Changes between Initial Version and Version 1 of Ticket #26419
- Timestamp:
- Mar 29, 2016, 12:37:21 PM (9 years ago)
Legend:
- Unmodified
- Added
- Removed
- Modified
-
Ticket #26419
- Property Has patch set
-
Ticket #26419 – Description
initial v1 26 26 3. More carefully distinguishes the general purpose (prevent HTTP Host header attacks) from specific examples of target (password reset emails) and vector (poisoning caches). 27 27 4. Maintains the "even under many seemingly-safe web serve configurations" that will hopefully encourage people to use this feature. 28 29 Patch: https://github.com/django/django/pull/6357