Note di rilascio di Django 1.11.29¶
4 Marzo 2020
Django 1.11.29 risolve un problema di sicurezza in 1.11.28.
CVE-2020-9402: Potential SQL injection via tolerance
parameter in GIS functions and aggregates on Oracle¶
GIS functions and aggregates on Oracle were subject to SQL injection,
using a suitably crafted tolerance
.