I am using a old SVN version dated 11/2007 [VERSION = (0, 97, 'pre')]. I guess that does not matter any more.
Thanks for all these replys, which do make me feel better now. I am not knowledgable enough for web security, so I am indeed thrilled when our security guy tell me there is a "XSS" threat on on "/admin". Anyway, whether this may or may not cause real danger, I think it is worthy to bring it up and fix. Does the current SVN trunk have this issue fixed? If so, I will just update my Django. Thanks. --~--~---------~--~----~------------~-------~--~----~ You received this message because you are subscribed to the Google Groups "Django users" group. To post to this group, send email to django-users@googlegroups.com To unsubscribe from this group, send email to [EMAIL PROTECTED] For more options, visit this group at http://groups.google.com/group/django-users?hl=en -~----------~----~----~----~------~----~------~--~---