Daniel O'Connor
ee604dc2b0
Upgrade activemerchant, fixing rails 5 deprecation warnings
2016-06-10 16:04:00 +09:30
Daniel O'Connor
e3d7bf9a62
Upgrade to rails 4.2.*
2016-06-10 15:43:04 +09:30
pozorvlak
e419acea6e
Install BogusPayPalGateway gem
...
We were maintaining a vendor fork of active_merchant because they
refused to merge this feature in; it's now been released as a
separate gem.
2016-06-07 17:43:35 +00:00
Daniel O'Connor
88a66a705b
Update devise to 4.1.X and unpin
2016-06-03 00:23:58 +09:30
Daniel O'Connor
f77fd00931
Remove version pin for rspec-rails
2016-06-03 00:19:49 +09:30
Daniel O'Connor
b5c030905a
Upgrade to geocoder current (we shouldn't be affected by the deprecations in 1.2.X or 1.3.X)
2016-06-03 00:16:00 +09:30
Daniel O'Connor
2844e13298
Upgrade factory_girl_rails, factory_girl
2016-06-03 00:10:25 +09:30
Cesy
608a921fce
Merge pull request #956 from CloCkWeRX/upgrade_devise4
...
Upgrade to devise 4.0.*
2016-06-02 10:18:29 +01:00
pozorvlak
4bedf1e6ac
Merge pull request #955 from CloCkWeRX/upgrade_geocoder
...
Swap to geocoder 1.1.9
2016-06-02 09:49:04 +01:00
Daniel O'Connor
a74ef7de6b
Upgrade to devise 4.0.3
2016-06-02 13:49:13 +09:30
Daniel O'Connor
10064121a6
#953 Swap to geocoder 1.1.9; which is the release just after what we had previously pinned
2016-06-02 13:30:42 +09:30
Daniel O'Connor
40d7b11d90
#952 Try ruby 2.3.1
2016-06-02 13:13:52 +09:30
Mackenzie Morgan
8d982c7e3e
Add capybara-screenshot to assist with feature testing
2016-05-26 22:39:58 -04:00
pozorvlak
d6999b2a8a
Merge pull request #879 from Growstuff/code_climate
...
Add code climate to README
2016-05-23 19:00:26 +01:00
Mackenzie Morgan
51a0a33b2a
upgrade gems and make API change for ruby-units
2016-05-21 16:33:42 -04:00
Mackenzie Morgan
8659ebca2d
switch from less to sass
...
* dependency hell + bit rot on upstream libraries prevents installation on OS X
2016-05-19 15:52:54 -04:00
Miles Gould
bcb74c7ed8
Merge branch 'dev' into bump_ruby_22x
2016-05-19 14:15:33 +01:00
Mackenzie
1442a9106c
add code climate / travis gem
2016-05-17 13:58:55 -04:00
pozorvlak
1791ed5b01
Merge pull request #843 from CloCkWeRX/fix_CVE-2015-7551_upgrade_ruby
...
Fix CVE-2015-7551
2016-03-29 20:04:56 +01:00
Daniel O'Connor
df952a1779
Bump rspec to fix https://github.com/rspec/rspec-rails/issues/1532
2016-03-29 00:00:07 +10:30
Daniel O'Connor
3748f954c5
Name: uglifier
...
Version: 2.5.3
Advisory: 126747
Criticality: Unknown
URL: https://github.com/mishoo/UglifyJS2/issues/751
Title: uglifier incorrectly handles non-boolean comparisons during minification
Solution: upgrade to >= 2.7.2
2016-03-28 23:54:29 +10:30
Daniel O'Connor
6905cd410d
Bump to current ruby 2.2.*, as there's an end of life for 2.1.* https://www.ruby-lang.org/en/news/2016/02/24/support-plan-of-ruby-2-0-0-and-2-1/
2016-03-28 23:38:25 +10:30
Daniel O'Connor
66bb130a1a
Fix CVE-2015-7551 ( https://www.ruby-lang.org/en/news/2015/12/16/unsafe-tainted-string-usage-in-fiddle-and-dl-cve-2015-7551/ )
2016-03-28 23:33:34 +10:30
Daniel O'Connor
c1fde41f1f
Name: devise
...
Version: 3.4.1
Advisory: CVE-2015-8314
Criticality: Unknown
URL: http://blog.plataformatec.com.br/2016/01/improve-remember-me-cookie-expiration-in-devise/
Title: Devise Gem for Ruby Unauthorized Access Using Remember Me Cookie
Solution: upgrade to >= 3.5.4
2016-03-28 23:23:56 +10:30
pozorvlak
24dd02a439
Merge pull request #829 from CloCkWeRX/upgrade_db_cleaner
...
