Week ending 2026-02-08 (Week 06)
I had to travel to attend a family matter so this week I was less available than usual.
Triaged
- #36894 (Email fail_silently, auth_user, auth_password are ignored when connection param provided) – Django - Email fail_silently, auth_user, auth_password are ignored when connection param provided (accepted)
- #36899 (Implement `Session.__bool__`) – Django - Implement
Session.__bool__(accepted) - #36901 (Centralize mitigations against timing attacks targeting user enumeration) – Django - Centralize mitigations against timing attacks targeting user enumeration (accepted)
Reviewed
- Fixed #36900 -- Sanitized downloaded template archive filenames. by ar3ph · Pull Request #20639 · django/django · GitHub - Fixed #36900 – Sanitized downloaded template archive filenames.
- [checklists] Advise to mention EOL dates by jacobtylerwalls · Pull Request #2497 · django/djangoproject.com · GitHub - [checklists] Advise to mention EOL dates
Authored
- #36900 (startproject and startapp do not sanitize filename from Content-Disposition header) – Django - startproject and startapp do not sanitize filename from Content-Disposition header
Security
- Reports triage and follow up.
Other/Misc
- Fellows 1-1 sync.
- Steering Council monthly meeting.
- Deployed djangoproject.com.