Simon Willison 11/6/2025

Open redirect endpoint in Datasette prior to 0.65.2 and 1.0a21

Read Original

GitHub security advisory detailing an open redirect vulnerability in Datasette versions prior to 0.65.2 and 1.0a21. The fix by James Jefferies is included in these releases, which also add Python 3.14 support, a Cloud Run deployment fix, and new features for inspecting headers and bypassing permission checks in the internal client.

Open redirect endpoint in Datasette prior to 0.65.2 and 1.0a21

Comments

No comments yet

Be the first to share your thoughts!

Browser Extension

Get instant access to AllDevBlogs from your browser

Top of the Week

2
Designing Design Systems
TkDodo Dominik Dorfmeister 2 votes
3
Introducing RSC Explorer
Dan Abramov 1 votes
5
Fragments Dec 11
Martin Fowler 1 votes
6
Adding Type Hints to my Blog
Daniel Feldroy 1 votes
7
Refactoring English: Month 12
Michael Lynch 1 votes
9