#14405: problem in login view
-------------------------------------+--------------------------------------
          Reporter:  bayazee         |         Owner:  nobody
            Status:  new             |     Milestone:  1.3   
         Component:  Authentication  |       Version:  1.2   
        Resolution:                  |      Keywords:  login 
             Stage:  Unreviewed      |     Has_patch:  1     
        Needs_docs:  0               |   Needs_tests:  1     
Needs_better_patch:  0               |  
-------------------------------------+--------------------------------------
Comment (by bayazee):

 but i think we must redirect user to redirect_to variable before any check
 or process of POST data.
 redirecting to redirect_to after processing POST data may have security
 issue!
 so i attach a new patch that i think is better to fix this ticket

-- 
Ticket URL: <http://code.djangoproject.com/ticket/14405#comment:5>
Django <http://code.djangoproject.com/>
The Web framework for perfectionists with deadlines.

-- 
You received this message because you are subscribed to the Google Groups 
"Django updates" group.
To post to this group, send email to django-upda...@googlegroups.com.
To unsubscribe from this group, send email to 
django-updates+unsubscr...@googlegroups.com.
For more options, visit this group at 
http://groups.google.com/group/django-updates?hl=en.

Reply via email to