Ticket #23004 - Cleanse entries from request.META in debug views

classic Classic list List threaded Threaded
1 message Options
Reply | Threaded
Open this post in threaded view
|

Ticket #23004 - Cleanse entries from request.META in debug views

ohlr
I'd like to draw your attention to this ticket which is accepted and now open for 5 years.

https://code.djangoproject.com/ticket/23004

From my point of view it is a quite important one because:
When specifying ADMINS in settings.py sensetive data from request.META 
is not cleansed e.g. in E-Mails resulting out of internal-server-errors.

There are currently two PRs and what is missing is:

a) a decision which to take
b) reviews

The PRs:
https://github.com/django/django/pull/11224
https://github.com/django/django/pull/10748

--
You received this message because you are subscribed to the Google Groups "Django developers (Contributions to Django itself)" group.
To unsubscribe from this group and stop receiving emails from it, send an email to [hidden email].
To post to this group, send email to [hidden email].
Visit this group at https://groups.google.com/group/django-developers.
To view this discussion on the web visit https://groups.google.com/d/msgid/django-developers/59a32916-a7bf-42da-88b6-df7224faabd6%40googlegroups.com.
For more options, visit https://groups.google.com/d/optout.