From b26c9170964540619b9f7c580d46bfd806ef700a Mon Sep 17 00:00:00 2001 From: "Jonathan S. Katz" Date: Wed, 12 Sep 2018 12:44:22 -0400 Subject: [PATCH] Disallow minor version numbers in URLs for security page. --- pgweb/urls.py | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/pgweb/urls.py b/pgweb/urls.py index 64caf1e9..9b6ae042 100644 --- a/pgweb/urls.py +++ b/pgweb/urls.py @@ -74,7 +74,7 @@ urlpatterns = [ url(r'^search/$', pgweb.search.views.search), url(r'^support/security/$', pgweb.security.views.index), - url(r'^support/security/([\d\.]+)/$', pgweb.security.views.version), + url(r'^support/security/(\d\.\d|\d{2})/$', pgweb.security.views.version), url(r'^support/security_archive/$', RedirectView.as_view(url='/support/security/', permanent=True)), url(r'^support/professional_(support|hosting)/$', pgweb.profserv.views.root), -- 2.39.5