Mariusz Felisiak
e4c9703ec6
[4.2.x] Added CVE-2023-46695 to security archive.
...
Backport of 7caf2621833a45cdfe7e6e305e4885ecc8d79744 from main
2023-11-01 08:17:50 +01:00
Mariusz Felisiak
048a9ebb6e
[4.2.x] Fixed CVE-2023-46695 -- Fixed potential DoS in UsernameField on Windows.
...
Thanks MProgrammer (https://hackerone.com/mprogrammer ) for the report.
2023-11-01 06:19:20 +01:00
Natalia
3fae5d92da
[4.2.x] Refs #30601 -- Fixed typos in docs/topics/db/transactions.txt.
...
Backport of 9b18af4f6f12b9d25157e0b5afc3dca198f6dd06 from main
2023-10-30 13:50:20 -03:00
Natalia
a8aa94062b
[4.2.x] Refs #15578 -- Made cosmetic edits to fixtures docs.
...
Backport of b412e5645a65a632f0147e50ceecb60acd33bb4d from main
2023-10-30 10:33:40 -03:00
Tom Carrick
109f39a38b
[4.2.x] Fixed #34932 -- Restored varchar_pattern_ops/text_pattern_ops index creation when deterministic collaction is set.
...
Regression in f3f9d03edf17ccfa17263c7efa0b1350d1ac9278 (4.2) and
8ed25d65ea7546fafd808086fa07e7e5bb5428fc (5.0).
Backport of 34b411762b50883d768d7b67e0a158ec39da8b09 from main.
2023-10-30 11:14:08 +01:00
Sarah Boyce
61612990d8
[4.2.x] Fixed typos in docs/ref/models/expressions.txt.
...
Backport of 8992a0489c01ac8ab7283264a315c005511323e2 from main
2023-10-28 14:22:30 +02:00
lufafajoshua
696fbc32d6
[4.2.x] Fixed #30601 -- Doc'd the need to manually revert all app state on transaction rollbacks.
...
Backport of aa80b357fbef46e5b6faa08d63bcfd4fe21f3776 from main
2023-10-27 23:33:45 -03:00
Izzy Hyman
ffba63180c
[4.2.x] Fixed typo in docs/ref/contrib/gis/geos.txt.
...
Backport of c42250a7039a5ace1b482b30c6a1359b748cae65 from main
2023-10-27 05:32:47 +02:00
Leo Suarez
43a3646070
[4.2.x] Fixed #15578 -- Stated the processing order of fixtures in the fixtures docs.
...
Also, added details about loading multiple fixtures and unified line wrapping
at 79 cols.
Co-Authored-By: Aniketh Babu <anikethbabu@gmail.com>
Co-Authored-by: Mariusz Felisiak <felisiak.mariusz@gmail.com>
Co-Authored-By: Natalia Bidart <124304+nessita@users.noreply.github.com>
Backport of 334dc073b1d9c89692aa5b11d362fb1cceae7a4a from main
2023-10-26 21:52:24 -03:00
Mariusz Felisiak
0cd8b867a0
[4.2.x] Added stub release notes and release date for 4.2.7, 4.1.13, and 3.2.23.
...
Backport of fdd1323b9c83e56184e0c992af8faf8d54327775 from main
2023-10-25 05:43:24 +02:00
Claire Pritchard
510a512119
[4.2.x] Fixed typo in docs/releases/4.2.txt.
...
Backport of 61cc0e6f2c5115415e70e0a7eddd59b7c2aed40d from main
2023-10-22 11:03:08 +02:00
David Smith
b644f8bc1f
[4.2.x] Corrected note about using accents in writing documentation contributing guide.
...
Backport of 16115771020eaededb56fdfbcfec978e950b6a9a from main
2023-10-21 09:40:21 +02:00
Simon Charette
803caec60b
[4.2.x] Fixed #34798 -- Fixed QuerySet.aggregate() crash when referencing expressions containing subqueries.
...
