Python/django/2.2.26
A high-level Python web framework that encourages rapid development and clean, pragmatic design.
https://pypi.org/project/django
BSD
3 Security Vulnerabilities
Infinite Loop in Django
- https://nvd.nist.gov/vuln/detail/CVE-2022-23833
- https://docs.djangoproject.com/en/4.0/releases/security/
- https://groups.google.com/forum/#!forum/django-announce
- https://www.djangoproject.com/weblog/2022/feb/01/security-releases/
- https://github.com/advisories/GHSA-6cw3-g6wv-c2xv
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/B4SQG2EAF4WCI2SLRL6XRDJ3RPK3ZRDV/
- https://security.netapp.com/advisory/ntap-20220221-0003/
- https://www.debian.org/security/2022/dsa-5254
- https://github.com/django/django/commit/c477b761804984c932704554ad35f78a2e230c6a
- https://github.com/django/django/commit/d16133568ef9c9b42cb7a08bdf9ff3feec2e5468
An issue was discovered in MultiPartParser in Django 2.2 before 2.2.27, 3.2 before 3.2.12, and 4.0 before 4.0.2. Passing certain inputs to multipart forms could result in an infinite loop when parsing files.
Cross-site Scripting in Django
- https://nvd.nist.gov/vuln/detail/CVE-2022-22818
- https://docs.djangoproject.com/en/4.0/releases/security/
- https://groups.google.com/forum/#!forum/django-announce
- https://www.djangoproject.com/weblog/2022/feb/01/security-releases/
- https://github.com/advisories/GHSA-95rw-fx8r-36v6
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/B4SQG2EAF4WCI2SLRL6XRDJ3RPK3ZRDV/
- https://security.netapp.com/advisory/ntap-20220221-0003/
- https://www.debian.org/security/2022/dsa-5254
- https://github.com/django/django/commit/01422046065d2b51f8f613409cad2c81b39487e5
- https://github.com/django/django/commit/1a1e8278c46418bde24c86a65443b0674bae65e2
- https://github.com/django/django/commit/c27a7eb9f40b64990398978152e62b6ff839c2e6
- https://docs.djangoproject.com/en/4.0/releases/security
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/B4SQG2EAF4WCI2SLRL6XRDJ3RPK3ZRDV
- https://security.netapp.com/advisory/ntap-20220221-0003
- https://www.djangoproject.com/weblog/2022/feb/01/security-releases
The {% debug %}
template tag in Django 2.2 before 2.2.27, 3.2 before 3.2.12, and 4.0 before 4.0.2 does not properly encode the current context. This may lead to XSS.
Django denial-of-service attack in the intcomma template filter
- https://nvd.nist.gov/vuln/detail/CVE-2024-24680
- https://docs.djangoproject.com/en/5.0/releases/security/
- https://groups.google.com/forum/#%21forum/django-announce
- https://www.djangoproject.com/weblog/2024/feb/06/security-releases/
- https://github.com/django/django/commit/16a8fe18a3b81250f4fa57e3f93f0599dc4895bc
- https://github.com/django/django/commit/55519d6cf8998fe4c8f5c8abffc2b10a7c3d14e9
- https://github.com/django/django/commit/572ea07e84b38ea8de0551f4b4eda685d91d09d2
- https://github.com/django/django/commit/c1171ffbd570db90ca206c30f8e2b9f691243820
- https://github.com/pypa/advisory-database/tree/main/vulns/django/PYSEC-2024-28.yaml
- https://github.com/advisories/GHSA-xxj9-f6rv-m3x4
- https://docs.djangoproject.com/en/5.0/releases/security
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/D2JIRXEDP4ZET5KFMAPPYSK663Q52NEX
- https://www.djangoproject.com/weblog/2024/feb/06/security-releases
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SN2PLJGYSAAG5KUVIUFJYKD3BLQ4OSN6
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZQJOMNRMVPCN5WMIZ7YSX5LQ7IR2NY4D
An issue was discovered in Django 3.2 before 3.2.24, 4.2 before 4.2.10, and Django 5.0 before 5.0.2. The intcomma template filter was subject to a potential denial-of-service attack when used with very long strings.
