September 3, 2025
Django 5.1.12 fixes a security issue with severity "high" in 5.1.11.
FilteredRelation column aliases¶FilteredRelation was subject to SQL injection in column aliases,
using a suitably crafted dictionary, with dictionary expansion, as the
**kwargs passed to QuerySet.annotate() or QuerySet.alias().
4月 20, 2026
本文整理自 Django 6.0 官方中文文档,转载请注明出处。
上一篇:Django 5.1.11 release notes — Django 6.0.4 documentation(2026)
下一篇:Django 5.1.13 release notes — Django 6.0.4 documentation(2026)