index
:
delta/python-packages/django.git
1.8
15667
16682
24046
24215
24525
26176
3.2-man-page
4.0/make-zoneinfo-default-timezone-implementation-squashed
alex-patch-1
attic/boulder-oracle-sprint
attic/full-history
attic/generic-auth
attic/gis
attic/i18n
attic/magic-removal
attic/multi-auth
attic/multiple-db-support
attic/new-admin
attic/newforms-admin
attic/per-object-permissions
attic/queryset-refactor
attic/schema-evolution
attic/schema-evolution-ng
attic/search-api
attic/sqlalchemy
attic/unicode
c/29988-allow-f-strings
c/32409-async-tests-cannot-call-orm
c/append-slash-opt-out
c/replace-utcnow
c/use-bpo-extlink
dep0005
dep5
fix-cache-test
fix/remove-stray-file
issue/31570
link-to-code-of-conduct
main
make-zoneinfo-default-timezone-implementation
master
remove-unnecesary-if-wrap
selenium-updates
sir-sigurd-patch-1
soc2009/admin-ui
soc2009/http-wsgi-improvements
soc2009/i18n-improvements
soc2009/model-validation
soc2009/multidb
soc2009/test-improvements
soc2010/app-loading
soc2010/query-refactor
soc2010/test-refactor
stable/0.90.x
stable/0.91.x
stable/0.95.x
stable/0.96.x
stable/1.0.x
stable/1.1.x
stable/1.10.x
stable/1.11.x
stable/1.2.x
stable/1.3.x
stable/1.4.x
stable/1.5.x
stable/1.6.x
stable/1.7.x
stable/1.8.x
stable/1.9.x
stable/2.0.x
stable/2.1.x
stable/2.2.x
stable/3.0.x
stable/3.1.x
stable/3.2.x
stable/4.0.x
stable/4.1.x
stable/4.2.x
swap-closing-quote-period-in-admin-i18nable-literal
ticket-25055
ticket-31342
update-next-docs-version
github.com: django/django.git
summary
refs
log
tree
commit
diff
log msg
author
committer
range
path:
root
/
tests
/
csrf_tests
Commit message (
Expand
)
Author
Age
Files
Lines
*
Refs #33476 -- Applied Black's 2023 stable style.
David Smith
2023-02-01
1
-1
/
+0
*
Refs #32800 -- Removed CSRF_COOKIE_MASKED transitional setting per deprecatio...
Mariusz Felisiak
2023-01-17
1
-30
/
+0
*
Fixed #33567 -- Avoided setting default text/html content type on responses.
Claude Paroz
2022-03-09
1
-0
/
+1
*
Refs #33476 -- Refactored code to strictly match 88 characters line length.
Mariusz Felisiak
2022-02-07
2
-3
/
+9
*
Refs #33476 -- Reformatted code with Black.
django-bot
2022-02-07
4
-270
/
+354
*
Refs #32800 -- Renamed _sanitize_token() to _check_token_format().
Chris Jerdonek
2021-11-29
1
-5
/
+5
*
Fixed #32800 -- Changed CsrfViewMiddleware not to mask the CSRF secret.
Chris Jerdonek
2021-11-29
2
-81
/
+108
*
Refs #32800 -- Avoided use of _does_token_match() in some CSRF tests.
Chris Jerdonek
2021-11-16
2
-7
/
+9
*
Refs #32800 -- Added CSRF tests for masked and unmasked secrets during GET.
Chris Jerdonek
2021-11-16
1
-0
/
+17
*
Refs #32800 -- Added test_masked_secret_accepted_and_not_replaced().
Chris Jerdonek
2021-08-17
1
-2
/
+17
*
Refs #32800 -- Improved CsrfViewMiddlewareTestMixin._check_token_present().
Chris Jerdonek
2021-08-17
1
-23
/
+33
*
Refs #32800 -- Used the cookie argument to CsrfViewMiddlewareTestMixin._get_r...
Chris Jerdonek
2021-08-17
1
-6
/
+3
*
Refs #32800 -- Added tests of more CSRF functions.
Chris Jerdonek
2021-08-03
1
-2
/
+72
*
Refs #32800 -- Renamed _compare_masked_tokens() to _does_token_match().
Chris Jerdonek
2021-08-03
2
-5
/
+5
*
Fixed #32329 -- Made CsrfViewMiddleware catch more specific UnreadablePostError.
Virtosu Bogdan
2021-07-23
1
-5
/
+17
*
Refs #32329 -- Allowed specifying request class in csrf_tests test hooks.
Virtosu Bogdan
2021-07-23
1
-43
/
+39
*
Refs #32902 -- Moved ensure_csrf_cookie_view after protected_view.
Chris Jerdonek
2021-07-23
1
-6
/
+5
*
Fixed #32902 -- Fixed CsrfViewMiddleware.process_response()'s cookie reset lo...
Chris Jerdonek
2021-07-23
2
-2
/
+40
*
Refs #32902 -- Added CSRF test when rotate_token() is called between resettin...
