Commit Graph

6 Commits

Author SHA1 Message Date
Tim Graham 97e77b7bc1 [1.11.x] Fixed #27912, CVE-2017-7233 -- Fixed is_safe_url() with numeric URLs.
This is a security fix.
2017-04-04 10:46:50 -04:00
Tim Graham 001ff50808 [1.11.x] Fixed CVE-2017-7234 -- Fixed open redirect vulnerability in views.static.serve().
This is a security fix.
2017-04-04 10:46:50 -04:00
Tim Graham 839159b67e [1.11.x] Added stub release notes for security releases. 2017-04-04 10:46:48 -04:00
heathervm ff0c6b83e5 [1.11.x] Fixed #27993 -- Fixed model form default fallback for SelectMultiple.
Backport of 7d1e237753 from master
2017-03-31 10:10:30 -04:00
Raphael Merx 89b31b312e [1.11.x] Fixed #27905 – Added RelatedFieldWidgetWrapper.value_omitted_from_data().
Backport of fd75c8f2b7 from master
2017-03-07 13:56:45 -05:00
Tim Graham 679560b7d8 [1.11.x] Added stub release notes for 1.10.7.
Backport of 6c5348b9d2 from master
2017-03-07 13:05:56 -05:00