Django-session-security

Latest version: v2.6.7

Safety actively analyzes 629639 Python packages for vulnerabilities to keep your Python projects secure.

Scan your dependencies

Page 2 of 5

2.5.1

- 90: add SESSION_SECURITY_PASSIVE_URL_NAMES setting

2.5.0

- 79 remove compiled binary from source to comply with Debian source code
repository policy by nirgal
- 81 support django 1.10 by eriktelepovsky
- 84 a11y support to modal dialog by lynnco
- 85 support for mobile device activity by kalekseev
- 88 dutch translation update by rdekker1
- 91 test django 1.11 and 2.0 instead of 1.7 by jpic

2.4.0

- 75 Fix vulnerability when SESSION_EXPIRE_AT_BROWSER_CLOSE is off
- 77 Crash if SESSION_EXPIRE_AT_BROWSER_CLOSE is off
- 78 Update test matrix to have Django 1.10 + master instead of just
master
- 74 Created security mailing list

Thanks ClaytonDelay for contacting about the issue.
Note that if you don't have SESSION_EXPIRE_AT_BROWSER_CLOSE=True in your
settings, then the project won't start unless you set
SESSION_SECURITY_INSECURE=True, which you shouldn't.

2.3.3

2.3.2

Not secure
- 58: Allow for custom expiration based on request (65) by mjschultz

2.3.1

Not secure
- 57: added redirectTo parameter to the script by Andrei Coman
- test stabilization with django-sbo-selenium
- Django 1.10 support

Page 2 of 5

© 2024 Safety CLI Cybersecurity Inc. All Rights Reserved.