Skip to content

Commit 121115d

Browse files
committed
[1.11.x] Added CVE-2019-19844 to the security archive.
Backport of 5a2b9f0 from master
1 parent 2c4fb9a commit 121115d

File tree

1 file changed

+13
-0
lines changed

1 file changed

+13
-0
lines changed

docs/releases/security.txt

Lines changed: 13 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1029,3 +1029,16 @@ Versions affected
10291029
* Django 2.2 :commit:`(patch) <cf694e6852b0da7799f8b53f1fb2f7d20cf17534>`
10301030
* Django 2.1 :commit:`(patch) <5d50a2e5fa36ad23ab532fc54cf4073de84b3306>`
10311031
* Django 1.11 :commit:`(patch) <869b34e9b3be3a4cfcb3a145f218ffd3f5e3fd79>`
1032+
1033+
December 18, 2019 - :cve:`2019-19844`
1034+
-------------------------------------
1035+
1036+
Potential account hijack via password reset form. `Full description
1037+
<https://www.djangoproject.com/weblog/2019/dec/18/security-releases/>`__
1038+
1039+
Versions affected
1040+
~~~~~~~~~~~~~~~~~
1041+
1042+
* Django 3.0 :commit:`(patch) <302a4ff1e8b1c798aab97673909c7a3dfda42c26>`
1043+
* Django 2.2 :commit:`(patch) <4d334bea06cac63dc1272abcec545b85136cca0e>`
1044+
* Django 1.11 :commit:`(patch) <f4cff43bf921fcea6a29b726eb66767f67753fa2>`

0 commit comments

Comments
 (0)