Tim Graham
a53ee2bbf4
[1.9.x] Added CVE-2016-2512/2513 to security release archive.
...
Backport of 24fc9352183c449a8b11d1c7b442e70aa61a8800 from master
2016-03-01 12:36:17 -05:00
Florian Apolloner
af7d09b0c5
[1.9.x] Fixed CVE-2016-2513 -- Fixed user enumeration timing attack during login.
...
This is a security fix.
2016-03-01 11:38:49 -05:00
Mark Striemer
fc6d147a63
[1.9.x] Fixed CVE-2016-2512 -- Prevented spoofing is_safe_url() with basic auth.
...
This is a security fix.
2016-03-01 11:38:49 -05:00
Tim Graham
7e799217c5
[1.9.x] Added stub release notes for security issues.
2016-03-01 11:38:49 -05:00
Michal Petrucha
468c6a3b63
[1.9.x] Fixed #26217 -- Added a warning about format strings to WeekArchiveView docs.
...
Backport of fe8ea3ba3ba709b3d6c39da046f0883a296e6441 from master
2016-03-01 10:34:15 -05:00
acemaster
73d8e646d7
[1.9.x] Fixed #26165 -- Added some FAQs about CSRF protection.
...
Thanks Florian Apolloner and Shai Berger for review.
Backport of a1b1688c7d6c1a6d307bd22669bd20f08e948f8d from master
2016-03-01 09:04:16 -05:00
Taranjeet
46c6ac1ffc
[1.9.x] Fixed typos in docs/ref/models/meta.txt.
...
Backport of 11a8207d4294b46561ce34b37803f191014509af from master
2016-03-01 08:34:16 -05:00
Simon Charette
48cf751640
[1.9.x] Fixed #26186 -- Documented how app relative relationships of abstract models behave.
...
This partially reverts commit bc7d201bdbaeac14a49f51a9ef292d6312b4c45e.
Thanks Tim for the review.
Refs #25858 .
Backport of 0223e213dd690b6b6e0669f836a20efb10998c83 from master
2016-02-29 22:13:54 -05:00
Shai Berger
e9234569f6
[1.9.x] Fixed docs: release-process, Supported Versions section, concrete example
...
Security & data loss fixes are applied to the two last feature releases,
not just one.
Thanks Loic Bistuer and Tim Graham for review
Backport of 3dd4e92+72e5778 from master
2016-02-28 19:36:54 +02:00
inondle
e96cdc6f99
[1.9.x] Fixed #26275 -- Noted difference between o and Y date format chars.
...
Backport of 5fb9756eba01237cc0e550da689b9b79c51c96ed from master
2016-02-27 08:07:39 -05:00
Simon Charette
ba6f83ec95
[1.9.x] Fixed #26286 -- Prevented content type managers from sharing their cache.
...
This should prevent managers methods from returning content type instances
registered to foreign apps now that these managers are also attached to models
created during migration phases.
Thanks Tim for the review.
Refs #23822 .
Backport of 3938b3ccaa85f1c366909a4839696007726a09da from master
2016-02-26 16:22:17 -05:00
Ivan Tsouvarev
cd46947ddb
[1.9.x] Fixed #26280 -- Fixed cached template loader crash when loading nonexistent template.
...
Backport of 8890c533e0b53cb0021bd5faf15668430cd3075a from master
2016-02-26 08:02:34 -05:00
Sjoerd Job Postmus
911a77fcca
[1.9.x] Fixed #26231 -- Used .get_username in admin login template.
...
Backport of bbe136e1a2f9cbf3fd10d49fbe8558a5b394752c from master
2016-02-25 19:30:37 -05:00
Tim Graham
a23b387e5a
[1.9.x] Corrected a run on sentence in doc/topics/db/models.txt.
...
Backport of 22d2a5b00ac99e638d95cbfe1cc41ef217fa50d4 from master
2016-02-25 14:24:18 -05:00
Tim Graham
7f02c1eded
[1.9.x] Fixed #26278 -- Clarified apps.ready docs.
...
Backport of 1f8cfcf3b41bac0ec862f171e2efb51b35324045 from master
2016-02-25 08:56:13 -05:00
Tim Graham
d7881bfa5c
[1.9.x] Refs #26270 -- Reorganized TestCase docs.
...
Backport of 7a7e403325427642905a5b3e26931c2b8e92d4b1 from master
2016-02-25 08:05:14 -05:00
Tim Graham
3e1aa37422
[1.9.x] Fixed a function signature in docs/topics/auth/default.txt.
...
