security vulnerability in django admin
Bug #234631 reported by
Jan Claeys
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
python-django (Ubuntu) |
Fix Released
|
Medium
|
Unassigned | ||
Feisty |
Fix Released
|
Undecided
|
Andrea Gasparini | ||
Gutsy |
Fix Released
|
Undecided
|
Andrea Gasparini | ||
Hardy |
Fix Released
|
Undecided
|
Andrea Gasparini | ||
Intrepid |
Fix Released
|
Medium
|
Unassigned |
Bug Description
Binary package hint: python-django
The Django project has released a one-line fix for a possible cross-site scripting attack against the admin interface:
See: http://
Changed in python-django: | |
assignee: | nobody → gaspa |
Changed in python-django: | |
assignee: | nobody → gaspa |
Changed in python-django: | |
status: | In Progress → Fix Committed |
status: | In Progress → Fix Committed |
status: | In Progress → Fix Committed |
To post a comment you must log in.
I can confirm this announcement. See also here: http:// www.djangoproje ct.com/ weblog/ 2008/may/ 14/security/