diff --git a/docs/releases/security.txt b/docs/releases/security.txt index 8a9d73de36..898b7f3c30 100644 --- a/docs/releases/security.txt +++ b/docs/releases/security.txt @@ -769,3 +769,15 @@ Versions affected * Django 1.9 `(patch) `__ * Django 1.8 `(patch) `__ + +September 26, 2016 - :cve:`2016-7401` +------------------------------------- + +CSRF protection bypass on a site with Google Analytics. `Full description +`__ + +Versions affected +~~~~~~~~~~~~~~~~~ + +* Django 1.9 `(patch) `__ +* Django 1.8 `(patch) `__