django1/django
Tim Graham 546740544d [1.7.x] Fixed a remote code execution vulnerabilty in URL reversing.
Thanks Benjamin Bach for the report and initial patch.

This is a security fix; disclosure to follow shortly.

Backport of 8b93b31487 from master
2014-04-21 18:29:12 -04:00
..
apps Fixed #21188 -- Introduced subclasses for to-be-removed-in-django-XX warnings 2014-03-08 09:57:40 +01:00
bin Started attackign the next flake8 violation 2013-10-31 08:42:28 -07:00
conf [1.7.x] Also allowed a non-overridden setting to be deleted 2014-04-12 15:35:11 +02:00
contrib [1.7.x] Appeased flake8 2.1.0. 2014-04-21 07:50:50 -04:00
core [1.7.x] Fixed a remote code execution vulnerabilty in URL reversing. 2014-04-21 18:29:12 -04:00
db [1.7.x] Appeased flake8 2.1.0. 2014-04-21 07:50:50 -04:00
dispatch Fixed many typos in comments and docstrings. 2014-03-03 07:38:09 -05:00
forms [1.7.x] Corrected many style guide violations that the newest version of flake8 catches 2014-04-21 07:50:43 -04:00
http [1.7.x] Replaced urllib/urlparse imports with from django.utils.six.moves. 2014-03-31 07:55:25 -04:00
middleware [1.7.x] Corrected many style guide violations that the newest version of flake8 catches 2014-04-21 07:50:43 -04:00
template [1.7.x] Corrected many style guide violations that the newest version of flake8 catches 2014-04-21 07:50:43 -04:00
templatetags Fixed #21188 -- Introduced subclasses for to-be-removed-in-django-XX warnings 2014-03-08 09:57:40 +01:00
test [1.7.x] Fixed #22102 -- Made SimpleTestCase tests run before unittest.TestCase ones 2014-04-12 11:43:10 +02:00
utils [1.7.x] Appeased flake8 2.1.0. 2014-04-21 07:50:50 -04:00
views Fixed #21188 -- Introduced subclasses for to-be-removed-in-django-XX warnings 2014-03-08 09:57:40 +01:00
__init__.py [1.7.x] Bump version numbers for 1.7 beta 1. 2014-03-20 19:42:11 -05:00
shortcuts.py Moved relative URL handling added in refs #21177 to a better place. 2014-02-15 07:54:35 -05:00