[ANNOUNCE] Django security advisory: Vulnerability in password reset (master branch only)

48 views
Skip to first unread message

Tim Graham

unread,
Nov 21, 2016, 4:13:39 PM11/21/16
to django-announce, django-d...@googlegroups.com, django...@googlegroups.com
We don't normally give security advisories for issues that affect only
the master branch, but in this case we've made an exception as the issue
could be high impact.

Please see the blog post for details:
https://www.djangoproject.com/weblog/2016/nov/21/passwordresetconfirmview-security-advisory/

William Hakizimana

unread,
Nov 23, 2016, 10:22:05 AM11/23/16
to Django developers (Contributions to Django itself), django-...@googlegroups.com, django...@googlegroups.com
While we are at it, could we implement these NIST new password guidelines into django? Just
Reply all
Reply to author
Forward
0 new messages