Ecosyste.ms: Advisories

An open API service providing security vulnerability metadata for many open source software ecosystems.

pypi Django Security Advisories

Browse all Security Advisories for pypi Django

Loading...
Moderate
GSA_kwCzR0hTQS1ycnFjLWMyangtNmpnds4ABADW
Django allows enumeration of user e-mail addresses
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 18.7
Published: 14 days ago
Moderate
GSA_kwCzR0hTQS01aGdjLTJ2ZnAtbXF2Y84ABADU
Django vulnerable to denial-of-service attack via the urlize() and urlizetrunc() template filters
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 26.8
Published: 14 days ago
Moderate
GSA_kwCzR0hTQS1qaDc1LTk5aGgtcXZ4Oc4AA-c0
Django memory consumption vulnerability
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 26.8
Published: 3 months ago
Moderate
GSA_kwCzR0hTQS1yODM2LWhoNnYtcmc1Z84AA-cw
Django vulnerable to denial-of-service attack
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 26.8
Published: 3 months ago
Moderate
GSA_kwCzR0hTQS03OTVjLTl4cGMteHc2Z84AA-cz
Django vulnerable to a denial-of-service attack
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 26.8
Published: 3 months ago
Critical
GSA_kwCzR0hTQS1wdjRwLWN3d2ctNHJwaM4AA-c1
Django SQL injection vulnerability
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 46.0
Published: 3 months ago
Moderate
GSA_kwCzR0hTQS14N3EyLXdyN2cteHFtZs4AA9wR
Django vulnerable to user enumeration attack
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 26.8
Published: 3 months ago
High
GSA_kwCzR0hTQS05am1mLTIzN2ctcWY0Ns4AA9wT
Django Path Traversal vulnerability
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: 3 months ago
High
GSA_kwCzR0hTQS1mNmY4LTlteDYtOW14Ms4AA9wW
Django vulnerable to Denial of Service
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: 3 months ago
High
GSA_kwCzR0hTQS1xZzJwLTlqd3ItbW1xZs4AA9wQ
Django vulnerable to Denial of Service
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: 3 months ago
Moderate
GSA_kwCzR0hTQS14eGo5LWY2cnYtbTN4NM4AA5IP
Django denial-of-service attack in the intcomma template filter
Ecosystems: pypi
Packages: Django, django
Source: GitHub Advisory Database
Blast Radius: 29.9
Published: 9 months ago
Moderate
GSA_kwCzR0hTQS1oOGdjLXBnajItdmptM84AA25m
Django Denial-of-service in django.utils.text.Truncator
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 29.9
Published: 12 months ago
High
GSA_kwCzR0hTQS1xbWY5LTZqcWYtajhmcc4AA23t
Django potential denial of service vulnerability in UsernameField on Windows
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: 12 months ago
High
GSA_kwCzR0hTQS1qaDN3LTR2dmYtbWpncs4AA0Lg
Django has regular expression denial of service vulnerability in EmailValidator/URLValidator
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 1 year ago
Critical
GSA_kwCzR0hTQS1yM3hjLXByZ3ItbWc5cM4AAzG9
Django bypasses validation when using one form field to upload multiple files
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 49.6
Published: over 1 year ago
High
GSA_kwCzR0hTQS0yaHJ3LWh4NjctMzR4Ns4AAxpM
Resource exhaustion in Django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 1 year ago
High
GSA_kwCzR0hTQS04eDk0LWhtamgtOTdocc4AAt78
Django vulnerable to Reflected File Download attack
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 44.5
Published: about 2 years ago
Critical
GSA_kwCzR0hTQS1wNjR4LThyeHgtd2Y2cc4AAtF-
Django `Trunc()` and `Extract()` database functions vulnerable to SQL Injection
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 49.6
Published: over 2 years ago
High
GSA_kwCzR0hTQS01aDJxLTRocnAtdjlycs4AAfPc
Django vulnerable to Improper Restriction of Operations within the Bounds of a Memory Buffer
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 2 years ago
High
GSA_kwCzR0hTQS01OXc4LTR3bTItNHh3OM4AAfPe
Django Image Field Vulnerable to Image Decompression Bombs
Ecosystems: pypi
Packages: Django, django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS1xcmg3LXg2ZnAtYzJtcM4AAfMI
XML Entity Expansion (XEE) in Django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS14NjRtLTY4NmYtZm1tM84AAfL2
XML External Entity (XXE) in Django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
High
GSA_kwCzR0hTQS00YzQyLTRyeG0teDZxZs4AAeye
Django Denial of Service Vulnerability in the authentication framework
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS02d2dwLWZ3Zm0tbXhwM84AAct0
Django allows user sessions hijacking via an empty string in the session key
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS02d2NyLXdjcW0tM21maM4AAcl8
Django settings leak in date template filter
Ecosystems: pypi
Packages: Django, django
Source: GitHub Advisory Database
Blast Radius: 14.2
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS03cWZ3LWo3aHAtdjQ1Z84AAcfU
Django WSGI Header Spoofing Vulnerability
Ecosystems: pypi
Packages: Django, django
Source: GitHub Advisory Database
Blast Radius: 26.8
Published: over 2 years ago
