discourse/plugins
Roman Rizzi 3a73f29928 FIX: Rate limit and hijack certificate generation. (#8215)
To eliminate a DDOS attack vector, we're taking the following measures:

The endpoint will be rate-limited to 3 requests every 60 seconds (per user).
A 24 hours max-age cache header is sent with the response.
The route will be hijacked to generate the certificate in the background.
2019-10-22 15:39:58 -03:00
..
discourse-details SECURITY: Escape email text for posts containing [details]. 2019-06-26 16:45:25 +02:00
discourse-local-dates Update translations 2019-06-25 11:50:50 -04:00
discourse-narrative-bot FIX: Rate limit and hijack certificate generation. (#8215) 2019-10-22 15:39:58 -03:00
discourse-nginx-performance-report Update translations 2019-06-25 11:50:50 -04:00
discourse-presence Update translations 2019-06-25 11:50:50 -04:00
lazyYT FIX: Memory Leaks when decorating posts (#7749) 2019-06-11 17:21:23 +02:00
poll Update translations 2019-06-25 11:50:50 -04:00