Backport of 441c537b66233ae57bf0023f02d8262474229e1a from master
2016-02-24 16:25:34 -05:00
Tim Graham
bd9dc810eb
[1.9.x] Removed docs of deprecated SimpleTestCase warnings behavior.
...
Removed in Django 1.7 (4f6be9a0c43050500af598527e1453d27c5c5b85).
Backport of 6637cd0ef2fd5f063df82000c18c64c246bb6e1b from master
2016-02-24 09:59:16 -05:00
Jon Dufresne
04780e8a25
[1.9.x] Fixed #26267 -- Fixed BoundField to reallow slices of subwidgets.
...
Backport of b41268135995cef46d40e550f9301fab20cf330d from master
2016-02-24 07:03:24 -05:00
Markus Holtermann
5ca1d0a654
[1.9.x] Fixed spelling error
...
Backport of b14470c7b7ee73c328c9c60100165301e6c2e24b from master
2016-02-23 10:27:41 +11:00
Tim Graham
31c9301f27
[1.9.x] Fixed #26188 -- Documented how to wrap password hashers.
...
Backport of 5a541e2e6cb01e254f20c302093a24d7dc9af8ce from master
2016-02-22 17:29:38 -05:00
Tim Graham
c6ab81db79
[1.9.x] Refs #26253 -- Amended release note as this issue doesn't affect 1.8.
2016-02-22 17:18:31 -05:00
Tim Graham
3fedfc452f
[1.9.x] Fixed #26253 -- Fixed crashing deprecation shims in SimpleTemplateResponse.
...
Thanks David Reitter for the report and initial patch.
2016-02-22 17:07:07 -05:00
Daniel Quinn
174811c553
[1.9.x] Fixed import location of check_password() in docs.
...
Backport of de7edc005f06c47c1d39d5cb30762d424ee4dabf from master
2016-02-22 12:43:36 -05:00
Raphael Michel
c7448c39a3
[1.9.x] Fixed #26243 -- Noted that 'python -R' is enabled by default in Python 3.3.
...
Backport of 5c31d8d189ec24d83e25e2c560860f70307b431e from master
2016-02-19 10:50:48 -05:00
Sergey Fedoseev
9c508e4de8
[1.9.x] Fixed some code blocks indentation in GIS docs.
...
Backport of dbaa1a6b59b4f8f942e8378465aaeb943c3d9de5 from master
2016-02-19 08:35:11 -05:00
Juan José Conti
9357fdb613
[1.9.x] Used relative models imports in the GIS tutorial.
...
Backport of bb7042cda from master.
2016-02-19 08:29:36 +01:00
Tim Graham
07ffee6411
[1.9.x] Fixed #26204 -- Reallowed dashes in top-level domains for URLValidator.
...
Thanks Shai Berger for the review.
Backport of b1afebf882db5296cd9dcea26ee66d5250922e53 from master
2016-02-18 19:51:29 -05:00
Tim Graham
277b39cbbc
[1.9.x] Added intended use in the admin's introduction.
...
Backport of b954ad0640e1f246f60f31a07a567274c2f20751 from master
2016-02-18 09:12:06 -05:00
Akshesh
0d2b97ca18
[1.9.x] Fixed #26219 -- Fixed crash when filtering by Decimal in RawQuery.
...
Backport of fdccc02576ae5a524338f65e629948604d80b4c8 from master
2016-02-17 14:00:38 -05:00
Tim Graham
477b82cf8a
[1.9.x] Fixed #25687 -- Documented how to add database function support to third-party backends.
...
Thanks Kristof Claes for the initial patch.
Backport of 88034c9938d92193d2104ecfe77999c69301dcc1 from master
2016-02-17 13:36:55 -05:00
Berker Peksag
f78892f2de
[1.9.x] Refs #19353 -- Added tests for using custom user models with built-in auth forms.
...
Also updated topics/auth/customizing.txt to reflect that subclasses of
UserCreationForm and UserChangeForm can be used with custom user models.
Thanks Baptiste Mispelon for the initial documentation.
Backport of f0425c72601f466c6a71518749c6d15b94945514 from master
2016-02-17 10:42:54 -05:00
Jon Dufresne
61f1b6ff21
[1.9.x] Followed recommended ValidationError use in docs.
...
Backport of 0db7e61076116c2d93d61f98ef31690542359e48 from master
2016-02-17 09:07:11 -05:00
Claude Paroz
205cafd01e
[1.9.x] Fixed #26215 -- Fixed RangeField/ArrayField serialization with None values
...
Also added tests for HStoreField and JSONField.
