Alex Gaynor
6297673efd
[1.5.X] Fixed #18883 -- added a missing self parameter in the docs
...
Backport of 17d57275f9 from master
2013-05-13 20:50:37 -04:00
Tim Graham
fbac080691
[1.4.X] Fixed #18277 - Clarified startproject documentation.
...
Backport of 33503600b5 from master
2013-03-30 08:38:42 -04:00
Nimesh Ghelani
d2b8834839
[1.4.x] Fixed #20150 -- Fixed an error in manager doc example
...
Backport of 485c024567 from master
2013-03-29 15:55:52 -04:00
Carl Meyer
4c6fb23dd4
[1.4.x] Bump version to no longer claim to be 1.4.5 final.
2013-03-28 15:11:17 -06:00
Donald Stufft
41af26dd53
Merge pull request #962 from dstufft/document-bcrypt-truncation-1.4.x
...
Document password truncation with BCryptPasswordHasher
2013-03-26 10:32:19 -07:00
Donald Stufft
843034a8d6
Document password truncation with BCryptPasswordHasher
2013-03-26 13:28:55 -04:00
Claude Paroz
577a27a9fc
[1.4.x] Fixed #19926 -- Fixed a link to code example in queries docs
...
Thanks Randy Salvo for the report.
2013-03-02 20:13:47 +01:00
Aymeric Augustin
97a67b26f3
[1.4.x] Fixed #18144 -- Restored compatibility with SHA1 hashes with empty salt.
...
Thanks dahool for the report and initial version of the patch.
Backport of 633d8de from master.
2013-02-25 20:18:04 +01:00
Tim Graham
52bac4ede1
[1.4.x] Fixed #19911 - Updated generic view links.
...
Thanks marc@ for the report.
2013-02-25 13:01:15 -05:00
Tim Graham
db1e8bdc33
[1.4.x] Fixed #19728 - Updated API stability doc to reflect current meaning of "stable".
...
Backport of 132d5822b0 from master.
2013-02-25 12:55:12 -05:00
Preston Holmes
0f555f813b
[1.4.x] Fixed #19902 -- backport of as_view docs
2013-02-23 19:25:38 -08:00
Anssi Kääriäinen
3872bc51c9
[1.4.x] Made a couple of selenium tests wait for page loaded
...
The admin_widgets tests were issuing click() to the browser but
didn't wait for the effects of those clicks. This caused the resulting
request to be processed concurrently with the test case. When using
in-memory SQLite this caused weird failures.
Also added wait_page_loaded() to admin selenium tests for code
reuse.
Fixed #19856 , cherry-pick of 50677b29af39ca670274fb45087415c883c78b04
2013-02-21 00:03:39 +02:00
James Bennett
67a937c2c2
[1.4.x] Bump version numbers to roll a clean package.
1.4.5
2013-02-20 13:53:27 -06:00
Carl Meyer
3adfc3f97d
[1.4.x] Note that ALLOWED_HOSTS default changes in Django 1.5.
2013-02-20 12:26:54 -07:00
Carl Meyer
4cdfb24c98
[1.4.x] Fixed #19857 -- Fixed broken docs link in project template.
2013-02-19 18:36:44 -07:00
Carl Meyer
5d1791ffd2
[1.4.x] Don't characterize XML vulnerabilities as DoS-only.
2013-02-19 18:22:22 -07:00
James Bennett
f61f800c29
[1.4.x] Bump version numbers for security release.
1.4.4
2013-02-19 14:17:23 -06:00
Carl Meyer
62d5338bf2
[1.4.x] Update 1.4.4 release notes for all security fixes.
2013-02-19 11:48:46 -07:00
Aymeric Augustin
0cc350a896
[1.4.x] Added a default limit to the maximum number of forms in a formset.
...
This is a security fix. Disclosure and advisory coming shortly.
2013-02-19 10:37:54 -07:00
Carl Meyer
0e7861aec7
[1.4.x] Checked object permissions on admin history view.
...
This is a security fix. Disclosure and advisory coming shortly.
Patch by Russell Keith-Magee.
2013-02-19 10:37:54 -07:00
Carl Meyer
1c60d07ba2
[1.4.x] Restrict the XML deserializer to prevent network and entity-expansion DoS attacks.
...
This is a security fix. Disclosure and advisory coming shortly.
2013-02-19 10:37:54 -07:00
Carl Meyer
9936fdb11d
[1.4.x] Added ALLOWED_HOSTS setting for HTTP host header validation.
...
This is a security fix; disclosure and advisory coming shortly.
2013-02-19 10:37:54 -07:00
Tim Graham
57b62a74cb
[1.4.x] Fixed #19824 - Corrected the class described for Field.primary_key from IntegerField to AutoField.
...
Thanks Keryn Knight.
Backport of 218bbef0c4 from master
2013-02-16 18:34:34 -05:00
Tim Graham
83e512fa6e
[1.4.x] Fixed #19812 - Removed a duplicate phrase in the widget docs.
...
Thanks diegueus9 for the report and itsallvoodoo for the draft patch.
Backport of 7a80904b00 from master
2013-02-16 18:25:22 -05:00
Alex Hunley
3d6388941d
[1.4.x] Fixed #19719 - Removed misleading example from ModelForm documentation
...
Backport of 976dc07baf from master
2013-02-16 18:09:43 -05:00
Tim Graham
9eb7d59665
[1.4.x] Fixed #19815 - Removed an unused import in tutorial 3.
...
Thanks pedro.calcao@ for the report.
2013-02-12 20:04:15 -05:00
Anssi Kääriäinen
dec7dd99f0
[1.4.x] Removed try-except in django.db.close_connection()
...
The reason was that the except clause needed to remove a connection
from the django.db.connections dict, but other parts of Django do not
expect this to happen. In addition the except clause was silently
swallowing the exception messages.
Refs #19707 , special thanks to Carl Meyer for pointing out that this
approach should be taken.
2013-02-13 00:39:43 +02:00
Claude Paroz
b4fb448f83
Fixed WSGIPythonPath instruction in deployment docs
...
Partial backport of 3abf6105b6 from master. Refs #19042 .
2013-02-11 08:42:09 +01:00
Anssi Kääriäinen
209f174e58
[1.4.x] Made custom m2m fields without through easier to use
...
The change in f105fbe52b21da206bfbaedf0e92326667d7b2d4 made through=None
m2m fields fail in cases where they worked before. It isn't possible to
create such fields using public APIs. The fix is trivial, so it seems
worth fixing this for custom m2m field users.
This is not a backport from master. Master has gotten enough other
changes to related fields internal API that this fix alone isn't enough
to do any good.
2013-02-10 21:57:05 +02:00
Anssi Kääriäinen
9918b3f502
[1.4.x] Fixed #19707 -- Reset transaction state after requests
...
Backpatch of a4e97cf315142e61bb4bc3ed8259b95d8586d09c.
2013-02-10 17:34:38 +02:00
Anssi Kääriäinen
498a5de07b
[1.4.x] Fixed #19645 -- Added tests for TransactionMiddleware
...
Backpatch of f556df90be995a83b979cf875705d98521ab4dc7. Backpatching
these tests so that it will be easier to backpatch the fix for #19707 .
2013-02-10 17:34:27 +02:00
Tim Graham
056b2b5f65
[1.4.x] Fixed #19756 - Corrected a ManyToMany example and added some links and markup.
...
Backport of 43efefae69 from master
2013-02-07 07:04:52 -05:00
Claude Paroz
ec93ecdd10
[1.4.x] Fixed #19702 -- Changed a SQL command syntax to be MySQL 4-compatible
...
Thanks matf at op.pl for the report.
2013-02-02 14:24:35 +01:00
Claude Paroz
3610d11ba0
[1.5.x] Lowered field ordering requirement in ogrinspect test
...
This test was randomly failing depending on the library environment.
