1
0
mirror of https://github.com/django/django.git synced 2025-04-20 23:34:37 +00:00

3 Commits

Author SHA1 Message Date
Simon Charette
ff08bb6c70 [5.0.x] Fixed CVE-2024-53908 -- Prevented SQL injections in direct HasKeyLookup usage on Oracle.
Thanks Seokchan Yoon for the report, and Mariusz Felisiak and Sarah
Boyce for the reviews.
2024-12-04 14:25:15 +01:00
Sarah Boyce
a5a89ea28c [5.0.x] Fixed CVE-2024-53907 -- Mitigated potential DoS in strip_tags().
Thanks to jiangniao for the report, and Shai Berger and Natalia Bidart
for the reviews.
2024-12-04 14:25:05 +01:00
Sarah Boyce
baf63eb098 [5.0.x] Added stub release notes and release date for 5.0.10, and 4.2.17.
Backport of 2544c1585473c1e82dab1274b52052744f97ca72 from main.
2024-11-27 15:45:35 +01:00