Path to this page:
Subject: CVS commit: pkgsrc/www/py-django
From: Adam Ciarcinski
Date: 2025-03-06 17:05:55
Message id: 20250306160555.BAF17FBE1@cvs.NetBSD.org
Log Message:
py-django: updated to 5.1.7
Django 5.1.7 fixes a security issue with severity “moderate” and several \
bugs in 5.1.6.
CVE-2025-26699: Potential denial-of-service vulnerability in django.utils.text.wrap()
The wrap() and wordwrap template filter were subject to a potential \
denial-of-service attack when used with very long strings.
Bugfixes
Fixed a bug in Django 5.1 where the {% querystring %} template tag returned an \
empty string rather than "?" when all parameters had been removed from \
the query string
Fixed a bug in Django 5.1 where FileSystemStorage, with allow_overwrite set to \
True, did not truncate the overwritten file content
Fixed a regression in Django 5.1 where the count and exists methods of \
ManyToManyField related managers would always return 0 and False when the \
intermediary model back references used to_field
Fixed a regression in Django 5.1 where the pre_save and post_save signals for \
LogEntry were not sent when deleting a single object in the admin
Files: