Skip to content

Pull requests: openedx/openedx-platform

Author
Filter by author
Loading
Label
Filter by label
Loading
Use alt + click/return to exclude labels
or + click/return for logical OR
Projects
Filter by project
Loading
Milestones
Filter by milestone
Loading
Reviews
Assignee
Filter by who’s assigned
Assigned to nobody Loading
Sort

Pull requests list

fix(extract_archive): reject zip/tar bombs in safe_extractall open-source-contribution PR author is not from Axim or 2U
#38346 opened Apr 10, 2026 by kingoftech-v01 Loading…
3 tasks
fix(profile_images): reject PIL decompression bombs on profile upload open-source-contribution PR author is not from Axim or 2U
#38345 opened Apr 10, 2026 by kingoftech-v01 Loading…
3 tasks
fix: pin CELERY_ACCEPT_CONTENT to json-only to block unsafe payloads open-source-contribution PR author is not from Axim or 2U
#38344 opened Apr 10, 2026 by kingoftech-v01 Loading…
3 tasks
fix: set SECURE_REFERRER_POLICY and COOP defaults for SecurityMiddleware open-source-contribution PR author is not from Axim or 2U
#38343 opened Apr 10, 2026 by kingoftech-v01 Loading…
3 tasks
fix(track): use hmac.compare_digest for segmentio webhook secret check open-source-contribution PR author is not from Axim or 2U
#38342 opened Apr 10, 2026 by kingoftech-v01 Loading…
3 tasks
fix(notification_prefs): return opaque error for unsubscribe token failures open-source-contribution PR author is not from Axim or 2U
#38341 opened Apr 10, 2026 by kingoftech-v01 Loading…
4 tasks
fix(password_policy): stop logging password SHA-1 hash in HIBP client open-source-contribution PR author is not from Axim or 2U
#38339 opened Apr 10, 2026 by kingoftech-v01 Loading…
3 tasks
fix: add SecurityMiddleware and deploy-time security checks open-source-contribution PR author is not from Axim or 2U
#38337 opened Apr 10, 2026 by kingoftech-v01 Loading…
fix(sessions): authenticate session payloads with HMAC open-source-contribution PR author is not from Axim or 2U
#38335 opened Apr 10, 2026 by kingoftech-v01 Loading…
fix(lms): default S3 object ACL to private in production open-source-contribution PR author is not from Axim or 2U
#38331 opened Apr 10, 2026 by kingoftech-v01 Loading…
fix: use secrets module for security-sensitive random values open-source-contribution PR author is not from Axim or 2U
#38330 opened Apr 10, 2026 by kingoftech-v01 Loading…
fix(lms): gate debug endpoints behind DEBUG setting open-source-contribution PR author is not from Axim or 2U
#38329 opened Apr 10, 2026 by kingoftech-v01 Loading…
fix(olx): persist subsection prerequisites across export/import open-source-contribution PR author is not from Axim or 2U
#38327 opened Apr 10, 2026 by kingoftech-v01 Loading…
fix(ccx): generate CCX course outlines in LMS process open-source-contribution PR author is not from Axim or 2U
#38326 opened Apr 10, 2026 by kingoftech-v01 Loading…
ProTip! Find all pull requests that aren't related to any open issues with -linked:issue.