#16010: Support Origin header checking in the CSRF middleware
-----------------------------+---------------------------------------------
     Reporter:  davidben     |                    Owner:  Tim Graham
         Type:  New feature  |                   Status:  closed
    Component:  CSRF         |                  Version:  dev
     Severity:  Normal       |               Resolution:  fixed
     Keywords:               |             Triage Stage:  Ready for checkin
    Has patch:  1            |      Needs documentation:  0
  Needs tests:  0            |  Patch needs improvement:  0
Easy pickings:  0            |                    UI/UX:  0
-----------------------------+---------------------------------------------
Changes (by Mariusz Felisiak <felisiak.mariusz@…>):

 * status:  assigned => closed
 * resolution:   => fixed


Comment:

 In [changeset:"2411b8b5eb65fe3d7bcc1ee1f59e2433520c7df6" 2411b8b5]:
 {{{
 #!CommitTicketReference repository=""
 revision="2411b8b5eb65fe3d7bcc1ee1f59e2433520c7df6"
 Fixed #16010 -- Added Origin header checking to CSRF middleware.

 Thanks David Benjamin for the original patch, and Florian
 Apolloner, Chris Jerdonek, and Adam Johnson for reviews.
 }}}

-- 
Ticket URL: <https://code.djangoproject.com/ticket/16010#comment:17>
Django <https://code.djangoproject.com/>
The Web framework for perfectionists with deadlines.

-- 
You received this message because you are subscribed to the Google Groups 
"Django updates" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To view this discussion on the web visit 
https://groups.google.com/d/msgid/django-updates/066.83af8b77d0ff32814168c49c60263a6d%40djangoproject.com.

Reply via email to