Commit d9d10458 authored by Victor Stinner's avatar Victor Stinner Committed by GitHub

bpo-35907: Clarify the NEWS entry (GH-13557)

parent 25d8404c
CVE-2019-9948: Avoid file reading as disallowing the unnecessary URL scheme in
:func:`urllib.urlopen`, :meth:`urllib.URLopener.open` and
:meth:`urllib.URLopener.retrieve`.
CVE-2019-9948: Avoid file reading by disallowing ``local-file://`` and
``local_file://`` URL schemes in :func:`urllib.urlopen`,
:meth:`urllib.URLopener.open` and :meth:`urllib.URLopener.retrieve`.
Markdown is supported
0%
or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment