1
0
mirror of https://github.com/django/django.git synced 2025-01-27 10:39:40 +00:00
Tim Graham 7fe5b656c9 Prevented arbitrary file inclusion with {% ssi %} tag and relative paths.
Thanks Rainer Koirikivi for the report and draft patch.

This is a security fix; disclosure to follow shortly.
2013-09-10 21:02:48 -04:00
..
2013-09-06 21:56:57 -07:00
2013-09-08 12:20:01 -07:00
2013-09-08 12:20:01 -07:00