Plone.session

Latest version: v4.0.4

Safety actively analyzes 637918 Python packages for vulnerabilities to keep your Python projects secure.

Scan your dependencies

Page 3 of 7

3.7.1

------------------

Bug fixes:

- Python3 compatibility [ale-rt, pbauer]

3.7.0

------------------

New features:

- Use Resource Registry for JS/CSS registration
[jensens]

Bug fixes:

- Fixes 11: Pseudo CSS-file is not loaded anymore in merged legacy bundle.
Now optional JS based auto-refresh support is working again.
[jensens]

- Modernize README.
[jensens]

3.6.2

------------------

Bug fixes:

- Hardening default timeout of session.
This solves Plone security internal issue 126 (severity low, non-critical).
Session timeout is now the same as in mod_auth_tkt: 2h.
This follows the recommendation of the German BSI (federal office for security in the information technology).
See https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Internetsicherheit/isi_web_server_checkliste_Plone.pdf
For existing sites this can be adjusted at https://HOST/acl_users/session/manage_propertiesForm
The Plone Security Team follows the BSI and recommends administrators to change the setting in their existing Plone sites.
[jensens]

- Add Python 2 / 3 compatibility
[vincero]

3.6.1

------------------

Bug fixes:

- Hide uninstall profile in install listings.
[jensens]

3.6.0

------------------

New:

- Added uninstall profile. [maurits]

3.5.6

------------------

- Cleanup: Pep8, plone style conventions, better readbility.
[jensens]

Page 3 of 7

© 2024 Safety CLI Cybersecurity Inc. All Rights Reserved.