From 5bbbdd26d1ea4f3bb164ad64b0d0d458d8bfdd02 Mon Sep 17 00:00:00 2001 From: Tim Graham Date: Tue, 6 Mar 2018 12:59:36 -0500 Subject: [PATCH] Added CVE-2018-7536,7 to the security release archive. --- docs/releases/security.txt | 28 ++++++++++++++++++++++++++++ 1 file changed, 28 insertions(+) diff --git a/docs/releases/security.txt b/docs/releases/security.txt index 357ab39a2f..47aef2bb24 100644 --- a/docs/releases/security.txt +++ b/docs/releases/security.txt @@ -857,3 +857,31 @@ Versions affected * Django 2.0 `(patch) `__ * Django 1.11 `(patch) `__ + +March 6, 2018 - :cve:`2018-7536` +-------------------------------- + +Denial-of-service possibility in ``urlize`` and ``urlizetrunc`` template +filters. `Full description +`_ + +Versions affected +~~~~~~~~~~~~~~~~~ + +* Django 2.0 `(patch) `__ +* Django 1.11 `(patch) `__ +* Django 1.8 `(patch) `__ + +March 6, 2018 - :cve:`2018-7537` +-------------------------------- + +Denial-of-service possibility in ``truncatechars_html`` and +``truncatewords_html`` template filters. `Full description +`_ + +Versions affected +~~~~~~~~~~~~~~~~~ + +* Django 2.0 `(patch) `__ +* Django 1.11 `(patch) `__ +* Django 1.8 `(patch) `__