"Django security releases issued: 5.0.8 and 4.2.15"

https://www.djangoproject.com/weblog/2024/aug/06/security-releases/

* Potential SQL injection in QuerySet.values() and values_list()

* Memory exhaustion in django.utils.numberformat.floatformat()

* Potential denial-of-service in django.utils.html.urlize()

* Potential denial-of-service vulnerability in django.utils.html.urlize() and AdminURLFieldWidget

#security #infosec #cybersecurity #django #python

Reply to this note

Please Login to reply.

Discussion

No replies yet.