↵ Return to the main page of python3-django-doc
View build
Search for updates
Package Info
🠗 Changelog
🠗 Provides
🠗 Files
| Date | Author | Change |
|---|---|---|
| 2026-07-16 | Michel Lind <salimma at fedoraproject dot org> - 5.2.16-1 | - Update to version 5.2.16; Resolves RHBZ#2497734 - Fixes three low-severity CVEs - CVE-2026-48588: Potential exposure of private data via cached Set-Cookie response - CVE-2026-53877: Heap buffer over-read in GDALRaster - CVE-2026-53878: Header injection possibility since DomainNameValidator accepted newlines in input |
| 2026-07-16 | Fedora Release Engineering <releng at fedoraproject dot org> - 5.2.15-6 | - Rebuilt for https://fedoraproject.org/wiki/Fedora_45_Mass_Rebuild |
| 2026-06-19 | Miro HronĨok <miro at hroncok dot cz> - 5.2.15-5 | - Heavily reduce the list of skipped tests |
| 2026-06-06 | Michel Lind <salimma at fedoraproject dot org> - 5.2.15-4 | - Remove dump of disabled tests from the end of the spec |
| 2026-06-06 | Michel Lind <salimma at fedoraproject dot org> - 5.2.15-3 | - Disable failing tests on Python 3.15 |
| 2026-06-05 | Michel Lind <salimma at fedoraproject dot org> - 5.2.15-2 | - Rebuilt for Python 3.15 |
| 2026-06-05 | Michel Lind <salimma at fedoraproject dot org> - 5.2.15-1 | - Update to version 5.2.15; Resolves RHBZ#2484354 - Fixes five low-severity CVEs - CVE-2026-6873: Signed cookie salt namespace collision - CVE-2026-7666: Potential unencrypted email transmission via STARTTLS in the SMTP backend - CVE-2026-8404: Potential exposure of private data via case-sensitive Cache-Control directives - CVE-2026-35193: Potential exposure of private data via missing Vary: Authorization - CVE-2026-48587: Potential exposure of private data via whitespace padding in Vary header |
| 2026-06-05 | Python Maint <python dash maint at redhat dot com> - 5.2.14-3 | - Rebuilt for Python 3.15 |
| 2026-06-04 | Python Maint <python dash maint at redhat dot com> - 5.2.14-2 | - Bootstrap for Python 3.15 |
| 2026-05-12 | Michel Lind <salimma at fedoraproject dot org> - 5.2.14-1 | - Update to version 5.2.14; Resolves RHBZ#2444117 - Fixes CVE-2026-5766: Potential denial-of-service vulnerability in ASGI requests via file upload limit bypass - Fixes CVE-2026-35192: Session fixation via public cached pages and SESSION_SAVE_EVERY_REQUEST - Fixes CVE-2026-6907: Potential exposure of private data due to incorrect handling of Vary: * in UpdateCacheMiddleware - Fixes CVE-2026-3902: ASGI header spoofing via underscore/hyphen conflation - Fixes CVE-2026-4277: Privilege abuse in GenericInlineModelAdmin - Fixes CVE-2026-4292: Privilege abuse in ModelAdmin.list_editable - Fixes CVE-2026-33033: Potential denial-of-service vulnerability in MultiPartParser via base64-encoded file upload - Fixes CVE-2026-33034: Potential denial-of-service vulnerability in ASGI requests via memory upload limit bypass - Fixes CVE-2026-25674: Potential incorrect permissions on newly created file system objects |