Upgrade database cleaner gem
2015-09-23 21:17:14 +01:00
Daniel O'Connor
48829dba3c
Bump to ruby 2.1.7 for CVE-2015-3900 Request hijacking vulnerability in RubyGems 2.4.6 and earlier; and others - https://www.ruby-lang.org/en/news/2015/08/18/ruby-2-1-7-released/
2015-09-22 11:14:50 +09:30
Daniel O'Connor
83929cc8ee
Add the ability to run feature tests via selenium if you configure it, or run specs with GROWSTUFF_CAPYBARA_DRIVER=selenium bundle exec rake spec:features/
2015-09-15 11:28:30 +09:30
Daniel O'Connor
be87d2861a
Upgrade database cleaner gem, so that https://github.com/DatabaseCleaner/database_cleaner/pull/364 is available to us.
2015-09-15 10:29:29 +09:30
Daniel O'Connor
5cac8743f8
Upgrade to ruby 2.1.6 for CVE-2015-1855: Ruby OpenSSL Hostname Verification
2015-08-13 15:06:56 +10:00
Daniel O'Connor
7b30c4237b
Name: activesupport
...
Version: 4.1.9
Advisory: CVE-2015-3227
Criticality: Unknown
URL: https://groups.google.com/forum/#!topic/rubyonrails-security/bahr2JLnxvk
Title: Possible Denial of Service attack in Active Support
Solution: upgrade to >= 4.2.2, ~> 4.1.11, ~> 3.2.22
Name: activesupport
Version: 4.1.9
Advisory: CVE-2015-3226
Criticality: Unknown
URL: https://groups.google.com/forum/#!topic/ruby-security-ann/7VlB_pck3hU
Title: XSS Vulnerability in ActiveSupport::JSON.encode
Solution: upgrade to >= 4.2.2, ~> 4.1.11
2015-08-11 10:28:07 +09:30
Anthony Atkinson
bc9a025788
Merge branch 'dev' into notification_pagination
2015-08-01 11:38:01 -04:00
Anthony Atkinson
cbb50df8d0
Resolved #562 - Pagination of notifications.
2015-07-25 13:18:30 -04:00
Anthony Atkinson
fad9eddbc4
Addition of guard gem to assist in quicker testing.
2015-07-22 16:00:45 -04:00
Miles Gould
8ce7c25374
Upgrade poltergeist to v1.6.
...
Poltergeist v1.5.1 is nearly a year old, and relies on PhantomJS 1.8,
which is 2.5 years old and increasingly hard to find in OS package
managers.
2015-05-06 12:15:22 +01:00
Mackenzie Morgan
1f23e1a646
merge from upstream
2015-02-01 22:08:28 -05:00
Mackenzie Morgan
7ca89908cd
merge from upstream
2015-02-01 22:00:52 -05:00
Mackenzie Morgan
6aa37e6e26
adding CMS via comfortable mexican sofa gem
2015-02-01 00:27:04 -05:00
Shiho Takagi
2aa30475e9
merge
2015-02-01 00:14:52 +11:00
Mackenzie Morgan
d436fd86f8
use ruby-units to handle conversion. note: the deploy task isn't working and i don't know why
2015-01-31 00:22:35 -05:00
pozorvlak
d5cc3f300a
Merge pull request #664 from pozorvlak/travis_containers
...
Deployment from Travis containers
2015-01-23 11:00:11 +00:00
Shiho Takagi
3d738e1b7c
Merge branch 'PT80956846_crop_search' of https://github.com/oshiho3/growstuff into PT80956846_crop_search
2015-01-21 16:50:21 +11:00
Miles Gould
531a0bd9ea
Roll our own heroku maintenance:(on|off) script
...
This allows us to use maintenance mode without installing the full
Heroku toolbelt, which we can't do on the (much faster!) container-based
infrastructure.
We add a (temporary) deployment to my sandbox from the travis_containers
branch: muckingabout with one branch for both container-based and
VM-based approaches was starting to get confusing.
2015-01-21 00:36:47 +00:00
Rocky Jaiswal
7950c577e9
Add quiet_assets to reduce noise in dev environment.
2015-01-20 19:45:29 +01:00
Shiho Takagi
99eb33ccbb
clearning up the code
2015-01-18 12:23:54 +11:00
Shiho Takagi
b4cd151a03
merge from upstream
2015-01-17 14:09:45 +11:00
Rocky Jaiswal
31a7011260
update to latest patch on rails 4.1
2015-01-15 15:25:21 +01:00
Shiho Takagi
ba3a1f6298
Integrate Elasticsearch and implement crop search against scientific_name
2015-01-15 19:28:28 +11:00
Taylor Griffin
007f7112a7
replaced caching using observers with a key-based (and simplified) caching system
2014-12-19 21:17:43 +11:00
Taylor Griffin
a35a573b2b
update follow member code to be rails 4 compatible
2014-12-14 14:51:18 +11:00
Miles Gould
c446ea9232
Upgrade libv8 to v3.16.14.7.
...
The old version was breaking `bundle install` on OS X.
2014-12-13 11:56:18 +00:00