summaryrefslogtreecommitdiff
AgeCommit message (Collapse)Author
2019-07-01[2.1.x] Bumped version for 2.1.10 release.2.1.10Mariusz Felisiak
2019-07-01[2.1.x] Fixed CVE-2019-12781 -- Made HttpRequest always trust ↵Carlton Gibson
SECURE_PROXY_SSL_HEADER if set. An HTTP request would not be redirected to HTTPS when the SECURE_PROXY_SSL_HEADER and SECURE_SSL_REDIRECT settings were used if the proxy connected to Django via HTTPS. HttpRequest.scheme will now always trust the SECURE_PROXY_SSL_HEADER if set, rather than falling back to the request scheme when the SECURE_PROXY_SSL_HEADER did not have the secure value. Thanks to Gavin Wahl for the report and initial patch suggestion, and Shai Berger for review. Backport of 54d0f5e62f54c29a12dd96f44bacd810cbe03ac8 from master
2019-07-01[2.1.x] Added stub release notes for security releases.Mariusz Felisiak
Backport of 30b3ee9d0b33bb440f9c73d1ce9e0e7303887a9f from master
2019-06-30[2.1.x] Fixed GeoIPTest.test04_city() failure with the latest GeoIP2 database.Mariusz Felisiak
Backport of 4305fbe8b11f44ab5d6759346488026c1e9677b2 from master
2019-06-21[2.1.x] Bumped minimum ESLint version to 4.18.2.Markus Holtermann
Backport of ad7b438002f1ab2a0ccb321012182991737ea84e from master.
2019-06-03[2.1.x] Added CVE-2019-12308 to the security release archive.Nick Pope
Backport of 21b1d239125f1228e579b1ce8d94d4d5feadd2a6 from master
2019-06-03[2.1.x] Added CVE-2019-11358 to the security release archive.Nick Pope
Backport of 8fb0ea55830321852a4a051a478f78e24d4f6889 from master
2019-06-03[2.1.x] Fixed typos in 1.11.21, 2.1.9, 2.2.2 release notes.Mariusz Felisiak
Backport of 100ec901aebebe56b61f101af38a228414098dd5 from master
2019-06-03[2.1.x] Post-release version bump.Carlton Gibson
2019-06-03[2.1.x] Bumped version for 2.1.9 release.2.1.9Carlton Gibson
2019-06-03[2.1.x] Applied jQuery patch for CVE-2019-11358.Carlton Gibson
Backport of 34ec52269ade54af31a021b12969913129571a3f from master.
2019-06-03[2.1.x] Fixed CVE-2019-12308 -- Made AdminURLFieldWidget validate URL before ↵Carlton Gibson
rendering clickable link. Backport of deeba6d92006999fee9adfbd8be79bf0a59e8008 from master.
2019-06-03[2.1.x] Added stub release notes for security releases.Carlton Gibson
Backport of 98c0fe19ee2cba9726708ac9336e1dc0d43cca69 from master
2019-04-07[2.1.x] Refs #27807 -- Removed docs for User.username_validator.Tim Graham
The new override functionality claimed in refs #21379 doesn't work. Forwardport of 714fdbaa7048c2321f6238d9421137c33d9af7cc from stable/1.10.x.
2019-04-05[2.1.x] Refs #30331 -- Doc'd that psycopg2 < 2.8 is required.Mariusz Felisiak
2019-04-01[2.1.x] Post-release version bump.Carlton Gibson
2019-04-01[2.1.x] Bumped version for 2.1.8 release.2.1.8Carlton Gibson
2019-03-30[2.1.x] Fixed #30289 -- Prevented admin inlines for a ManyToManyField's ↵Tim Graham
implicit through model from being editable if the user only has the view permission. Backport of 8335d59200e4c64dfe3348ea93989d95e0107439 from master.
2019-03-30[2.1.x] Added stub 2.1.8 release notes.Tim Graham
Backport of e245046bb6e8b32360aa48b8a41fb7050f0fc730 from master
2019-03-21[2.1.x] Fixed #30277 -- Fixed broken links to packaging.python.org.Tim Graham
Backport of 8f1cc7e9e61758475ddd6586e0fede4af1ca0e8d from master.
2019-03-20[2.1.x] Fixed serializers test crash if PyYAML isn't installed.Tim Graham
Follow up to a57c783dd4e6dc73847081221827a1902eede88b. Backport of 55490ac7469a3647ce163bee323f7fe4a06fcaa6 from master
2019-03-14[2.1.x] Fixed serializers tests for PyYAML 5.1+.Mariusz Felisiak
Backport of a57c783dd4e6dc73847081221827a1902eede88b from master
2019-03-03[2.1.x] Reverted "Fixed relative paths imports per isort 4.3.5."Mariusz Felisiak
This reverts commit 463fe11bc8b2d068e447c5df677e7a31c2af7e03 due to restore of relative paths sorting from isort < 4.3.5 in isort 4.3.10. Backport of b435f82939edf70674856e0e1cd63973c2e0a1d1 from master
2019-02-28[2.1.x] Clarified permission-related docs.Tobias Bengfort
Backport of 632d4861ddb99a2c9d11642fcfa4ad542b427d6b from master
2019-02-25[2.1.x] Refs #29683 -- Updated multi-db docs for view permission.Tim Graham
Backport of 50f09264ae8ab04824fcc6554e8c184378ad2f81 from master
2019-02-25[2.1.x] Fixed documentation of database representation for ManyToManyField.Mariusz Felisiak
Backport of b0799f5d86b6c0ccb1dcba6e0d2eee336f7f5928 from master
2019-02-25[2.1.x] Fixed relative paths imports per isort 4.3.5.Mariusz Felisiak
Backport of 463fe11bc8b2d068e447c5df677e7a31c2af7e03 from master
2019-02-16[2.1.x] Fixed #30187 -- Moved "install Django" command to a console box.Mariusz Felisiak
Backport of edec11ce86a1a0d9e4c5a2a0df6acaf655041c24 from master.
