Skip to content
Commits on Jul 10, 2015
  1. @darkryder @timgraham
Commits on Jul 9, 2015
  1. @charettes
  2. @charettes
  3. @charettes

    Fixed #25081 -- Prevented DISTINCT ON ordering from being cleared in …

    charettes committed Jul 9, 2015
    Thanks to pdewacht for the patch.
  4. @timgraham
Commits on Jul 8, 2015
  1. @timgraham
  2. @shaib @timgraham

    Fixed catastrophic backtracking in URLValidator.

    shaib committed with timgraham Jun 30, 2015
    Thanks João Silva for reporting the problem and Tim Graham for finding the
    problematic RE and for review.
    This is a security fix; disclosure to follow shortly.
  3. @timgraham

    Prevented newlines from being accepted in some validators.

    timgraham committed Jun 12, 2015
    This is a security fix; disclosure to follow shortly.
    Thanks to Sjoerd Job Postmus for the report and draft patch.
  4. @carljm @timgraham

    Fixed #19324 -- Avoided creating a session record when loading the se…

    carljm committed with timgraham Jun 10, 2015
    The session record is now only created if/when the session is modified. This
    prevents a potential DoS via creation of many empty session records.
    This is a security fix; disclosure to follow shortly.
  5. @timgraham
  6. @timgraham
  7. @spookylukey

    Corrected example code for get_query_set upgrade in 1.6 release notes

    spookylukey committed Jul 8, 2015
    The conditional setting of `get_query_set` is required for correct behaviour
    if running Django 1.8. The full gory details are here:
Commits on Jul 7, 2015
  1. @chrisbainbridge @timgraham

    Refs #23882 -- Added detection for moved files when using inotify pol…

    chrisbainbridge committed with timgraham May 29, 2015
    Commit 15f82c7 ("used pyinotify as change detection system when
    available") introduced a regression where editing a file in vim with
    default settings (writebackup=auto) no longer causes the dev server
    to be restarted. On a write, vim moves the monitored file to a backup
    path and then creates a new file in the original. The new file is not
    monitored as it has a different inode. Fixed this by also watching for
    inotify events IN_DELETE_SELF and IN_MOVE_SELF.
  2. @coldmind @timgraham
  3. @wolever @timgraham

    Fixed #22804 -- Added warning for unsafe value of 'sep' in Signer

    wolever committed with timgraham Jun 9, 2014
    Thanks Jaap Roes for completing the patch.
Commits on Jul 6, 2015
  1. @timgraham
  2. @alexey-sveshnikov @timgraham
  3. @mrfuxi @timgraham
  4. @coldmind @timgraham
  5. @timgraham
  6. @timgraham
  7. @timgraham
Commits on Jul 4, 2015
  1. @timgraham
Commits on Jul 3, 2015
  1. @sephii @timgraham
  2. @zedr @timgraham
  3. @lunoho @timgraham
  4. @manfre @timgraham
  5. @adelton @timgraham
  6. @timgraham
  7. @timgraham
  8. @timgraham
Commits on Jul 2, 2015
  1. @adelton @timgraham

    Fixed #25029 -- Added PersistentRemoteUserMiddleware for login-page-o…

    adelton committed with timgraham Jun 26, 2015
    …nly external authentication.
  2. @cecedille1 @timgraham
  3. @timgraham
  4. @lamby @timgraham
Something went wrong with that request. Please try again.