Chris Jerdonek
2021-07-23
2
-6
/
+97
*
Refs #32885 -- Used _read_csrf_cookie()/_set_csrf_cookie() in more CSRF tests.
Chris Jerdonek
2021-06-30
1
-18
/
+22
*
Fixed #32885 -- Removed cookie-based token specific logic from CsrfViewMiddle...
Chris Jerdonek
2021-06-30
1
-21
/
+31
*
Refs #32843 -- Added CsrfViewMiddlewareTestMixin._get_csrf_cookie_request() h...
Chris Jerdonek
2021-06-29
1
-24
/
+25
*
Refs #32843 -- Added method/cookie arguments to CsrfViewMiddlewareTestMixin._...
Chris Jerdonek
2021-06-29
1
-36
/
+27
*
Refs #32843 -- Moved _get_GET_csrf_cookie_request() to CsrfViewMiddlewareTest...
Chris Jerdonek
2021-06-29
1
-13
/
+11
*
Fixed #32843 -- Ensured the CSRF tests' _get_GET_csrf_cookie_request() sets t...
Chris Jerdonek
2021-06-29
1
-3
/
+6
*
Refs #32800 -- Added CsrfViewMiddleware tests for all combinations of masked/...
Chris Jerdonek
2021-06-28
1
-0
/
+50
*
Refs #32800 -- Made CsrfViewMiddlewareTestMixin._csrf_id_cookie and _csrf_id_...
Chris Jerdonek
2021-06-28
1
-9
/
+9
*
Refs #32800 -- Eliminated the need for separate _get_POST_bare_secret() methods.
Chris Jerdonek
2021-06-28
1
-19
/
+4
*
Refs #32800 -- Added to csrf_tests/tests.py the unmasked version of the secret.
Chris Jerdonek
2021-06-28
1
-6
/
+58
*
Fixed #32817 -- Added the token source to CsrfViewMiddleware's bad token erro...
Chris Jerdonek
2021-06-23
1
-7
/
+22
*
Refs #32817 -- Added tests for bad CSRF token provided via X-CSRFToken or cus...
Chris Jerdonek
2021-06-23
1
-9
/
+35
*
Refs #32817 -- Added post_token/meta_token/token_header arguments to _get_POS...
Chris Jerdonek
2021-06-23
1
-22
/
+27
*
Refs #32817 -- Combined the bad-or-missing CSRF token tests.
Chris Jerdonek
2021-06-23
1
-24
/
+11
*
Fixed #32796 -- Changed CsrfViewMiddleware to fail earlier on badly formatted...
Chris Jerdonek
2021-06-01
1
-2
/
+2
*
Refs #32796 -- Added CsrfViewMiddleware tests for incorrectly formatted cooki...
Chris Jerdonek
2021-06-01
1
-14
/
+42
*
Fixed #32795 -- Changed CsrfViewMiddleware to fail earlier on badly formatted...
Chris Jerdonek
2021-05-31
1
-8
/
+11
*
Refs #32795 -- Added CsrfViewMiddleware tests for rejecting invalid or missin...
Chris Jerdonek
2021-05-31
1
-11
/
+41
*
Fixed #32596 -- Added CsrfViewMiddleware._check_referer().
Chris Jerdonek
2021-05-28
1
-1
/
+25
*
Refs #32596 -- Added extra tests for CsrfViewMiddleware's referer logic.
Chris Jerdonek
2021-05-27
1
-0
/
+28
*
Fixed #32578 -- Fixed crash in CsrfViewMiddleware when a request with Origin ...
Chris Jerdonek
2021-03-25
1
-0
/
+9
*
Made CsrfViewMiddlewareTestMixin._get_GET_no_csrf_cookie_request() return GET...
Mariusz Felisiak
2021-03-22
1
-2
/
+4
*
Fixed #32571 -- Made CsrfViewMiddleware handle invalid URLs in Referer header.
Adam Donaghy
2021-03-19
1
-0
/
+6
*
Fixed #16010 -- Added Origin header checking to CSRF middleware.
Tim Graham
2021-03-18
1
-1
/
+149
*
Refs #16010 -- Required CSRF_TRUSTED_ORIGINS setting to include the scheme.
Tim Graham
2021-03-18
1
-2
/
+2
*
Refs #21429 -- Added SimpleTestCase.assertNoLogs() on Python < 3.10.
François Freitag
2021-03-02
1
-4
/
+3
*
Refs #30116 -- Simplified regex match group access with Match.__getitem__().
Jon Dufresne
2020-05-11
1
-1
/
+1
*
Fixed #31291 -- Renamed salt to mask for CSRF tokens.
Ram Rachum
2020-02-25
2
-2
/
+2
*
Refs #26601 -- Deprecated passing None as get_response arg to middleware clas...
Claude Paroz
2020-02-18
1
-124
/
+145
*
Dropped obsolete mimetype kwarg in csrf test view
Claude Paroz
2019-09-21
1
-1
/
+1
*
Fixed #30137 -- Replaced OSError aliases with the canonical OSError.
Jon Dufresne
2019-01-28
1
-4
/
+4
[next]