Regression in 59bea9efd2768102fc9d3aedda469502c218e9b7,
complements e5c844d6f2a4ac6ae674d741b5f1fa2a688cedf4.
Refs #28477 , #34551 .
Thanks Haldun Komsuoglu for the report.
Backport of 3b4a571275d967512866012955eb0b3ae486d63c from main
2023-10-16 06:15:36 +02:00
Adam Johnson
caec4f4a6f
[4.2.x] Refs #34840 -- Improved release note describing index regression.
...
Backport of 73b2c63127297e214d3bfdc8d9a96837691fc2a0 from main
2023-10-15 10:28:07 +02:00
lufafajoshua
e8fe48d3a0
[4.2.x] Fixed #34808 -- Doc'd aggregate function's default argument.
...
Backport of 8adc7c86ab85ed91e512bc49056e301cbe1715d0 from main
2023-10-11 16:11:09 -03:00
Natalia
830990fa6c
[4.2.x] Reorganized tutorial's part 4 to better understand changes needed in URLConf.
...
Backport of d21ab70223dcbdc5a2603a88945147f2f780deee from main
2023-10-10 14:07:10 -03:00
sarahboyce
9c7627da30
[4.2.x] Refs #34043 -- Clarified how to test UI changes.
...
Backport of e083f3082c71853a01bf149bda7fdbaf58d25f4d from main
2023-10-09 11:51:50 +02:00
Mariusz Felisiak
0bd53ab86a
[4.2.x] Added backticks to setuptools in docs.
...
Backport of 54b23b1835a8044c35754525dfcf2c3027d79aa8 from main
2023-10-09 09:57:35 +02:00
ume
99dcba90b4
[4.2.x] Refs #32275 -- Added scrypt password hasher to PASSWORD_HASHERS setting docs.
...
Backport of 90c75dc4f37bee19b7c3790519d187e38e293800 from main
2023-10-06 09:56:11 +02:00
David Sanders
6697880219
[4.2.x] Refs #31435 -- Doc'd potential infinite recursion when accessing model fields in __init__.
...
Backport of e47298aec4fa04416e7082331fbd44bd9f2662aa from main
2023-10-05 14:34:07 -03:00
Mariusz Felisiak
a9a3317a95
[4.2.x] Corrected wrap_socket() reference in docs/ref/settings.txt.
...
Backport of f9cdecfb0de40698eb2ce44c04068bb091fa8998 from main
2023-10-04 19:54:32 +02:00
Natalia
9962f94a97
[4.2.x] Added CVE-2023-43665 to security archive.
...
Backport of 4e790271e3e65c9ad037b347a34fa95e11982228 from main
2023-10-04 13:09:25 -03:00
Natalia
b2d95bb301
[4.2.x] Added stub release notes for 4.2.7.
...
Backport of 034457941abf33b194cb145443575bf7fb454faf from main
2023-10-04 13:09:11 -03:00
Natalia
be9c27c4d1
[4.2.x] Fixed CVE-2023-43665 -- Mitigated potential DoS in django.utils.text.Truncator when truncating HTML text.
...
Thanks Wenchao Li of Alibaba Group for the report.
2023-10-04 09:39:49 -03:00
Natalia
39fc3f46a8
[4.2.x] Added stub release notes and release date for 4.2.6, 4.1.12, and 3.2.22.
...
Backport of 5e4b75b78a7a84bc30170c2b8e7434525e745c1b from main
2023-09-27 14:27:44 -03:00
Mariusz Felisiak
dd0bf63d3e
[4.2.x] Added warning about flatpages and untrusted users.
...
Backport of 571bab98879578b6ef54ee654ead06736855767d from main
2023-09-27 19:10:59 +02:00
Mariusz Felisiak
a148461f1f
[4.2.x] Fixed #34840 -- Avoided casting string base fields on PostgreSQL.
...
Thanks Alex Vandiver for the report.
Regression in 09ffc5c1212d4ced58b708cbbf3dfbfb77b782ca.