High
GSA_kwCzR0hTQS1qaGpnLXcyY3AtNWo0NM4AAce9
Django DoS in django.views.static.serve
Ecosystems: pypi
Packages: Django, django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 2 years ago
High
GSA_kwCzR0hTQS02Zzk1LXg2Y2otbWc0ds4AAce7
Django database denial-of-service with ModelMultipleChoiceField
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS1ndjk4LWc2MjgtbTl4Nc4AAce6
Django Cross-site Scripting Vulnerability
Ecosystems: pypi
Packages: Django, django
Source: GitHub Advisory Database
Blast Radius: 30.9
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS14MzhtLTQ4NmMtMndyOc4AAcXd
Denial-of-service possibility in logout() view by filling session store
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 2 years ago
Critical
GSA_kwCzR0hTQS1ydnE2LW1ycHYtbTZybc4AAcJq
Code Injection in Django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 49.6
Published: over 2 years ago
High
GSA_kwCzR0hTQS13cWpqLWh4ODQtdjQ0Oc4AAcJQ
Django Vulnerable to MySQL Injection
Ecosystems: pypi
Packages: Django, django
Source: GitHub Advisory Database
Blast Radius: 49.6
Published: over 2 years ago
High
GSA_kwCzR0hTQS04OWhqLXhmeDUtN3E2Ns4AAcJo
Django Reuses Cached CSRF Token
Ecosystems: pypi
Packages: Django, django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 2 years ago
High
GSA_kwCzR0hTQS1xN3EyLXFmMnEtcnczd84AAcJT
Django Vulnerable to Cache Poisoning
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 37.4
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS1wdzI3LXc3dzQtOXFjN84AAZQd
Django XSS Vulnerability
Ecosystems: pypi
Packages: Django, django
Source: GitHub Advisory Database
Blast Radius: 37.4
Published: over 2 years ago
High
GSA_kwCzR0hTQS1xNXF3LTQzNjQtNWhobc4AAYwZ
Django Vulnerable to HTTP Response Splitting Attack
Ecosystems: pypi
Packages: Django, django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 2 years ago
High
GSA_kwCzR0hTQS1jcWY3LWZmOWgtNzk2N84AAYwU
Django ReDoS in validators.URLValidator
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS1wZ3hoLXdmdzQtangyds4AAYdf
Django denial of service via empty session record creation
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 2 years ago
High
GSA_kwCzR0hTQS0zZjJjLWptNnYtY3IzNc4AAYRU
Django DNS Rebinding Vulnerability
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 41.0
Published: over 2 years ago
Critical
GSA_kwCzR0hTQS1tdjhnLWZoaDYtNjI2N84AAYRT
Django user with hardcoded password created when running tests on Oracle
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 49.6
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS05Y3dnLW1oeGYtaGg1Oc4AAYL4
Django cross-site scripting (XSS) vulnerability via is_safe_url function
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 30.9
Published: over 2 years ago
High
GSA_kwCzR0hTQS13eGczLW1mcGgtcWc5d84AAXiG
Django Might Allow CSRF Requests via URL Verification
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 2 years ago
High
GSA_kwCzR0hTQS1ybTJqLXg1OTUtcTljas4AAXiH
Django Vulnerable to Cache Poisoning
Ecosystems: pypi
Packages: Django, django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 2 years ago
High
GSA_kwCzR0hTQS12cTNoLTNxN3YtOXByd84AAVFj
Django Allows Open Redirects
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 2 years ago
High
GSA_kwCzR0hTQS1mN2NtLWNjZnAtM3E0cs4AAVFA
Django Incorrectly Validates URLs
Ecosystems: pypi
Packages: Django, django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS02MjVnLWd4OGMteGNtZ84AAVE-
Django Middleware Enables Session Hijacking
Ecosystems: pypi
Packages: Django, django
Source: GitHub Advisory Database
Blast Radius: 32.9
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS1ydzc1LW03Z3AtOTJtM84AAVFB
Django data leakage via querystring manipulation in admin
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 26.8
Published: over 2 years ago
High
GSA_kwCzR0hTQS1qM2ozLWpyZmgtY20yd84AAVA_
Django Denial-of-service possibility with strip_tags
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS03ZnE4LTRwdjUtNXc1Y84AAVA8
Django cross-site scripting (XSS) attack via user-supplied redirect URLs
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 30.9
Published: over 2 years ago
High
GSA_kwCzR0hTQS0yOTZ3LTZxaHEtZ2Y5Ms4AAU-L
Django denial of service via file upload naming
Ecosystems: pypi
Packages: Django, django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS1yN3c2LXA0N2ctdmo1M83igQ
Django Data leakage via admin history log
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 21.8
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS1nOHhnLWpnajYtNDlyM83ifg
Django is vulnerable to Denial of Service attack in formset
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 26.8
Published: over 2 years ago
High
GSA_kwCzR0hTQS1wNm01LWg3cHAtdjJ4Nc3M8Q
Django Regex Algorithmic Complexity Causes Denial of Service
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 2 years ago
High
GSA_kwCzR0hTQS05eGc3LWdnOW0tcm1xOc3JJQ
