Skip to content


Subversion checkout URL

You can clone with
Download ZIP
Browse files

Backport [7521] to 0.96-bugfixes per security policy; announcement an…

…d security bugfix release will be forthcoming.

git-svn-id: bcc190cf-cafb-0310-a4f2-bffc1f526a37
  • Loading branch information...
commit 7791e5c050cebf86d868c5dab7092185b125fdc9 1 parent 7dd2dd0
@ubernostrum ubernostrum authored
Showing with 2 additions and 1 deletion.
  1. +2 −1  django/contrib/admin/views/
3  django/contrib/admin/views/
@@ -3,6 +3,7 @@
from django.contrib.auth.models import User
from django.contrib.auth import authenticate, login
from django.shortcuts import render_to_response
+from django.utils.html import escape
from django.utils.translation import gettext_lazy
import base64, datetime, md5
import cPickle as pickle
@@ -22,7 +23,7 @@ def _display_login_form(request, error_message=''):
post_data = _encode_post_data({})
return render_to_response('admin/login.html', {
'title': _('Log in'),
- 'app_path': request.path,
+ 'app_path': escape(request.path),
'post_data': post_data,
'error_message': error_message
}, context_instance=template.RequestContext(request))

0 comments on commit 7791e5c

Please sign in to comment.
Something went wrong with that request. Please try again.