Django-filer

Latest version: v3.1.1

Safety actively analyzes 628924 Python packages for vulnerabilities to keep your Python projects secure.

Scan your dependencies

Page 2 of 13

3.0.2

==================

* Fix another bug when the the thumbnailer in admin tags crashes because of
invalid or missing file
* Ensure action buttons in directory listing do not get disabled after using
cancel or back button if files or folders are selected.

3.0.1

==================

* Fix a bug that creates a server error when requesting a thumbnail from an
invalid or missing file
* Fix a bug that on some systems webp images were not recognized
* Add missing css map files

3.0.0

==================

* Add validation framework to prevent XSS attacks using HTML or SVG files (see docs)
* Only show uncategorized files to the owner or superuser if permissions are active
* Add an edit button to the file widget which opens edit file pop-up
* Refactored directory list view for significant performance increases
* Remove thumbnail generation from the directory list view request response cycle
* Support for upload of webp images
* Optional support for upload of heif images
* Add Django 4.2 support
* Add thumbnail view for faster visual management of image libraries
* Fix File.objects.only() query required for deleting user who own files.
* Fix several CSS quirks
* Fix folder widget
* Remove unused css from delete confirmation view and move file view
* Add Pillow 10 compatibility
* Update translations (de/fr/nl)
* Drop Django 2.2, 3.0, and 3.1 support

2.2.5

Not secure
==================

* Security patch (https://github.com/django-cms/django-filer/pull/1352):
While admin options shown correctly represented the user rights, some admin
end-points were available directly. A staff user without any permissions
could browse the filer folder structure, list files in a folder, add files,
and move files and folders.

2.2.4

Not secure
==================
* Add Django 4.1 support
* Add python 3.11 tests
* Fix thumbnail generation for SVG images when used as a Divio addon.

2.2.3

Not secure
==================
* Fix CSS styles (Modified SCSS had to be recompiled).

Page 2 of 13

© 2024 Safety CLI Cybersecurity Inc. All Rights Reserved.