March 4, 2020
Django 3.0.4では、3.0.3にあったセキュリティの問題といくつかのバグを修正しました。
tolerance
parameter in GIS functions and aggregates on Oracle¶GIS functions and aggregates on Oracle were subject to SQL injection,
using a suitably crafted tolerance
.
select_for_update()
. When using
related fields or parent link fields with 複数テーブルの継承 in
the of
argument, the corresponding models were not locked
(#31246).DateField
or DateTimeField
expressions on
MySQL (#31312).GROUP BY
clause (#31150).2022年6月01日