forked from CGM_Public/pretix_original
[SECURITY] Use defusedcsv for exports
This commit is contained in:
@@ -1,9 +1,9 @@
|
|||||||
import csv
|
|
||||||
import io
|
import io
|
||||||
from collections import OrderedDict
|
from collections import OrderedDict
|
||||||
from decimal import Decimal
|
from decimal import Decimal
|
||||||
|
|
||||||
import pytz
|
import pytz
|
||||||
|
from defusedcsv import csv
|
||||||
from django import forms
|
from django import forms
|
||||||
from django.db.models import Sum
|
from django.db.models import Sum
|
||||||
from django.dispatch import receiver
|
from django.dispatch import receiver
|
||||||
|
|||||||
@@ -1,6 +1,6 @@
|
|||||||
import csv
|
|
||||||
import io
|
import io
|
||||||
|
|
||||||
|
from defusedcsv import csv
|
||||||
from django.conf import settings
|
from django.conf import settings
|
||||||
from django.contrib import messages
|
from django.contrib import messages
|
||||||
from django.core.urlresolvers import resolve, reverse
|
from django.core.urlresolvers import resolve, reverse
|
||||||
|
|||||||
@@ -1,7 +1,7 @@
|
|||||||
import csv
|
|
||||||
import io
|
import io
|
||||||
from collections import OrderedDict
|
from collections import OrderedDict
|
||||||
|
|
||||||
|
from defusedcsv import csv
|
||||||
from django import forms
|
from django import forms
|
||||||
from django.db.models.functions import Coalesce
|
from django.db.models.functions import Coalesce
|
||||||
from django.utils.translation import (
|
from django.utils.translation import (
|
||||||
|
|||||||
@@ -43,3 +43,4 @@ vobject==0.9.*
|
|||||||
pycountry
|
pycountry
|
||||||
django-countries
|
django-countries
|
||||||
pyuca # for better sorting of country names in django-countries
|
pyuca # for better sorting of country names in django-countries
|
||||||
|
defusedcsv>=1.0.1
|
||||||
|
|||||||
@@ -104,7 +104,8 @@ setup(
|
|||||||
'vobject==0.9.*',
|
'vobject==0.9.*',
|
||||||
'pycountry',
|
'pycountry',
|
||||||
'django-countries',
|
'django-countries',
|
||||||
'pyuca'
|
'pyuca',
|
||||||
|
'defusedcsv'
|
||||||
],
|
],
|
||||||
extras_require={
|
extras_require={
|
||||||
'dev': [
|
'dev': [
|
||||||
|
|||||||
Reference in New Issue
Block a user