angler-fishThe Vulnerability History Project

Removed mark_safe from the saved request path on the admin login form. This prevents a potential XSS attack. Formal announcement will be forthcoming.

      git-svn-id: http://code.djangoproject.com/svn/django/trunk@7521 bcc190cf-cafb-0310-a4f2-bffc1f526a37
    
commit 41635d2176f7a950498b020f335232ad9f734279
+1 -1
expand_less