"Django security releases issued: 5.0.7 and 4.2.14"

https://www.djangoproject.com/weblog/2024/jul/09/security-releases/

* CVE-2024-38875 [moderate]: Potential denial-of-service in django.utils.html.urlize

* CVE-2024-39329 [low]: Username enumeration through timing difference for users with unusable passwords

* CVE-2024-39330 [low]: Potential directory-traversal in django.core.files.storage.Storage.save

* CVE-2024-39614 [moderate]: Potential denial-of-service in django.utils.translation.get_supported_language_variant

#security #django

Reply to this note

Please Login to reply.

Discussion

No replies yet.