The Vulnerability History Project
Vulnerabilities
Insights
Curate
Tags
All
Projects
CWEs
Languages
Lessons
Severities
Subsystems
More
News
Projects We Study
How to Contribute
By the Numbers
About Us
Toggle Theme
Warning: Our website does not support Internet Explorer, please use Edge instead.
[1.4.x] Checked object permissions on admin history view.
This is a security fix. Disclosure and advisory coming shortly. Patch by Russell Keith-Magee.
by
Lawrence the Dove 2013-02-04 23:57:59 UTC
commit 0e7861aec73702f7933ce2a93056f7983939f0d6
Django
Fix
Histclosure CVE-2013-0305
django/contrib/admin/options.py
+2
-8
tests/regressiontests/admin_views/tests.py
-40
expand_less