Backport of a1c470a6f from master.
2013-02-02 14:08:59 +01:00
Claude Paroz
6bd3896fcb
[1.4.x] Fixed #18144 -- Added backwards compatibility with old unsalted MD5 passwords
...
Thanks apreobrazhensky at gmail.com for the report.
Backport of 63d6a50dd from master.
2013-02-02 12:10:38 +01:00
Tim Graham
89ba1b27b4
[1.4.x] Fixed #19555 - Removed '2012' from tutorial 1.
...
Thanks rodrigorosa.lg and others for the report.
Backport of 99315f709e from master
2013-01-17 16:41:05 -05:00
Tim Graham
c26541f5cb
[1.4.x] Addeded CSS to bold deprecation notices.
...
Thanks Sam Lai for mentioning this on the mailing list.
Backport of 227bd3f8db from master
2013-01-09 19:05:20 -05:00
Tim Graham
c4a9e5bd8d
[1.4.X] Fixed #19506 - Remove 'mysite' prefix in model example.
...
Thanks Mike O'Connor for the report.
Backport of 52a2588df6 from master
2012-12-21 15:53:44 -05:00
Ramiro Morales
6474105107
[1.4.x] Added PASSWORD_HASHERS to settings reference document.
...
abd0f304b162b3120b1c7321fbfc3090e5f3c92c from master.
2012-12-19 15:13:06 -03:00
Alex Gaynor
8ab2aceb65
[1.4.X] Fixed #18099 -- corrected a typo in the initial data docs. Thanks to Bradley Ayers for the patch.
...
Backport of f5a9e5e9 from master
2012-12-15 16:42:19 -05:00
Florian Apolloner
f2530dcb17
[1.4.X] Fixed a test failure in the comment tests.
...
Backport of 1eb0da1c5ba3096f218d1df13d02a2b8e1ac7a36 from master.
2012-12-10 23:37:12 +01:00
James Bennett
1f0af3c529
[1.4.x] Bump version numbers for security release.
1.4.3
2012-12-10 15:45:04 -06:00
Florian Apolloner
319627c184
[1.4.X] Fixed a security issue in get_host.
...
Full disclosure and new release forthcoming.
2012-12-10 22:14:16 +01:00
Florian Apolloner
b2ae0a63ae
[1.4.X] Fixed #18856 -- Ensured that redirects can't be poisoned by malicious users.
2012-12-10 22:14:16 +01:00
Julien Phalip
8c9a8fd5c4
[1.4.x] Fixed the admin_filters tests for Postgres.
...
Backport of c196e01100b2
2012-12-04 10:41:22 -08:00
Sebastián Magrí
c72172244e
[1.4.x] Fixed #19318 -- Ensured that the admin's SimpleListFilter options can be displayed as selected even if the lookup's first element is not a string.
...
Backport of 88e17156393b
2012-12-03 20:58:54 -08:00
Anssi Kääriäinen
3e4058be9f
[1.4.x] Fixed ordering-related failure in m2m_through_regress tests
...
Backpatch of dc569c880143db07e01b3293d698ad8fe4a0136f
2012-11-24 16:10:16 +02:00
Aymeric Augustin
046300c43b
[1.4.x] Restored Python 2.5 compatibility in m2m_through_regress tests.
...
Refs #18823 .
2012-11-24 09:49:30 +01:00
Anssi Kääriäinen
c7dcb1d808
[1.4.x] Fixed SQLite's collapsing of same-valued instances in bulk_create
...
SQLite used INSERT INTO tbl SELECT %s UNION SELECT %s, the problem
was that there should have been UNION ALL instead of UNION.
Refs #19351
Backpatch of a27582484cf814554907d2d1ad077852de36963f
2012-11-24 01:28:25 +02:00
Tim Graham
9ee9a7265a
[1.4.X] Fixed #19317 - Added an image for warning blocks in the docs
...
Thanks tome for the suggestion and patch.
Backport of 3587991ba8 from master
2012-11-22 08:50:50 -05:00