pkgsrc-Changes-HG archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

[pkgsrc/trunk]: pkgsrc/www/py-django-cms Changes 3.4.3:



details:   https://anonhg.NetBSD.org/pkgsrc/rev/3be785fa3513
branches:  trunk
changeset: 362204:3be785fa3513
user:      adam <adam%pkgsrc.org@localhost>
date:      Tue May 09 08:13:50 2017 +0000

description:
Changes 3.4.3:
* Fixed a security vulnerability in the page redirect field which allowed users
  to insert JavaScript code.
* Fixed a security vulnerability where the ``next`` parameter for the toolbar login
  was not sanitised and could point to another domain.

diffstat:

 www/py-django-cms/Makefile |   4 ++--
 www/py-django-cms/PLIST    |   5 ++++-
 www/py-django-cms/distinfo |  10 +++++-----
 3 files changed, 11 insertions(+), 8 deletions(-)

diffs (46 lines):

diff -r 74057dcd2169 -r 3be785fa3513 www/py-django-cms/Makefile
--- a/www/py-django-cms/Makefile        Tue May 09 08:06:54 2017 +0000
+++ b/www/py-django-cms/Makefile        Tue May 09 08:13:50 2017 +0000
@@ -1,6 +1,6 @@
-# $NetBSD: Makefile,v 1.43 2017/02/02 07:54:11 adam Exp $
+# $NetBSD: Makefile,v 1.44 2017/05/09 08:13:50 adam Exp $
 
-DISTNAME=      django-cms-3.4.2
+DISTNAME=      django-cms-3.4.3
 PKGNAME=       ${PYPKGPREFIX}-${DISTNAME}
 CATEGORIES=    www python
 MASTER_SITES=  ${MASTER_SITE_GITHUB:=divio/}
diff -r 74057dcd2169 -r 3be785fa3513 www/py-django-cms/PLIST
--- a/www/py-django-cms/PLIST   Tue May 09 08:06:54 2017 +0000
+++ b/www/py-django-cms/PLIST   Tue May 09 08:13:50 2017 +0000
@@ -1,4 +1,4 @@
-@comment $NetBSD: PLIST,v 1.29 2017/02/02 07:54:11 adam Exp $
+@comment $NetBSD: PLIST,v 1.30 2017/05/09 08:13:50 adam Exp $
 ${PYSITELIB}/${EGG_INFODIR}/PKG-INFO
 ${PYSITELIB}/${EGG_INFODIR}/SOURCES.txt
 ${PYSITELIB}/${EGG_INFODIR}/dependency_links.txt
@@ -110,6 +110,9 @@
 ${PYSITELIB}/cms/forms/utils.py
 ${PYSITELIB}/cms/forms/utils.pyc
 ${PYSITELIB}/cms/forms/utils.pyo
+${PYSITELIB}/cms/forms/validators.py
+${PYSITELIB}/cms/forms/validators.pyc
+${PYSITELIB}/cms/forms/validators.pyo
 ${PYSITELIB}/cms/forms/widgets.py
 ${PYSITELIB}/cms/forms/widgets.pyc
 ${PYSITELIB}/cms/forms/widgets.pyo
diff -r 74057dcd2169 -r 3be785fa3513 www/py-django-cms/distinfo
--- a/www/py-django-cms/distinfo        Tue May 09 08:06:54 2017 +0000
+++ b/www/py-django-cms/distinfo        Tue May 09 08:13:50 2017 +0000
@@ -1,6 +1,6 @@
-$NetBSD: distinfo,v 1.34 2017/02/02 07:54:11 adam Exp $
+$NetBSD: distinfo,v 1.35 2017/05/09 08:13:50 adam Exp $
 
-SHA1 (django-cms-3.4.2.tar.gz) = f5fcbc7f27f20d3ef84a557e5fb33e52eb7f1f8c
-RMD160 (django-cms-3.4.2.tar.gz) = 0b2ce4431a665979c4a274ae83b4039e8ed8551e
-SHA512 (django-cms-3.4.2.tar.gz) = 5265f50edd2d84d361bdc98e03f20bb7da3a379efa1eada633eb6ccd04ed5a1facb45d8f04c2545c373ede2dd731ef2abdea1ab944e0d656640e508e537ff330
-Size (django-cms-3.4.2.tar.gz) = 5236544 bytes
+SHA1 (django-cms-3.4.3.tar.gz) = 8af432d7083ba5daa23e55a0b0a8bca41591a563
+RMD160 (django-cms-3.4.3.tar.gz) = f7dd71ad389c84e39acedb70862d8b80ab3e3d14
+SHA512 (django-cms-3.4.3.tar.gz) = 0c6b418bf025b042cefc4bb89fb663cc419a8e806a3c6e436198b7bb595d8012f79c7f02d08cee891e5e1ef83bd4f52f0e2adcc4ebd1d22325a674cbc7e69be9
+Size (django-cms-3.4.3.tar.gz) = 5234748 bytes



Home | Main Index | Thread Index | Old Index