diff options
author | Bert JW Regeer <bertjw@regeer.org> | 2016-06-11 20:33:11 -0600 |
---|---|---|
committer | Bert JW Regeer <bertjw@regeer.org> | 2016-06-11 20:33:11 -0600 |
commit | 661a6c5641980b3795bfd2299fee4415549b27f7 (patch) | |
tree | b2248d321a8606d1fd5fbbc85a4bf1fb0fa4722c /CHANGES.txt | |
parent | 3d57c34ad30cdb3f0a9c4e9564e9a6da07084f91 (diff) | |
download | waitress-661a6c5641980b3795bfd2299fee4415549b27f7.tar.gz |
Move old CHANGES.txt to HISTORY.txt
Diffstat (limited to 'CHANGES.txt')
-rw-r--r-- | CHANGES.txt | 28 |
1 files changed, 0 insertions, 28 deletions
diff --git a/CHANGES.txt b/CHANGES.txt index ba9ae51..06c0db6 100644 --- a/CHANGES.txt +++ b/CHANGES.txt @@ -1,36 +1,8 @@ -0.9.0 (2016-04-15) ------------------- Deprecations ~~~~~~~~~~~~ -- Python 3.2 is no longer supported by Waitress. -- Python 2.6 will no longer be supported by Waitress in future releases. - -Security/Protections -~~~~~~~~~~~~~~~~~~~~ - -- Building on the changes made in pull request 117, add in checking for line - feed/carriage return HTTP Response Splitting in the status line, as well as - the key of a header. See https://github.com/Pylons/waitress/pull/124 and - https://github.com/Pylons/waitress/issues/122. - -- Waitress will no longer accept headers or status lines with - newline/carriage returns in them, thereby disallowing HTTP Response - Splitting. See https://github.com/Pylons/waitress/issues/117 for - more information, as well as - https://www.owasp.org/index.php/HTTP_Response_Splitting. - -Bugfixes ~~~~~~~~ -- FileBasedBuffer and more important ReadOnlyFileBasedBuffer no longer report - False when tested with bool(), instead always returning True, and becoming - more iterator like. - See: https://github.com/Pylons/waitress/pull/82 and - https://github.com/Pylons/waitress/issues/76 -- Call prune() on the output buffer at the end of a request so that it doesn't - continue to grow without bounds. See - https://github.com/Pylons/waitress/issues/111 for more information. |