Changes between Initial Version and Version 1 of Ticket #26419


Ignore:
Timestamp:
Mar 29, 2016, 12:37:21 PM (9 years ago)
Author:
Joshua Pereyda
Comment:

Legend:

Unmodified
Added
Removed
Modified
  • Ticket #26419

    • Property Has patch set
  • Ticket #26419 – Description

    initial v1  
    26263. More carefully distinguishes the general purpose (prevent HTTP Host header attacks) from specific examples of target (password reset emails) and vector (poisoning caches).
    27274. Maintains the "even under many seemingly-safe web serve configurations" that will hopefully encourage people to use this feature.
     28
     29Patch: https://github.com/django/django/pull/6357
Back to Top