Hi all,

Two security issues are addressed in the latest release.

* Resolves an XSS issue that was introduced into the browseable API in 
3.9.0.
* Updates Bootstrap to the latest release, addressing XSS issues in some of 
the JavaScript components there

Thanks so much to everyone who's raised these or help work on resolving 
them.

Brief release notes are in the usual place: 
https://www.django-rest-framework.org/community/release-notes/#391

  - Tom

-- 
You received this message because you are subscribed to the Google Groups 
"Django REST framework" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
For more options, visit https://groups.google.com/d/optout.

Reply via email to