diff options
| author | Sarah Boyce <42296566+sarahboyce@users.noreply.github.com> | 2024-12-04 16:51:46 +0100 |
|---|---|---|
| committer | Sarah Boyce <42296566+sarahboyce@users.noreply.github.com> | 2024-12-04 17:03:55 +0100 |
| commit | 39cf3c63f3228a04f101f3e62c75a6aae7c6ef0f (patch) | |
| tree | 18ce0363012eccc84d9f8142a8799b35a9f241bc /docs/releases/security.txt | |
| parent | 0ff19d12e7d240d871975432ce429616012aa35e (diff) | |
[4.2.x] Cleaned up CVE-2024-53907 and CVE-2024-53908 security archive descriptions.
Backport of eb665e076ca3417eb0ac654aed9e9c1853c5af84 from main.
Diffstat (limited to 'docs/releases/security.txt')
| -rw-r--r-- | docs/releases/security.txt | 4 |
1 files changed, 2 insertions, 2 deletions
diff --git a/docs/releases/security.txt b/docs/releases/security.txt index 7b2baad2f6..95a6e003b2 100644 --- a/docs/releases/security.txt +++ b/docs/releases/security.txt @@ -39,7 +39,7 @@ process. These are listed below. December 4, 2024 - :cve:`2024-53907` ------------------------------------ -Potential denial-of-service in django.utils.html.strip_tags(). +Potential denial-of-service in ``django.utils.html.strip_tags()``. `Full description <https://www.djangoproject.com/weblog/2024/dec/04/security-releases/>`__ @@ -50,7 +50,7 @@ Potential denial-of-service in django.utils.html.strip_tags(). December 4, 2024 - :cve:`2024-53908` ------------------------------------ -Potential SQL injection in HasKey(lhs, rhs) on Oracle. +Potential SQL injection in ``HasKey(lhs, rhs)`` on Oracle. `Full description <https://www.djangoproject.com/weblog/2024/dec/04/security-releases/>`__ |
