Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Jhony/security patches #407

Merged
merged 8 commits into from
Aug 31, 2020
Merged

Jhony/security patches #407

merged 8 commits into from
Aug 31, 2020

Conversation

jfavellar90
Copy link
Member

@jfavellar90 jfavellar90 commented Aug 24, 2020

In this PR XSS fixes are being backported from Juniper master version. The patches are the following:

https://github.com/edx/edx-platform/pull/24258
https://github.com/edx/edx-platform/pull/24568
https://github.com/edx/edx-platform/pull/24581
https://github.com/edx/edx-platform/pull/24725
https://github.com/edx/edx-platform/pull/24762

@felipemontoya @luismorenolopera @andrey-canon

This PR includes a new patch from edx.org that is still not in upstream. It's related to XSS vulnerabilities in templates

@jfavellar90
Copy link
Member Author

Already deployed in stage. Nothing unusual so far

@jfavellar90 jfavellar90 merged commit c8e3c0a into master Aug 31, 2020
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants