<feed xmlns='http://www.w3.org/2005/Atom'>
<title>django.git, branch 3.2.18</title>
<subtitle>django
</subtitle>
<id>http://cgit.adnoto.dev/django.git/atom?h=3.2.18</id>
<link rel='self' href='http://cgit.adnoto.dev/django.git/atom?h=3.2.18'/>
<link rel='alternate' type='text/html' href='http://cgit.adnoto.dev/django.git/'/>
<updated>2023-02-14T08:04:22Z</updated>
<entry>
<title>[3.2.x] Bumped version for 3.2.18 release.</title>
<updated>2023-02-14T08:04:22Z</updated>
<author>
<name>Carlton Gibson</name>
<email>carlton.gibson@noumenal.es</email>
</author>
<published>2023-02-14T08:04:22Z</published>
<link rel='alternate' type='text/html' href='http://cgit.adnoto.dev/django.git/commit/?id=722e9f8a38f5b34f2423059a75f8a59bb8eb931a'/>
<id>urn:sha1:722e9f8a38f5b34f2423059a75f8a59bb8eb931a</id>
<content type='text'>
</content>
</entry>
<entry>
<title>[3.2.x] Fixed CVE-2023-24580 -- Prevented DoS with too many uploaded files.</title>
<updated>2023-02-07T09:39:25Z</updated>
<author>
<name>Markus Holtermann</name>
<email>info@markusholtermann.eu</email>
</author>
<published>2022-12-13T09:27:39Z</published>
<link rel='alternate' type='text/html' href='http://cgit.adnoto.dev/django.git/commit/?id=a665ed5179f5bbd3db95ce67286d0192eff041d8'/>
<id>urn:sha1:a665ed5179f5bbd3db95ce67286d0192eff041d8</id>
<content type='text'>
Thanks to Jakob Ackermann for the report.
</content>
</entry>
<entry>
<title>[3.2.x] Added stub release notes for 3.2.18.</title>
<updated>2023-02-07T09:14:53Z</updated>
<author>
<name>Carlton Gibson</name>
<email>carlton.gibson@noumenal.es</email>
</author>
<published>2023-02-02T10:54:09Z</published>
<link rel='alternate' type='text/html' href='http://cgit.adnoto.dev/django.git/commit/?id=932b5bd52d8d7e9255264fdbf425e322efac0b97'/>
<id>urn:sha1:932b5bd52d8d7e9255264fdbf425e322efac0b97</id>
<content type='text'>
Backport of 7e003428f96d616c1f77fed84882a95e63bc3644 from main
</content>
</entry>
<entry>
<title>[3.2.x] Added CVE-2023-23969 to security archive.</title>
<updated>2023-02-01T11:11:00Z</updated>
<author>
<name>Mariusz Felisiak</name>
<email>felisiak.mariusz@gmail.com</email>
</author>
<published>2023-02-01T11:09:03Z</published>
<link rel='alternate' type='text/html' href='http://cgit.adnoto.dev/django.git/commit/?id=c35a5788f4c17c580976458b0b04210a91133d20'/>
<id>urn:sha1:c35a5788f4c17c580976458b0b04210a91133d20</id>
<content type='text'>
Backport of 36e3eef7d5a4c88671d20a561788679d0d9c334c from main
</content>
</entry>
<entry>
<title>[3.2.x] Post-release version bump.</title>
<updated>2023-02-01T09:00:34Z</updated>
<author>
<name>Mariusz Felisiak</name>
<email>felisiak.mariusz@gmail.com</email>
</author>
<published>2023-02-01T09:00:34Z</published>
<link rel='alternate' type='text/html' href='http://cgit.adnoto.dev/django.git/commit/?id=9bd8db3940f529aebafb348c7d6786f29a288916'/>
<id>urn:sha1:9bd8db3940f529aebafb348c7d6786f29a288916</id>
<content type='text'>
</content>
</entry>
<entry>
<title>[3.2.x] Bumped version for 3.2.17 release.</title>
