Name |
Last commit
|
Last update |
---|---|---|
.. | ||
__init__.py | ||
factories.py | ||
test_auto_auth.py | ||
test_bulk_email_settings.py | ||
test_email.py | ||
test_login.py | ||
test_userstanding.py | ||
tests.py |
Several templates used a variable set by the user (the request host header). This led to a vulnerability where an attacker could inject their domain name into these templates (i.e., activation emails). This patch fixes this vulnerability. LMS-532
Name |
Last commit
|
Last update |
---|---|---|
.. | ||
__init__.py | Loading commit data... | |
factories.py | Loading commit data... | |
test_auto_auth.py | Loading commit data... | |
test_bulk_email_settings.py | Loading commit data... | |
test_email.py | Loading commit data... | |
test_login.py | Loading commit data... | |
test_userstanding.py | Loading commit data... | |
tests.py | Loading commit data... |