Comments (8)
+1 I'm using carrierwave in my app. Love it.
from comfortable-mexican-sofa.
No image manipulation is used now, why not already implement carrierwave? It already support RMagick and MiniMagick. If u want I can provide a pull request.
from comfortable-mexican-sofa.
You can set your own rules for paperclip if you want to create thumbs/etc. CarrierWave has problems with how it interfaces with your app. See: carrierwaveuploader/carrierwave#361
I looked really good on the surface, but I'm not going to use it until it gets fixed. DragonFly probably would be better. But for now I'll stick with Paperclip.
from comfortable-mexican-sofa.
Could we re-open this ticket?
I have notice that imagemagick will become a major problem with the CVE that it has.
If Dragonfly do support other lib, rather than imagemagick, then we could also consider that.
Paperclip only does imagemagick.
from comfortable-mexican-sofa.
what's the alternative to imagemagick these days?
from comfortable-mexican-sofa.
Like what @benvds mentioned, those would be the alternatives.
from comfortable-mexican-sofa.
you mentioned vulnerabilities in imagemagick. so what's the alternative to that? Rmagick and minimagick are just wrappers on top of that, no?
from comfortable-mexican-sofa.
I guess with a simple search so far, graphicsmagick seems to be the best alt to imagemagick.
Here are some CVE details to both library:
http://www.cvedetails.com/product/4903/Graphicsmagick-Graphicsmagick.html?vendor_id=2802
http://www.cvedetails.com/vendor/1749/Imagemagick.html
And I guess finding a ruby image/file processing gem that uses alternative library might be hard too, but should be something that needs exploring.
from comfortable-mexican-sofa.
Related Issues (20)
- 'around action' breaking admin CMS HOT 1
- Passwords cannot be changed by admin users [Bug?] HOT 1
- Feature Request: Work with UUID ID column...
- ERB exposed in JSON response but not HTML HOT 1
- Documentation on Hostname Aliases Unclear
- render cms_layout throws ActionView::MissingTemplate HOT 1
- Wysiwyg file chooser pagination
- undefined method `service_name' for #<ActiveStorage::Blob:0x00007fa1d3eec970> HOT 2
- Rails 6.1 Active Storage's ImageProcessing transformer doesn't support :combine_options HOT 4
- Rails 6.1: support ActiveStorage::Blob#service_name
- Pages index page performance issues
- How to migrate JS and CSS code from 1.x to 2.0
- cms_site_detect fails if request is nil
- Any Updates? HOT 1
- Redirect to 404 page on page not found
- Ruby 3 Support HOT 4
- Content does not get rendered in the layout
- Adding a new Category from the Pages admin view results in an error
- CodeMirror style is broken
- Support for Rails 7? Any maintainers needed? HOT 8
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from comfortable-mexican-sofa.