Simon Charette
|
2a446c896e
|
[1.5.x] Prevented data leakage in contrib.admin via query string manipulation.
This is a security fix. Disclosure following shortly.
|
2014-08-20 11:44:02 -04:00 |
|
Preston Holmes
|
dd68f319b3
|
[1.5.x] Fixed #23066 -- Modified RemoteUserMiddleware to logout on REMOTE_USE change.
This is a security fix. Disclosure following shortly.
|
2014-08-20 11:44:02 -04:00 |
|
Tim Graham
|
26cd48e166
|
[1.5.x] Fixed #23157 -- Removed O(n) algorithm when uploading duplicate file names.
This is a security fix. Disclosure following shortly.
|
2014-08-20 11:44:02 -04:00 |
|
Florian Apolloner
|
45ac9d4fb0
|
[1.5.x] Prevented reverse() from generating URLs pointing to other hosts.
This is a security fix. Disclosure following shortly.
|
2014-08-20 11:44:02 -04:00 |
|
Tim Graham
|
25d9ae5214
|
[1.5.x] Added release note stubs for 1.5.9 and 1.4.14.
|
2014-08-20 11:44:02 -04:00 |
|