Thanks Aleksey Bukin for the report and Tim Graham for the initial patch and
the review.
Backport of 928c12eb1 from master.
2016-02-16 21:09:16 +01:00
Tim Graham
cc7ea1905d
[1.9.x] Fixed possible "RuntimeError: maximum recursion depth exceeded" building docs.
...
Backport of 6a71ac61bd8ebd57f036e076a4f7f29cf2d88c00 from master
2016-02-16 07:31:26 -05:00
Ryan Nowakowski
ca1f4390c4
[1.9.x] Fixed #26221 -- Used find_packages() in reusable apps tutorial.
...
Otherwise the migrations package won't be included in the tarball.
Backport of 11af73eaeb4371ded68460c1591abd6aefa57a90 from master
2016-02-15 19:25:49 -05:00
Alexey Kotlyarov
765e6c411c
[1.9.x] Fixed #26212 -- Made forms.FileField and translation.lazy_number() picklable.
...
Backport of b59f963ad2a49322725b20fac71661bd49643443 from master
2016-02-15 11:45:44 -05:00
Camilo Nova
2b28a21232
[1.9.x] Added import in docs/topics/email.txt example.
...
Backport of a6f856df52d532d5537191eca237de6efdffe309 from master
2016-02-12 13:45:07 -05:00
Markus Holtermann
765f6d8041
[1.9.x] Fixed allow_migrate() signature in documentation
...
Backport of 228427ab1ab6aaafed4eacfb532f7ddb6cc1ed6c from master
2016-02-12 14:35:38 +11:00
Johannes Linke
6a0832dacb
[1.9.x] Fixed #26111 -- Clarified that fixtures are loaded once per TestCase.
...
Backport of 02430ef19d9a7d3663cbc1cf66438e9e86b919d1 from master
2016-02-11 18:54:27 -05:00
Becka R
ec16503f2b
[1.9.x] Clarified "database column type" explanation.
...
Backport of cf48962b361b573e580b79839c19b640b7f304a2 from master
2016-02-11 18:27:14 -05:00
Anssi Kääriäinen
1d9ee181fe
[1.9.x] Fixed #26196 -- Made sure __in lookups use to_field as default.
...
Thanks Simon Charette for the test.
Backport of 46ecfb9b3a11a360724e3375ba78c33c46d6a992 from master
2016-02-11 11:09:55 -05:00
Anssi Kääriäinen
25496f0f7b
[1.9.x] Fixed #26153 -- Reallowed Q-objects in ForeignObject.get_extra_descriptor_filter().
...
Backport of 353aecbf8c1a8cc6f3985149e2895d49e53dfc1c from master
2016-02-11 09:00:38 -05:00
Tim Graham
f7332b3ec5
[1.9.x] Updated instructions for gettext on Windows.
...
Backport of 1d86d4c72b322498819fb8a17a577300152dc6d4 from master
2016-02-11 08:46:25 -05:00
Tim Graham
9f743e25bd
[1.9.x] Fixed #26206 -- Fixed docs comments causing empty code blocks.
...
Backport of f2b45ddd99ff23c0bd103f1dda1e1cb0c8dc6d84 from master
2016-02-11 07:59:30 -05:00
userimack
c5d591733f
[1.9.x] Fixed #26182 -- Removed an obsolete (refs #24917 ) paragraph in admindocs.
...
Backport of 75143fa13f4f1ad2be84a103f7ce0eef9d06d3b4 from master
2016-02-09 09:49:55 -05:00
userimack
f3194d951d
[1.9.x] Fixed #26181 -- Corrected AngularJS CSRF example.
...
Backport of 7a7b82e6f4c34fbfd7a11123986ed74f9f752a48 from master
2016-02-09 09:38:04 -05:00
Simon Charette
58723722e9
Fixed #26162 -- Checked query name clashes of hidden relationships.
...
Although reverse accessor clashes should be skipped query name can't be hidden.
Thanks to Ian Foote and Tim Graham for the review.
2016-02-08 10:31:01 -05:00
Tim Graham
6b689a505c
[1.9.x] Fixed #26177 -- Fixed a PostgreSQL crash with TIME_ZONE=None and USE_TZ=False.
...
Backport of 97eb3356b2a7488c8d0ca0e47ef3e538852d44a2 from master
2016-02-08 07:41:56 -05:00
Tim Graham
530f0adcf3
[1.9.x] Added stub release notes for 1.8.10.
...
Backport of d6337e65ed86ac0d2e55ebcbc710c42f87e0a3b6 from master
2016-02-06 09:24:56 -05:00