Django Admin Media Handler Vulnerable to Directory Traversal
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS05djhoLTU3Z3YtcWNoNs2qog
Django vulnerable to Denial of Service via i18n middleware component
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 29.9
Published: over 2 years ago
High
GSA_kwCzR0hTQS1xYzk5LWczd20taGd4cs2XHg
Django Arbitrary Code Execution
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS1td3YyLTM5OGgtdjQ4Oc2XIA
Django Improper Access Control
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
Critical
GSA_kwCzR0hTQS13MjRoLXY5cWgtOGd4as07NQ
SQL Injection in Django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 49.6
Published: over 2 years ago
Critical
GSA_kwCzR0hTQS0yZ3dqLTdqbXYtaDI2cs07Ng
SQL Injection in Django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 49.6
Published: over 2 years ago
High
GSA_kwCzR0hTQS02Y3czLWc2d3YtYzJ4ds0okA
Infinite Loop in Django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 2 years ago
High
GSA_kwCzR0hTQS04YzVqLTlyOWYtYzZ3OM0g8Q
Information disclosure in Django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: almost 3 years ago
Moderate
GSA_kwCzR0hTQS1qcmgyLWhjNHItN2p3eM0g8w
Directory-traversal in Django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 26.8
Published: almost 3 years ago
High
GSA_kwCzR0hTQS01M3F3LXE3NjUtNGZ3d80g9Q
Denial-of-service in Django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: almost 3 years ago
High
GSA_kwCzR0hTQS12NnJoLWhwNXgtODZyds0afw
Potential bypass of an upstream access control based on URL paths in Django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 36.9
Published: almost 3 years ago
Critical
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXhwZnAtZjU2OS1xM3Ay
SQL Injection in Django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 49.6
Published: about 3 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXA5OXYtNXczYy1qcXE5
Django Access Control Bypass possibly leading to SSRF, RFI, and LFI attacks
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 3 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTY4dzgtcWpxMy0yZ2Zt
Path Traversal in Django
Ecosystems: pypi
Packages: Django, django
Source: GitHub Advisory Database
Blast Radius: 24.8
Published: over 3 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXFtNTctdmhxMy0zZndm
Header injection possible in Django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 30.9
Published: over 3 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXJ4anAtbWZtOS13NHdy
Path Traversal in Django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 3 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXhneGMtdjJxZy1jaG1o
Directory Traversal in Django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 26.8
Published: over 3 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLW02Z2otaDlnbS1ndzQ0
Django Incorrect Default Permissions
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 3 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTJtMzQtamNqdi00NXhm
XSS in Django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 30.9
Published: over 4 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXdwanItajU3eC13eGZ3
Data leakage via cache key collision in Django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 29.9
Published: over 4 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTNnaDIteHc3NC1qbWN3
SQL injection in Django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 44.5
Published: over 4 years ago
Critical
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWhtcjQtbTJoNS0zM3F4
SQL injection in Django
Ecosystems: pypi
Packages: Django, django
Source: GitHub Advisory Database
Blast Radius: 49.6
Published: over 4 years ago
Critical
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXZmcTYtaHE1ci0yN3I2
Django Potential account hijack via password reset form
Ecosystems: pypi
Packages: Django, django
Source: GitHub Advisory Database
Blast Radius: 49.6
Published: almost 5 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWh2bWYtcjkyci0yN2hy
Django allows unintended model editing
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 32.9
Published: almost 5 years ago
Critical
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTZyOTctY2o1NS05aHJx
SQL Injection in Django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 49.6
Published: about 5 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWg1anYtNHA3dy02NGpn
Django Denial-of-service in strip_tags()
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: about 5 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXY5cWctM2o4cC1yNjN2
Uncontrolled Recursion in Django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: about 5 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWM0cWgtNHZndi1xYzZn
Django Denial-of-service in django.utils.text.Truncator
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: about 5 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWg1ODItMnBjaC0zeHYz