<updated>2023-02-01T08:58:36Z</updated>
<author>
<name>Mariusz Felisiak</name>
<email>felisiak.mariusz@gmail.com</email>
</author>
<published>2023-02-01T08:58:36Z</published>
<link rel='alternate' type='text/html' href='http://cgit.adnoto.dev/django.git/commit/?id=aed1bb56d118937d5d6f3ec72f170779dd8c74cd'/>
<id>urn:sha1:aed1bb56d118937d5d6f3ec72f170779dd8c74cd</id>
<content type='text'>
</content>
</entry>
<entry>
<title>[3.2.x] Fixed CVE-2023-23969 -- Prevented DoS with pathological values for Accept-Language.</title>
<updated>2023-02-01T08:48:18Z</updated>
<author>
<name>Nick Pope</name>
<email>nick@nickpope.me.uk</email>
</author>
<published>2023-01-25T11:21:48Z</published>
<link rel='alternate' type='text/html' href='http://cgit.adnoto.dev/django.git/commit/?id=c7e0151fdf33e1b11d488b6f67b94fdf3a30614a'/>
<id>urn:sha1:c7e0151fdf33e1b11d488b6f67b94fdf3a30614a</id>
<content type='text'>
The parsed values of Accept-Language headers are cached in order to
avoid repetitive parsing. This leads to a potential denial-of-service
vector via excessive memory usage if the raw value of Accept-Language
headers is very large.

Accept-Language headers are now limited to a maximum length in order
to avoid this issue.
</content>
</entry>
<entry>
<title>[3.2.x] Fixed inspectdb.tests.InspectDBTestCase.test_custom_fields() on SQLite 3.37+.</title>
<updated>2023-01-31T14:32:01Z</updated>
<author>
<name>Mariusz Felisiak</name>
<email>felisiak.mariusz@gmail.com</email>
</author>
<published>2021-12-09T19:24:38Z</published>
<link rel='alternate' type='text/html' href='http://cgit.adnoto.dev/django.git/commit/?id=9da46345d83e5d9ecb60512efb2d2e0b2b02b974'/>
<id>urn:sha1:9da46345d83e5d9ecb60512efb2d2e0b2b02b974</id>
<content type='text'>
Use FlexibleFieldLookupDict which is case-insensitive mapping because
SQLite 3.37+ returns some data type names upper-cased e.g. TEXT.
Backport of 974e3b8750fe96c16c9c0b115a72ee4a2171df34 from main
</content>
</entry>
<entry>
<title>[3.2.x] Removed 'tests' path prefix in a couple tests.</title>
<updated>2023-01-31T14:28:16Z</updated>
<author>
<name>Tim Graham</name>
<email>timograham@gmail.com</email>
</author>
<published>2022-05-02T01:44:04Z</published>
<link rel='alternate' type='text/html' href='http://cgit.adnoto.dev/django.git/commit/?id=4c2b26174f044adc4a6461154385720479eaee55'/>
<id>urn:sha1:4c2b26174f044adc4a6461154385720479eaee55</id>
<content type='text'>
Backport of 694cf458f16b8d340a3195244196980b2dec34fd from main.
</content>
</entry>
<entry>
<title>[3.2.x] Adjusted release notes for 3.2.17.</title>
<updated>2023-01-25T11:29:59Z</updated>
<author>
<name>Carlton Gibson</name>
<email>carlton.gibson@noumenal.es</email>
</author>
<published>2023-01-25T11:26:00Z</published>
<link rel='alternate' type='text/html' href='http://cgit.adnoto.dev/django.git/commit/?id=d21543182d2cb9947650ecc48c068d1bfb7d0311'/>
<id>urn:sha1:d21543182d2cb9947650ecc48c068d1bfb7d0311</id>
<content type='text'>
Backport of d8e1442ce2c56282785dd806e5c1147975e8c857 from main
</content>
</entry>
</feed>
