Skip to content

v0.6.0

Compare
Choose a tag to compare
@moggers87 moggers87 released this 17 Jun 21:16
v0.6.0

This release contains a fix for GHSA-6r3c-8xf3-ggrr. Thanks to Gianluca Pacchiella for reporting this issue and for providing the initial patch.

  • Fixed issue where django-sendfile could serve any file, even if it was
    outside SENDFILE_ROOT. SEDNFILE_ROOT is now required for all
    backends.