Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Django 3.2.21 security patch #303

Closed
11 of 17 tasks
magajh opened this issue Sep 4, 2023 · 5 comments
Closed
11 of 17 tasks

Django 3.2.21 security patch #303

magajh opened this issue Sep 4, 2023 · 5 comments
Assignees
Labels
security Relates to improving to the security posture of the platform

Comments

@magajh
Copy link

magajh commented Sep 4, 2023

Apply the 3.2.21 security patch to Palm branches.

Open edX services to upgrade

@magajh magajh added the security Relates to improving to the security posture of the platform label Sep 4, 2023
@magajh
Copy link
Author

magajh commented Sep 4, 2023

Hey @mariajgrimaldi, I'm tagging you here in case we want to keep track of this issue for the next Palm release #302 :)

@mariajgrimaldi
Copy link
Member

mariajgrimaldi commented Sep 7, 2023

Once you have a list of PR(s), please add them here so we can help review them. Thanks!

@mariajgrimaldi
Copy link
Member

What's the procedure when there's a new security patch while the previous ones haven't been merged? A progressive update by patch order?

@magajh
Copy link
Author

magajh commented Oct 16, 2023

@mariagrimaldi A progressive update doesn't seem necessary, as patch 3.2.22 is compatible with version 3.2.20. I think we can close this issue, close any remaining open PRs, and then create new PRs to apply the 3.2.22 patch to the respective repositories

@magajh
Copy link
Author

magajh commented Nov 14, 2023

Update: We're shifting our focus to the latest Django security patch 3.2.23. As a result, this issue and any open PRs related to the Django 3.2.21 patch will be closed.

Please see the new issue for the 3.2.23 patch here: Issue #306.

@magajh magajh closed this as completed Nov 14, 2023
@github-project-automation github-project-automation bot moved this from In progress to Done in Build-Test-Release Working Group Nov 14, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
security Relates to improving to the security posture of the platform
Projects
Development

No branches or pull requests

2 participants