Backport of 779cd28acb1f7eb06f629c0ea4ded99b5ebb670a from main.
2023-09-22 06:07:19 +02:00
David Sanders
b08f53ff46
[4.2.x] Refs #34808 -- Doc'd that aggregation functions on empty groups can return None.
...
Backport of 78b5c9075348aa12da2e024f6ece29d1d652dfdd from main
2023-09-21 13:18:15 -03:00
Mariusz Felisiak
c70f08c4aa
[4.2.x] Added updating the Django release process on Trac to release steps.
...
Backport of 7c1cf585e80114b6e531b40bd2954406d033afe3 from main
2023-09-19 09:29:25 -03:00
therealrinku
d485aa2732
[4.2.x] Fixed typo in docs/howto/custom-file-storage.txt.
...
Backport of aebedb7bd1bd9774823d15cc1041dcdce6fb172a from main
2023-09-16 07:40:17 +02:00
Mariusz Felisiak
ff26e6ad84
[4.2.x] Corrected QuerySet.prefetch_related() note about GenericRelation().
...
GenericRelation is a reverse generic relationship so it's always
homogeneous. Mentioning this as a restriction is confusing.
Backport of 88b5b7b8e56667b0f55ea6f04038b6ac77c57b98 from main
2023-09-16 06:58:08 +02:00
Michele Mazzucchi
866122690d
[4.2.x] Doc'd HttpResponse.cookies.
...
Backport of 5bfb3cbf49e2b9701e7c42989e14a72374adb6bd from main
2023-09-14 12:29:49 +02:00
Mariusz Felisiak
97e8a2afb1
[4.2.x] Fixed #34821 -- Prevented DEFAULT_FILE_STORAGE/STATICFILES_STORAGE settings from mutating the main STORAGES.
...
Regression in 6b965c600054f970bdf94017ecf2e0e6e0a4326b.
Backport of a7c73b944f51d6c92ec876fd7e0a171e7c01657d from main
2023-09-11 13:04:55 +02:00
Mariusz Felisiak
592ebd8920
[4.2.x] Added stub release notes for 4.2.6.
...
Backport of a534835c7b4cf1556638edd39acde7b2b88c8892 from main
2023-09-04 13:25:56 +02:00
Mariusz Felisiak
a1dd785139
[4.2.x] Added CVE-2023-41164 to security archive.
...
Backport of 8a98768868a104ea3ce10d8182590bdd095d9ccb from main
2023-09-04 13:17:59 +02:00
Mariusz Felisiak
9c51b4dcfa
[4.2.x] Fixed CVE-2023-41164 -- Fixed potential DoS in django.utils.encoding.uri_to_iri().
...
Thanks MProgrammer (https://hackerone.com/mprogrammer ) for the report.
Co-authored-by: nessita <124304+nessita@users.noreply.github.com>
2023-09-04 12:05:35 +02:00
willzhao
acfb427522
[4.2.x] Fixed #34803 -- Fixed queryset crash when filtering againts deeply nested OuterRef annotations.
...
Thanks Pierre-Nicolas Rigal for the report.
Regression in c67ea79aa981ae82595d89f8018a41fcd842e7c9.
Backport of 9cc0d7f7f85cecc3ad15bbc471fe6a08e4f515b6 from main
2023-09-01 11:25:00 +02:00
Mariusz Felisiak
55a0b9c32e
[4.2.x] Added stub release notes and release date for 4.2.5, 4.1.11, and 3.2.21.
...
Backport of 24f1a38b37c0af3a5ce0dd7b5392fe4e75d7e1dc from main
2023-08-28 06:14:50 +02:00
Mariusz Felisiak
8e8c318449
[4.2.x] Avoided counting exceptions in AsyncClient docs.
...
Follow up to ad6bb20557f5c87de26aeb3afb061af942a8cc17.
Backport of 9942a3e49b801b59e10329d86cd8bf12f1716529 from main
2023-08-24 05:21:00 +02:00
Luca Allulli
dcb9d7a0e4
[4.2.x] Improved formset docs by using a set instead of a list in the custom validation example.
