↵ Return to the main page of python3-django
View build
Search for updates
Package Info
🠗 Changelog
🠗 Dependencies
🠗 Provides
🠗 Files
| Date | Author | Change |
|---|---|---|
| 2026-09-08 | Michel Lind <salimma at fedoraproject dot org> - 6.1.1-2 | - Conditionally revert unneeded setuptools bump when building for F44 - update declared versions of bundled JS files |
| 2026-09-08 | Michel Lind <salimma at fedoraproject dot org> - 6.1.1-1 | - Update to version 6.1.1; Resolves RHBZ#2484355 - CVE fixes from 6.0.8 - Fixes CVE-2026-15307 [high]: Server-side file-write and request forgery via spatial lookups - Fixes CVE-2026-15830 [moderate]: Potential denial-of-service vulnerability via nested geometry collections - Fixes CVE-2026-15920 [moderate]: Potential cross-site scripting via URLField values in the admin - CVE fixes from 6.0.7 [low] - Fixes CVE-2026-48588: Potential exposure of private data via cached Set- Cookie response - Fixes CVE-2026-53877: Heap buffer over-read in GDALRaster - Fixes CVE-2026-53878: Header injection possibility since DomainNameValidator accepted newlines in input - CVE fixes from 6.0.6 [low] - Fixes CVE-2026-6873: Signed cookie salt namespace collision - Fixes CVE-2026-7666: Potential unencrypted email transmission via STARTTLS in the SMTP backend - Fixes CVE-2026-8404: Potential exposure of private data via case- sensitive Cache-Control directives - Fixes CVE-2026-35193: Potential exposure of private data via missing Vary: Authorization - Fixes CVE-2026-48587: Potential exposure of private data via whitespace padding in Vary header |
| 2026-07-16 | Fedora Release Engineering <releng at fedoraproject dot org> - 6.0.5-4 | - Rebuilt for https://fedoraproject.org/wiki/Fedora_45_Mass_Rebuild |
| 2026-06-05 | Python Maint <python dash maint at redhat dot com> - 6.0.5-3 | - Rebuilt for Python 3.15 |
| 2026-06-04 | Python Maint <python dash maint at redhat dot com> - 6.0.5-2 | - Bootstrap for Python 3.15 |
| 2026-05-12 | Michel Lind <salimma at fedoraproject dot org> - 6.0.5-1 | - Update to version 6.0.5; Resolves RHBZ#2444118 - Fixes CVE-2026-5766: Potential denial-of-service vulnerability in ASGI requests via file upload limit bypass - Fixes CVE-2026-35192: Session fixation via public cached pages and SESSION_SAVE_EVERY_REQUEST - Fixes CVE-2026-6907: Potential exposure of private data due to incorrect handling of Vary: * in UpdateCacheMiddleware - Fixes CVE-2026-3902: ASGI header spoofing via underscore/hyphen conflation - Fixes CVE-2026-4277: Privilege abuse in GenericInlineModelAdmin - Fixes CVE-2026-4292: Privilege abuse in ModelAdmin.list_editable - Fixes CVE-2026-33033: Potential denial-of-service vulnerability in MultiPartParser via base64-encoded file upload - Fixes CVE-2026-33034: Potential denial-of-service vulnerability in ASGI requests via memory upload limit bypass - Fixes CVE-2026-25674: Potential incorrect permissions on newly created file system objects |
| 2026-02-19 | Michel Lind <salimma at fedoraproject dot org> - 6.0.2-1 | - Initial package; Resolves: RHBZ#2440421 |