Skip to content

Commit

Permalink
Update changelog
Browse files Browse the repository at this point in the history
  • Loading branch information
Cito committed Sep 24, 2017
1 parent 6033d82 commit b3db8f2
Showing 1 changed file with 9 additions and 0 deletions.
9 changes: 9 additions & 0 deletions CHANGES.txt
Original file line number Diff line number Diff line change
@@ -1,3 +1,12 @@
0.3.2
-----

- The login value in the search filter is now properly escaped in the
authenticate() method. Although the bind test in the second stage of the
method ensures the proper password is passed, this could be exploited
to login with a different user name like 'foo*' instead of 'foobar'.
Thanks to Patrick Valsecchi for the bug report.

0.3.1
-----

Expand Down

0 comments on commit b3db8f2

Please sign in to comment.