Changes between Initial Version and Version 7 of Ticket #12909


Ignore:
Timestamp:
Apr 16, 2011, 12:42:28 AM (14 years ago)
Author:
Julien Phalip
Comment:

Legend:

Unmodified
Added
Removed
Modified
  • Ticket #12909

    • Property Component django.contrib.sessionsCore framework
    • Property Milestone 1.2
    • Property Triage Stage UnreviewedAccepted
    • Property Summary Session Middleware ignores DEBUG setting - Potential Security IssueExceptions raised in response middleware don't invoke site 500/404 handlers.
    • Property Cc crucialfelix@… gary.wilson@… added
    • Property Has patch set
    • Property TypeBug
    • Property SeverityNormal
    • Property Needs tests set
  • Ticket #12909 – Description

    initial v7  
    1 
    21If there is an error connecting to the session database, the session middleware throws an Exception that's visible regardless of the DEBUG setting. The stack trace appears in a blank page (non-conforming to the standard debug template). To reproduce this ticket, drop the django_session table and try to login to any django application. The expected behavior is not to show a stack trace when DEBUG=False
    32
Back to Top