summaryrefslogtreecommitdiff
path: root/django
Commit message (Expand)AuthorAgeFilesLines
* [2.2.x] Bumped version for 2.2.27 release.2.2.27Mariusz Felisiak2022-02-011-1/+1
* [2.2.x] Fixed CVE-2022-23833 -- Fixed DoS possiblity in file uploads.Mariusz Felisiak2022-02-011-0/+2
* [2.2.x] Fixed CVE-2022-22818 -- Fixed possible XSS via {% debug %} template tag.Markus Holtermann2022-02-011-3/+6
* [2.2.x] Post-release version bump.Carlton Gibson2022-01-041-1/+1
* 2.2.x] Bumped version for 2.2.26 release.2.2.26Carlton Gibson2022-01-041-1/+1
* [2.2.x] Fixed CVE-2021-45452 -- Fixed potential path traversal in storage sub...Florian Apolloner2022-01-041-1/+8
* [2.2.x] Fixed CVE-2021-45116 -- Fixed potential information disclosure in dic...Florian Apolloner2022-01-041-5/+17
* [2.2.x] Fixed CVE-2021-45115 -- Prevented DoS vector in UserAttributeSimilari...Florian Apolloner2022-01-041-2/+38
* [2.2.x] Post-release version bump.Mariusz Felisiak2021-12-071-1/+1
* [2.2.x] Bumped version for 2.2.25 release.2.2.25Mariusz Felisiak2021-12-071-1/+1
* [2.2.x] Fixed #30530, CVE-2021-44420 -- Fixed potential bypass of an upstream...Florian Apolloner2021-12-071-2/+6
* [2.2.x] Post-release version bump.Carlton Gibson2021-06-021-1/+1
* [2.2.x] Bumped version for 2.2.24 release.2.2.24Carlton Gibson2021-06-021-1/+1
* [2.2.x] Fixed CVE-2021-33571 -- Prevented leading zeros in IPv4 addresses.Mariusz Felisiak2021-06-021-1/+13
* [2.2.x] Fixed CVE-2021-33203 -- Fixed potential path-traversal via admindocs'...Florian Apolloner2021-06-021-1/+2
* [2.2.x] Post-release version bump.Mariusz Felisiak2021-05-131-1/+1
* [2.2.x] Bumped version for 2.2.23 release.2.2.23Mariusz Felisiak2021-05-131-1/+1
* [2.2.x] Fixed #32718 -- Relaxed file name validation in FileField.Mariusz Felisiak2021-05-132-6/+16
* [2.2.x] Post-release version bump.Mariusz Felisiak2021-05-061-1/+1
* [2.2.x] Bumped version for 2.2.22 release.2.2.22Mariusz Felisiak2021-05-061-1/+1
* [2.2.x] Fixed #32713, Fixed CVE-2021-32052 -- Prevented newlines and tabs fro...Mariusz Felisiak2021-05-061-1/+4
* [2.2.x] Post-release version bump.Carlton Gibson2021-05-041-1/+1
* [2.2.x] Bumped version for 2.2.21 release.2.2.21Carlton Gibson2021-05-041-1/+1
* [2.2.x] Fixed CVE-2021-31542 -- Tightened path & file name sanitation in file...Florian Apolloner2021-04-276-9/+55
* [2.2.x] Post-release version bump.Mariusz Felisiak2021-04-061-1/+1
* [2.2.x] Bumped version for 2.2.20 release.2.2.20Mariusz Felisiak2021-04-061-1/+1
* [2.2.x] Fixed CVE-2021-28658 -- Fixed potential directory-traversal via uploa...Mariusz Felisiak2021-04-061-4/+9
* [2.2.x] Post-release version bump.Carlton Gibson2021-02-191-1/+1
* [2.2.x] Bumped version for 2.2.19 release.2.2.19Carlton Gibson2021-02-191-1/+1
* [2.2.x] Fixed CVE-2021-23336 -- Fixed web cache poisoning via django.utils.ht...Nick Pope2021-02-181-1/+1
* [2.2.x] Post-release version bump.Mariusz Felisiak2021-02-011-1/+1
* [2.2.x] Bumped version for 2.2.18 release.2.2.18Mariusz Felisiak2021-02-011-1/+1
* [2.2.x] Fixed CVE-2021-3281 -- Fixed potential directory-traversal via archiv...Mariusz Felisiak2021-02-011-3/+14
* [2.2.x] Post-release version bump.Carlton Gibson2020-11-021-1/+1
* [2.2.x] Bumped version for 2.2.17 release.2.2.17Carlton Gibson2020-11-021-1/+1
* [2.2.x] Post-release version bump.Carlton Gibson2020-09-011-1/+1
* [2.2.x] Bumped version for 2.2.16 release.2.2.16Carlton Gibson2020-09-011-1/+1
* [2.2.x] Fixed CVE-2020-24584 -- Fixed permission escalation in intermediate-l...Mariusz Felisiak2020-08-251-0/+5
* [2.2.x] Fixed CVE-2020-24583, #31921 -- Fixed permissions on intermediate-lev...Mariusz Felisiak2020-08-251-3/+3
* [2.2.x] Fixed #31863 -- Prevented mutating model state by copies of model ins...Gert Burger2020-08-131-1/+4
* [2.2.x] Fixed #31866 -- Fixed locking proxy models in QuerySet.select_for_upd...Daniel Hillier2020-08-111-2/+4
* [2.2.x] Post-release version bump.Mariusz Felisiak2020-08-031-1/+1
* [2.2.x] Bumped version for 2.2.15 release.2.2.15Mariusz Felisiak2020-08-031-1/+1
* [2.2.x] Fixed #31784 -- Fixed crash when sending emails on Python 3.6.11+, 3....Florian Apolloner2020-07-201-7/+22
* [2.2.x] Fixed #31790 -- Fixed setting SameSite cookies flag in HttpResponse.d...Mariusz Felisiak2020-07-163-3/+8
* [2.2.x] Post-release version bump.Mariusz Felisiak2020-07-011-1/+1
* [2.2.x] Bumped version for 2.2.14 release.2.2.14Mariusz Felisiak2020-07-011-1/+1
* [2.2.x] Fixed #31654 -- Fixed cache key validation messages.Mariusz Felisiak2020-06-051-1/+1
* [2.2.x] Post-release version bump.Carlton Gibson2020-06-031-1/+1
* [2.2.x] Bumped version for 2.2.13 release.2.2.13Carlton Gibson2020-06-031-1/+1