...
Backport of c59be9f1da7e1fc58df49d5eda4e80cd50ce5710 from main
2023-08-23 22:26:05 -03:00
Keryn Knight
f55b420277
[4.2.x] Fixed #34781 -- Updated logging ref docs for django.server's request extra context value.
...
Backport of 428023e2677aeb80d86b19f90b0c6b82c7cb666d from main
2023-08-22 22:44:46 -03:00
Juan Alvarez
46b2b08e45
[4.2.x] Fixed #34779 -- Avoided unnecessary selection of non-nullable m2m fields without natural keys during serialization.
...
By using `select_related(None)` instead of `select_related()`, the
unnecessary joins are completely avoided. Note that the current tests
already covers the change, when the field is not `null=True`.
Regression in f9936deed1ff13b20e18bd9ca2b0750b52706b6c.
Backport of 517d3bb4dd17e9c51690c98d747b86a0ed8b2fbf from main
2023-08-19 11:23:59 +02:00
Mariusz Felisiak
d34db6602e
[4.2.x] Fixed #34773 -- Fixed syncing DEFAULT_FILE_STORAGE/STATICFILES_STORAGE settings with STORAGES.
...
Thanks Petr Dlouhý for the report.
Bug in 32940d390a00a30a6409282d314d617667892841.
Backport of 6b965c600054f970bdf94017ecf2e0e6e0a4326b from main
2023-08-18 18:12:30 +02:00
anthony kugel
a22aeef555
[4.2.x] Fixed #15799 -- Doc'd that Storage._open() should raise FileNotFoundError when file doesn't exist.
...
Backport of 8edaf07a28a3e3848ab1edbdcd2fdc25e6bd6015 from main
2023-08-04 18:08:46 +02:00
Simon Charette
3a1863319c
[4.2.x] Fixed #34754 -- Fixed JSONField check constraints validation on NULL values.
...
The __isnull lookup of JSONField must special case
Value(None, JSONField()) left-hand-side in order to be coherent with
its convoluted null handling.
Since psycopg>=3 offers no way to pass a NULL::jsonb the issue is
resolved by optimizing IsNull(Value(None), True | False) to
True | False.
Regression in 5c23d9f0c32f166c81ecb6f3f01d5077a6084318.
Thanks Alexandre Collet for the report.
Backport of 3434dbd39d373df7193ad006b970c09c1a909ea3 from main
2023-08-04 10:58:53 +02:00
David Smith
951dcbb2e6
[4.2.x] Fixed #34756 -- Fixed docs HTML build on Sphinx 7.1+.
...
Backport of b3e0170ab546a96930ce3114b0a1a560953c0ff4 from main
2023-08-03 09:32:03 +02:00
Natalia
a750fd0d7f
[4.2.x] Added stub release notes for 4.2.5.
...
Backport of 24068058a63c506c300629fcc491601abc968926 from main
2023-08-01 14:56:34 -03:00
Natalia
e53d6239df
[4.2.x] Added release date for 4.2.4.
...
Backport of c8d7a5491e002c7e5ae9b8453b3263ecf43dde33 from main
2023-08-01 13:47:01 -03:00
Mariusz Felisiak
8808d9da6b
[4.2.x] Fixed #34750 -- Fixed QuerySet.count() when grouping by unused multi-valued annotations.
...
Thanks Toan Vuong for the report.
Thanks Simon Charette for the review.
Regression in 59bea9efd2768102fc9d3aedda469502c218e9b7.
Backport of c9b9a52edc66be117c6e5b5214fa788a4d5db7a8 from main
2023-08-01 16:17:06 +02:00
Almaz Kunpeissov
2ef2b2ffc0
[4.2.x] Corrected pycon formatting in some docs.
...
Backport of 5a3725594faacc412e2d2b4ed160370228f1a118 from main
2023-08-01 08:47:40 +02:00