1
0
mirror of https://github.com/django/django.git synced 2025-03-25 16:50:45 +00:00

3 Commits

Author SHA1 Message Date
Simon Charette
6943d61818 [5.1.x] Fixed CVE-2024-53908 -- Prevented SQL injections in direct HasKeyLookup usage on Oracle.
Thanks Seokchan Yoon for the report, and Mariusz Felisiak and Sarah
Boyce for the reviews.
2024-12-04 13:47:31 +01:00
Sarah Boyce
bbc74a7f7e [5.1.x] Fixed CVE-2024-53907 -- Mitigated potential DoS in strip_tags().
Thanks to jiangniao for the report, and Shai Berger and Natalia Bidart
for the reviews.
2024-12-04 13:47:21 +01:00
Sarah Boyce
5f82a5e4c7 [5.1.x] Added stub release notes and release date for 5.1.4, 5.0.10, and 4.2.17.
Backport of 2544c1585473c1e82dab1274b52052744f97ca72 from main.
2024-11-27 15:42:58 +01:00