Commit History

Autor SHA1 Mensaxe Data
  Tim Graham 6e8508734b Described how querysets are protected from SQL injection in more detail. %!s(int64=7) %!d(string=hai) anos
  Ed Morley 3c2447dd13 Fixed #26947 -- Added an option to enable the HSTS header preload directive. %!s(int64=8) %!d(string=hai) anos
  Shai Berger 5112e65ef2 Fixed #20869 -- made CSRF tokens change every request by salt-encrypting them %!s(int64=9) %!d(string=hai) anos
  Tim Graham f6ca63a9f8 Refs #26464 -- Added a link to OWASP Top 10 in security topic guide. %!s(int64=9) %!d(string=hai) anos
  Tim Graham 15a20dc9af Removed a reference to Django 1.3.1 in docs. %!s(int64=9) %!d(string=hai) anos
  Tim Graham f2b45ddd99 Fixed #26206 -- Fixed docs comments causing empty code blocks. %!s(int64=9) %!d(string=hai) anos
  Tim Graham 9c43d8252a Fixed Sphinx highlight warnings in docs. %!s(int64=9) %!d(string=hai) anos
  Alex Gaynor d7580e286a Removed a misleading comment about HTTPS. %!s(int64=9) %!d(string=hai) anos
  Jon Dufresne 7aabd62380 Fixed #25778 -- Updated docs links to use https when available. %!s(int64=9) %!d(string=hai) anos
  Agnieszka Lasyk 1f8dad6915 Fixed #25755 -- Unified spelling of "website". %!s(int64=9) %!d(string=hai) anos
  David Sanders cc968b9c90 Added links to new security settings introduced in 1.8. %!s(int64=9) %!d(string=hai) anos
  Claude Paroz e9c5c39631 Updated various links in docs %!s(int64=9) %!d(string=hai) anos
  Claude Paroz 64982cc2fb Updated Wikipedia links to use https %!s(int64=9) %!d(string=hai) anos
  Tim Graham 97fa7fe961 Fixed #25212 -- Documented the RawSQL expression. %!s(int64=9) %!d(string=hai) anos
  Carl Meyer d16bc7f0e4 Fixed #23561 -- Corrected a security doc example that requires an unquoted HTML attribute. %!s(int64=10) %!d(string=hai) anos
  Tim Graham 9432f1e750 Fixed some doc errors that caused syntax highlighting to fail. %!s(int64=10) %!d(string=hai) anos
  Tim Graham f65eb15ac6 Fixed #22504 -- Corrected domain terminology in security guide. %!s(int64=11) %!d(string=hai) anos
  Moayad Mardini 3776926cfe Fixed #22493 - Added warnings to raw() and extra() docs about SQL injection %!s(int64=11) %!d(string=hai) anos
  Tim Graham 4965a77407 Removed PIL compatability layer per deprecation timeline. %!s(int64=11) %!d(string=hai) anos
  Tim Graham df6760f12c Added a warning regarding risks in serving user uploaded media. %!s(int64=11) %!d(string=hai) anos
  Tim Graham a3372f67cb Added a warning regarding session security and subdomains. %!s(int64=11) %!d(string=hai) anos
  Aymeric Augustin 1267d2d9bc Fixed #20330 -- Normalized spelling of "web server". %!s(int64=12) %!d(string=hai) anos
  Carl Meyer d51fb74360 Added a new required ALLOWED_HOSTS setting for HTTP host header validation. %!s(int64=12) %!d(string=hai) anos
  Aymeric Augustin ebd2598596 Removed django.contrib.markup. %!s(int64=12) %!d(string=hai) anos
  Tim Graham b3a8c9dab8 Fixed broken links, round 3. refs #19516 %!s(int64=12) %!d(string=hai) anos
  Florian Apolloner 27560924ec Fixed a security issue in get_host. %!s(int64=12) %!d(string=hai) anos
  David Fischer 58786897a1 Formatting fix for host headers section %!s(int64=12) %!d(string=hai) anos
  David Fischer c65100248d Added CSRF with HTTPS/HSTS and forwarding note %!s(int64=12) %!d(string=hai) anos
  David Fischer ba141e6906 Added note about Strict Transport Security (HSTS) %!s(int64=12) %!d(string=hai) anos
  Luke Plant 0199bdc0b4 Rewrote security.txt SSL docs, noting SECURE_PROXY_SSL_HEADER. %!s(int64=13) %!d(string=hai) anos