#16870: CSRF too strict when no referer is present
------------------------------+--------------------------------------
     Reporter:  rtux          |                    Owner:  nobody
         Type:  Bug           |                   Status:  closed
    Component:  contrib.csrf  |                  Version:  1.5
     Severity:  Normal        |               Resolution:  wontfix
     Keywords:                |             Triage Stage:  Unreviewed
    Has patch:  0             |      Needs documentation:  0
  Needs tests:  0             |  Patch needs improvement:  0
Easy pickings:  0             |                    UI/UX:  0
------------------------------+--------------------------------------
Changes (by ilf):

 * version:  1.3 => 1.5


Comment:

 I'm hitting this on 1.5 and find it very annoying. There's also a lengthy
 discussion on this over here:
 https://bugs.launchpad.net/launchpad/+bug/560246

-- 
Ticket URL: <https://code.djangoproject.com/ticket/16870#comment:5>
Django <https://code.djangoproject.com/>
The Web framework for perfectionists with deadlines.

-- 
You received this message because you are subscribed to the Google Groups 
"Django updates" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To post to this group, send email to [email protected].
For more options, visit https://groups.google.com/groups/opt_out.


Reply via email to