360 Other Versions
Version | License | Security | Released | |
---|---|---|---|---|
1.9.10 | BSD | 10 | 2016-09-26 - 18:32 | over 7 years |
1.9.9 | BSD | 11 | 2016-08-01 - 18:10 | almost 8 years |
1.9.8 | BSD | 11 | 2016-07-18 - 18:19 | almost 8 years |
1.9.7 | BSD | 12 | 2016-06-04 - 23:43 | almost 8 years |
1.9.6 | BSD | 12 | 2016-05-02 - 22:33 | about 8 years |
1.9.5 | BSD | 12 | 2016-04-01 - 17:47 | about 8 years |
1.9.4 | BSD | 12 | 2016-03-05 - 14:31 | about 8 years |
1.9.3 | BSD | 12 | 2016-03-01 - 17:00 | about 8 years |
1.9.2 | BSD | 14 | 2016-02-01 - 17:17 | over 8 years |
1.9.1 | BSD | 15 | 2016-01-02 - 13:50 | over 8 years |
1.9 | BSD | 15 | 2015-12-01 - 23:55 | over 8 years |
1.8.19 | BSD | 6 | 2018-03-06 - 14:22 | about 6 years |
1.8.18 | BSD | 8 | 2017-04-04 - 14:07 | about 7 years |
1.8.17 | BSD | 10 | 2016-12-01 - 23:03 | over 7 years |
1.8.16 | BSD | 10 | 2016-11-01 - 14:09 | over 7 years |
1.8.15 | BSD | 12 | 2016-09-26 - 18:30 | over 7 years |
1.8.14 | BSD | 13 | 2016-07-18 - 18:38 | almost 8 years |
1.8.13 | BSD | 14 | 2016-05-02 - 22:49 | about 8 years |
1.8.12 | BSD | 14 | 2016-04-01 - 17:54 | about 8 years |
1.8.11 | BSD | 14 | 2016-03-05 - 18:36 | about 8 years |
1.8.10 | BSD | 14 | 2016-03-01 - 17:10 | about 8 years |
1.8.9 | BSD | 16 | 2016-02-01 - 17:24 | over 8 years |
1.8.8 | BSD | 16 | 2016-01-02 - 14:28 | over 8 years |
1.8.7 | BSD | 16 | 2015-11-24 - 17:28 | over 8 years |
1.8.6 | BSD | 17 | 2015-11-04 - 17:03 | over 8 years |
1.8.5 | BSD | 17 | 2015-10-04 - 00:06 | over 8 years |
1.8.4 | BSD | 17 | 2015-08-18 - 17:06 | over 8 years |
1.8.3 | BSD | 18 | 2015-07-08 - 19:43 | almost 9 years |
1.8.2 | BSD | 21 | 2015-05-20 - 18:02 | almost 9 years |
1.8.1 | BSD | 21 | 2015-05-01 - 20:36 | about 9 years |
1.8 | BSD | 21 | 2015-04-01 - 20:12 | about 9 years |
1.7.11 | BSD | 10 | 2015-11-24 - 17:19 | over 8 years |
1.7.10 | BSD | 11 | 2015-08-18 - 17:15 | over 8 years |
1.7.9 | BSD | 12 | 2015-07-08 - 21:33 | almost 9 years |
1.7.8 | BSD | 14 | 2015-05-01 - 20:42 | about 9 years |
1.7.7 | BSD | 14 | 2015-03-18 - 23:49 | about 9 years |
1.7.6 | BSD | 14 | 2015-03-09 - 15:30 | about 9 years |
1.7.5 | BSD | 15 | 2015-02-25 - 13:58 | about 9 years |
1.7.4 | BSD | 15 | 2015-01-27 - 17:22 | over 9 years |
1.7.3 | BSD | 15 | 2015-01-13 - 18:39 | over 9 years |
1.7.2 | BSD | 18 | 2015-01-03 - 01:37 | over 9 years |
1.7.1 | BSD | 18 | 2014-10-22 - 16:56 | over 9 years |
1.7 | BSD | 18 | 2014-09-02 - 21:09 | over 9 years |
1.6.11 | BSD | 13 | 2015-03-18 - 23:57 | about 9 years |
1.6.10 | BSD | 13 | 2015-01-13 - 18:48 | over 9 years |
1.6.9 | BSD | 16 | 2015-01-03 - 01:52 | over 9 years |
1.6.8 | BSD | 16 | 2014-10-22 - 16:50 | over 9 years |
1.6.7 | BSD | 16 | 2014-09-02 - 20:55 | over 9 years |
1.6.6 | BSD | 16 | 2014-08-20 - 20:17 | over 9 years |
1.6.5 | BSD | 19 | 2014-05-14 - 18:33 | almost 10 years |
