1
0
mirror of https://github.com/django/django.git synced 2025-04-06 14:36:41 +00:00
Tim Graham 7fe5b656c9 Prevented arbitrary file inclusion with {% ssi %} tag and relative paths.
Thanks Rainer Koirikivi for the report and draft patch.

This is a security fix; disclosure to follow shortly.
2013-09-10 21:02:48 -04:00
..
2013-08-30 12:03:39 +02:00
2013-06-29 11:58:36 +02:00
2013-06-28 08:56:45 -05:00