2019-02-11[2.1.x] Added CVE-2019-6975 to the security release archive.Tim Graham
Backport of d6e5aad5c7eba3d8061c09902de16cd2b22619af from master.
2019-02-11[2.1.x] Refs #30177 -- Forwardported 2.0.13 release notes.Tim Graham
Backport of 1b8f552b08eb7642be598ba7512e7eaecefbdc6d from master.
2019-02-11[2.1.x] Post-release version bump.Tim Graham
2019-02-11[2.1.x] Bumped version for 2.1.7 release.2.1.7Carlton Gibson
2019-02-11[2.1.x] Refs #30175 -- Added release notes for 2.1.7, 2.0.12, and 1.11.20 ↵Carlton Gibson
releases. Backport of b39bd0aa6d5667d6bbcf7d349a1035c676e3f972 from master
2019-02-11[2.1.x] Bumped version for 2.1.6 release.2.1.6Carlton Gibson
2019-02-11[2.1.x] Fixed CVE-2019-6975 -- Fixed memory exhaustion in ↵Carlton Gibson
utils.numberformat.format(). Thanks Sjoerd Job Postmus for the report and initial patch. Thanks Michael Manfre, Tim Graham, and Florian Apolloner for review. Backport of 402c0caa851e265410fbcaa55318f22d2bf22ee2 from master
2019-02-08[2.1.x] Removed extra characters in docs header underlines.Mariusz Felisiak
Backport of 25829197bb94585e94695360065ac614aa9e6a56 from master
2019-02-07[2.1.x] Added stub release notes for security releases.Carlton Gibson
Backport of 5cc6f02f91e8860c867cc68cf42e66b5bb54c63d from master
2019-02-04[2.1.x] Fixed duplicate word in docs/releases/2.0.txt.Daniel Hahler
Backport of fdc4518fe296c169cf54f23fdad2e0fc8785c059 from master.
2019-02-01[2.1.x] Used extlinks for GitHub commits.Tim Graham
Backport of c34c6d0a2fc6d9bc55fb2db94b9ed40141babb15 from master.
2019-01-31[2.1.x] Corrected output of Prefetch.to_attr example.Sergey Fedoseev
Backport of ba7a420012799b26ec9e969d0276d2ccee93c1f5 from master.
2019-01-30[2.1.x] Fixed E117 and F405 flake8 warnings.Mariusz Felisiak
Backport of 5a5c77d55dc85c7e6cf910243257e408887f412a from master
2019-01-19[2.1.x] Fixed #30117 -- Fixed SchemaEditor.quote_value() test for ↵Mariusz Felisiak
mysqlclient 1.4.0+. Backport of f05c02c4b8d4e423e57d453c4bd699dc5ff7eaa7 from master
2019-01-17[2.1.x] Refs #30097 -- Fixed typos in InlineModelAdmin.has_add_permission() ↵Tim Graham
deprecation comments. Backport of ee9bd8c31024ec424157798b2a60a7f52f9353ee from stable/2.2.x.
2019-01-14[2.1.x] Refs #29004 -- Prevented inspectdb tests from flushing all tables data.Simon Charette
This is a costly operation on most database backends. Backport of 64f9776bc4a27a665032ac15f5176ced66e996e3 from master
2019-01-14[2.1.x] Relaxed assertions to fix GIS test failures on Oracle 18c.Mariusz Felisiak
Backport of 1508e71c5b056ba099097a849b13187dcbfa26a1 from master
2019-01-11[2.1.x] Fixed #30097 -- Made 'obj' arg of ↵MaximZemskov
InlineModelAdmin.has_add_permission() optional. Restored backwards compatibility after refs #27991. Regression in be6ca89396c031619947921c81b8795d816e3285. Backport of 3c01fe30f3dd4dc1c8bb4fec816bd277d1ae5fa6 from master.
2019-01-08[2.1.x] Added stub 2.1.6 release notes.Tim Graham
Backport of 36fceeec883c5082168714a0eb14a2fe40f9d79b from master.
2019-01-04[2.1.x] Added CVE-2019-3498 to the security release archive.Tim Graham
Backport of 162ae9c9143aa85eb27ea69b446a28973eea4854 from master.
2019-01-04[2.1.x] Post-release version bump.Tim Graham
2019-01-04[2.1.x] Bumped version for 2.1.5 release.2.1.5Tim Graham