1.6.4 | BSD | 21 | 2014-04-28 - 20:40 | about 10 years |
1.6.3 | BSD | 21 | 2014-04-21 - 23:12 | about 10 years |
1.6.2 | BSD | 23 | 2014-02-06 - 21:51 | over 10 years |
1.6.1 | BSD | 23 | 2013-12-12 - 20:04 | over 10 years |
1.6 | BSD | 23 | 2013-11-06 - 15:01 | over 10 years |
1.5.12 | BSD | 13 | 2015-01-03 - 02:09 | over 9 years |
1.5.11 | BSD | 13 | 2014-10-22 - 16:45 | over 9 years |
1.5.10 | BSD | 13 | 2014-09-02 - 20:51 | over 9 years |
1.5.9 | BSD | 13 | 2014-08-20 - 20:10 | over 9 years |
1.5.8 | BSD | 16 | 2014-05-14 - 18:35 | almost 10 years |
1.5.7 | BSD | 18 | 2014-04-28 - 20:35 | about 10 years |
1.5.6 | BSD | 18 | 2014-04-21 - 22:53 | about 10 years |
1.5.5 | BSD | 20 | 2013-10-25 - 04:32 | over 10 years |
1.5.4 | BSD | 20 | 2013-09-15 - 06:30 | over 10 years |
1.5.3 | BSD | 21 | 2013-09-11 - 01:26 | over 10 years |
1.5.2 | BSD | 22 | 2013-08-13 - 16:54 | over 10 years |
1.5.1 | BSD | 24 | 2013-03-28 - 20:57 | about 11 years |
1.5 | BSD | 24 | 2013-02-26 - 19:30 | about 11 years |
1.4.22 | BSD | 11 | 2015-08-18 - 17:22 | over 8 years |
1.4.21 | BSD | 12 | 2015-07-08 - 19:56 | almost 9 years |
1.4.20 | BSD | 14 | 2015-03-19 - 00:03 | about 9 years |
1.4.19 | BSD | 14 | 2015-01-27 - 17:11 | over 9 years |
1.4.18 | BSD | 14 | 2015-01-13 - 18:54 | over 9 years |
1.4.17 | BSD | 17 | 2015-01-03 - 02:20 | over 9 years |
1.4.16 | BSD | 17 | 2014-10-22 - 16:37 | over 9 years |
1.4.15 | BSD | 17 | 2014-09-02 - 20:44 | over 9 years |
1.4.14 | BSD | 17 | 2014-08-20 - 20:01 | over 9 years |
1.4.13 | BSD | 20 | 2014-05-14 - 18:27 | almost 10 years |
1.4.12 | BSD | 22 | 2014-04-28 - 20:30 | about 10 years |
1.4.11 | BSD | 22 | 2014-04-21 - 22:40 | about 10 years |
1.4.10 | BSD | 24 | 2013-11-06 - 14:21 | over 10 years |
1.4.9 | BSD | 24 | 2013-10-25 - 04:38 | over 10 years |
1.4.8 | BSD | 24 | 2013-09-15 - 06:22 | over 10 years |
1.4.7 | BSD | 25 | 2013-09-11 - 01:18 | over 10 years |
1.4.6 | BSD | 26 | 2013-08-13 - 16:52 | over 10 years |
1.4.5 | BSD | 27 | 2013-02-20 - 19:54 | about 11 years |
1.4.4 | BSD | 27 | 2013-02-19 - 20:27 | about 11 years |
1.4.3 | BSD | 29 | 2012-12-10 - 21:46 | over 11 years |
1.4.2 | BSD | 29 | 2012-10-17 - 22:18 | over 11 years |
1.4.1 | BSD | 30 | 2012-07-30 - 22:48 | almost 12 years |
1.4 | BSD | 32 | 2012-03-23 - 18:00 | about 12 years |
1.3.7 | BSD | 21 | 2013-02-20 - 20:03 | about 11 years |
1.3.6 | BSD | 21 | 2013-02-19 - 20:32 | about 11 years |
1.3.5 | BSD | 23 | 2012-12-10 - 21:39 | over 11 years |
1.3.4 | BSD | 23 | 2013-03-05 - 22:33 | about 11 years |
1.3.3 | BSD | 24 | 2012-08-01 - 22:08 | almost 12 years |
1.3.2 | BSD | 24 | 2012-07-30 - 23:02 | almost 12 years |
1.3.1 | BSD | 26 | 2011-09-10 - 03:36 | over 12 years |
1.3 | BSD | 30 | 2011-03-23 - 06:09 | about 13 years |
1.2.7 | BSD | 23 | 2011-09-11 - 03:05 | over 12 years |