Skip to content
Snippets Groups Projects
  1. Jan 28, 2020
  2. Dec 30, 2019
  3. Nov 29, 2019
  4. Nov 04, 2019
  5. Oct 02, 2019
  6. Sep 07, 2019
  7. Aug 31, 2019
  8. Jul 18, 2019
  9. May 26, 2019
  10. May 25, 2019
  11. Mar 08, 2019
    • Ben Lubar's avatar
      Re-organize Dockerfile to improve incremental builds. (#10212) · d36fcb54
      Ben Lubar authored
      - Always run apt update before any other apt command. (This fixes
        incremental builds failing if a remote package is updated.)
      - Only copy dependency lists before installing dependencies. (This means
        editing code doesn't force all dependencies to be re-downloaded.)
      - Delete cache in the same layer that it is created. (Otherwise,
        deleting cache *increases* the size of the image on non-squashed
        builds.)
      - Move the installation of some static dependencies to *before* Mastodon
        code is imported to Docker.
      d36fcb54
  12. Feb 25, 2019
  13. Feb 24, 2019
  14. Feb 05, 2019
  15. Jan 17, 2019
  16. Jan 01, 2019
  17. Dec 16, 2018
  18. Oct 23, 2018
  19. Oct 04, 2018
  20. Sep 17, 2018
  21. Sep 15, 2018
  22. Jul 14, 2018
  23. Jun 26, 2018
  24. Jun 25, 2018
  25. Apr 01, 2018
    • Yamagishi Kazutoshi's avatar
      Update Ruby to version 2.4.4 (#6964) · f464f98f
      Yamagishi Kazutoshi authored
      https://www.ruby-lang.org/en/news/2018/03/28/ruby-2-4-4-released/
      
      > This release includes some bug fixes and some security fixes.
      >
      > - CVE-2017-17742: HTTP response splitting in WEBrick
      > - CVE-2018-6914: Unintentional file and directory creation with directory traversal in tempfile and tmpdir
      > - CVE-2018-8777: DoS by large request in WEBrick
      > - CVE-2018-8778: Buffer under-read in String#unpack
      > - CVE-2018-8779: Unintentional socket creation by poisoned NUL byte in UNIXServer and UNIXSocket
      > - CVE-2018-8780: Unintentional directory traversal by poisoned NUL byte in Dir
      > - Multiple vulnerabilities in RubyGems
      f464f98f
  26. Mar 17, 2018
  27. Mar 10, 2018
  28. Mar 08, 2018
  29. Mar 07, 2018
  30. Mar 06, 2018
    • Akihiko Odaki's avatar
      Do not use npm (#6656) · 81cefc19
      Akihiko Odaki authored
      Both of yarn and npm are used in Mastodon, but the combined usage requires
      a redundant dependency and may lead to data inconsistency.
      
      Considering that yarn has autoclean feature which npm does not have,
      this change replaces all npm usage with yarn.
      
      This change requires documentation update. Most notably, the following
      command must be executed before assets precompilation if any system
      dependency of node-sass has changed:
      
      yarn install --force --pure-lockfile
      81cefc19
Loading