /community/join, /community/leave from BML
Convert and redesign some community membership pages.
786170c: Issue #1053: Automatically create an id for form elements with no id but with label
In TT pages, ensure we always have an id so we can link form element to label.
4b5fc22: Issue #1071: Make instant purge possible on dev instances
Implement --earlyexpunge option for bin/moveucluster.pl.
b902c20: Issue #1076: Remove redundant use Controller lines
Remove duplicated module inclusions from two Controller files.
6da9b26: Issue #1058: Convert miscellaneous BML files
Convert htdocs/tools/embedcontent.bml to a controller.
618cb47: Issue #842: Update/Expand list of available locations on profile
New DW::Countries module and new source for geographic data.

[dw-nonfree]

74e4a8c: Issue #1058: Convert miscellaneous BML files
Convert our custom 404 page from BML to TT.
16c38e5: Issue #1084: December points bonus promotion
Update December bonus points promotion for 2014.
momijizukamori: (dreamsheep | styles)
[personal profile] momijizukamori posting in [site community profile] dw_dev
Not dead! Just busy with life. But Fu is in the process of converting the widgets on /customize to something less ridiculous, which gives me time to prod some of the problems that have been stumping me.

1) Preserving search results
The order of actions to generate a page of results from the advanced search, as I have it right now, goes like this:
User checks boxes to indicate choices -> user presses 'search' button -> button triggers POST actions -> a query is generated as one of these actions -> query goes to worker -> worker performs search -> worker sends back a list of theme ids

The problem is that POST data is lost on reload/page change, so when you click to see the second page of results (if there are more than one page), all of the query and the results vanish. Most of our other ways of grabbing a set of layouts (by base style, by designer, etc) append the query string to the URL, which is then hidden from the user via routing, but even just the list of search elements has the potential to get unwieldy fast (and the return list is worse)

2) The auto-categorizer
I don't have this working yet because it's not necessary for the new search, just... nice, given we have almost fifteen hundred themes (!!!). The script needs to pull hexcodes out of the style layers (which is all text to the perspective of anything not the S2 compiler). That seems to say 'regex' to me but I don't know if that's safe/the best way to do it.

Changelog Digest for Fri, Dec 12

Dec. 12th, 2014 08:37 am
kareila: Taking refuge from falling debris under a computer desk. (computercrash)
[personal profile] kareila posting in [community profile] changelog_digest
Sorry for the unannounced [community profile] changelog_digest hiatus - I was overwhelmed last month. Here's the first chunk of the backlog. I'll do my best to be caught up before the next code push.

[dw-free]

b239848: Issue #965: Create front end UI for creating/updating a support cat
Create admin page for defining new support categories.
6fc3d54: Issue #1035: Convert misc BML pages in htdocs/tools/endpoints
Convert various endpoints to DW::Controller::RPC.
614e054: Issue #1048: Prevent caching on some pages once converted
Add a no_cache argument to DW::Routing, for use with future BML conversions.
62d3ee5: Issue #1050: Convert community membership request /approve and /reject
Convert from BML into DW/Controller/Community.pm.
b4b8e4c: Issue #1047: Convert BML files under htdocs/tools
Remove unused BML file tools/sixdegrees.
948c38d: Issue #1041: Investigate whether we can delete multisearch endpoint
Remove unused multisearch endpoint.
cfe6077: Issue #1040: Investigate whether we can delete jobstatus endpoint and jobstatus.js
Remove unused jobstatus files.
cf0d5f7: Issue #1039: Investigate whether we can delete directorysearch endpoint and directorysearch*.js
Remove unused directorysearch endpoint and related JS files.
c7ab21b: Issue #1042: Investigate whether we can delete misc endpoint files
Remove various unused endpoints.
a50fe27: Issue #1044: Convert BML files under htdocs/admin
Convert various admin pages from BML to DW::Controller::Admin.
9d41545: Issue #1058: Convert miscellaneous BML files
Convert /beta from BML to DW/Controller/Misc.pm.
08acea4: Issue #1058: Convert miscellaneous BML files
Fix wrong include in style guide: collapse.css, not jquery.collapse.css.
a82ceea: Issue #1058: Convert miscellaneous BML files
Add authas method to DW/Template/Plugin.pm.
9e7379f: Issue #1058: Convert miscellaneous BML files
Convert /accountstatus from BML to DW/Controller/Settings.pm.
aeea667: Issue #1058: Convert miscellaneous BML files
Convert /changepassword from BML to DW/Controller/Settings.pm.
ce7f702: Issue #1062: DW::Controller::Admin::ThemeMetadata has inconsistent header
Fix file header comment to include the correct module name.
decf288: Issue #948: possible to open a support req without associated email address
Make support requests require an email address when not logged in.

Question thread #26

Dec. 10th, 2014 02:37 pm
pauamma: Cartooney crab holding drink (Default)
[personal profile] pauamma posting in [site community profile] dw_dev
It's time for another question thread!

The rules:

- You may ask any dev-related question you have in a comment. (It doesn't even need to be about Dreamwidth, although if it involves a language/library/framework/database Dreamwidth doesn't use, you will probably get answers pointing that out and suggesting a better place to ask.)
- You may also answer any question, using the guidelines given in To Answer, Or Not To Answer and in this comment thread.

Volunteer social thread #41

Dec. 10th, 2014 02:33 pm
pauamma: Cartooney crab holding drink (Default)
[personal profile] pauamma posting in [site community profile] dw_volunteers
I haven't done a lot noteworthy this month.

What have you all been up to?
Page generated Dec. 22nd, 2014 12:44 pm
Powered by Dreamwidth Studios