1
0
mirror of https://github.com/django/django.git synced 2025-11-07 07:15:35 +00:00
Commit Graph

3 Commits

Author SHA1 Message Date
Tim Graham
2a4113dbd5 [1.7.x] Made is_safe_url() reject URLs that start with control characters.
This is a security fix; disclosure to follow shortly.
2015-03-18 08:51:51 -04:00
Tim Graham
e63363f8e0 [1.7.x] Fixed an infinite loop possibility in strip_tags().
This is a security fix; disclosure to follow shortly.
2015-03-18 08:51:21 -04:00
Tim Graham
26fd726274 [1.7.x] Added stub release notes for security releases. 2015-03-18 08:50:49 -04:00