#24625: Arbitrary file inclusion in admindocs
-------------------------------------+-------------------------------------
     Reporter:  MarkusH              |                    Owner:  MarkusH
         Type:  Bug                  |                   Status:  new
    Component:  contrib.admindocs    |                  Version:  master
     Severity:  Normal               |               Resolution:
     Keywords:                       |             Triage Stage:  Ready for
                                     |  checkin
    Has patch:  1                    |      Needs documentation:  0
  Needs tests:  0                    |  Patch needs improvement:  0
Easy pickings:  0                    |                    UI/UX:  0
-------------------------------------+-------------------------------------
Changes (by timgraham):

 * stage:  Accepted => Ready for checkin


Comment:

 I don't really see the issue as needing a backport based on our current
 policy, but I don't mind other than the perception that the core team
 plays by different rules. Do you want to lobby for adding "security
 hardening measures" to the list of fixes that will be backported?

--
Ticket URL: <https://code.djangoproject.com/ticket/24625#comment:3>
Django <https://code.djangoproject.com/>
The Web framework for perfectionists with deadlines.

-- 
You received this message because you are subscribed to the Google Groups 
"Django updates" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To post to this group, send email to [email protected].
To view this discussion on the web visit 
https://groups.google.com/d/msgid/django-updates/065.583cf0939df149e0a9fef01defcdb967%40djangoproject.com.
For more options, visit https://groups.google.com/d/optout.

Reply via email to