Django Denial-of-service by filling session store
Ecosystems: pypi
Packages: Django, django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 5 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTZjN3YtMmY0OS04aDI2
Django Incorrect HTTP detection with reverse-proxy connecting via HTTPS
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 26.8
Published: over 5 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTdycDItZm0yaC13Y2hq
Django Cross-site Scripting in AdminURLFieldWidget
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 30.9
Published: over 5 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXdoNGgtdjNmMi1yMnBw
Uncontrolled Memory Consumption in Django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 5 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTMzN3gtNHE4Zy1wcmM1
Improper Input Validation in Django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 32.9
Published: almost 6 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTlyOHctNng4Yy02anI5
Django vulnerable to XSS on 500 pages
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 30.9
Published: almost 6 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTM3aHAtNzY1eC1qOTV4
Django open redirect and possible XSS attack via user-supplied numeric redirect URLs
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 30.9
Published: almost 6 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXIyOHYtbXc2Ny1tNXA5
Django denial-of-service possibility in urlize and urlizetrunc template filters
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 26.8
Published: almost 6 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTVoZzMtNmMyZi1mM3dy
Django open redirect
Ecosystems: pypi
Packages: Django, django
Source: GitHub Advisory Database
Blast Radius: 30.9
Published: about 6 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXJmNGotajI3Mi1majg2
Django vulnerable to information leakage in AuthenticationForm
Ecosystems: pypi
Packages: Django, django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: about 6 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLThtM3ItcnY1Zy1mY3Bx
Cross-site scripting in django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 30.9
Published: about 6 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWZ4cGctZ2c5Zy03Nmdq
Cross-site scripting in django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 30.9
Published: over 6 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXg4OGotOTN2Yy13cG1w
Session manipulation in Django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 20.2
Published: over 6 years ago
Critical
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTdnOWgtYzg4dy1yN2gy
Directory traversal in Django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 46.0
Published: over 6 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTd3cGgtZmM0dy13cXAy
Improper date handling in Django
Ecosystems: pypi
Packages: Django, django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 6 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWZ3cjUtcTlyeC0yOTRm
Improper query string handling in Django
Ecosystems: pypi
Packages: Django, django
Source: GitHub Advisory Database
Blast Radius: 32.9
Published: over 6 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTNqcXctY3Jxai13OHF3
Denial of service in django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 6 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWg5NWotaDJydi1xcmc0
Django Cross-Site Request Forgery vulnerability
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 6 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTVqMmgtaDVoZy0zd2Y4
Cross-site request forgery in Django
Ecosystems: pypi
Packages: Django
Source: GitHub Advisory Database
Blast Radius: 38.0
Published: over 6 years ago
Statistics
Advisories: 20,359
Packages: 8,934
Repositories: 4
Ecosystems: 12
Filter by Package
tensorflow 433 tensorflow-gpu 425 tensorflow-cpu 422 Django 100 apache-airflow 84 Plone 72 ansible 63 salt 55 apache-superset 51 nova 47 mlflow 46 django 44 rdiffweb 42 plone 41 vyper 38 moin 35 matrix-synapse 35 gradio 32 opencv-python 31 Pillow 31 opencv-contrib-python 31 keystone 31 pillow 26 glance 20 mercurial 18 mindsdb 18 langchain 18 cobbler 17 PaddlePaddle 17 notebook 17 cryptography 16 neutron 16 paddlepaddle 15 ethyca-fides 15 pyload-ng 15 modoboa 14 pyftpdlib 14 lollms 13 twisted 13 vantage6 13 OctoPrint 13 urllib3 12 swift 12 roundup 12 aiohttp 12 wagtail 12 calibreweb 12 zenml 11 onionshare-cli 11 horizon 11 opencv-contrib-python-headless 10 opencv-python-headless 10 sentry 10 trytond 10 Flask-AppBuilder 10 nautobot 10 Zope 9 zope 9 kiwitcms 9 waitress 9 cinder 9 ryu 9 python-keystoneclient 9 aubio 8 litellm 8 numpy 8 label-studio 8 ckan 8 pgadmin4 8 pyspark 8 trac 8 ipython 8 Products.CMFPlone 7 pip 7 lief 7 jupyter-server 7 scrapy 7 pysaml2 7 inventree 7 matrix-sydent 7 graphite-web 6 mailman 6 tornado 6 aim 6 mage-ai 6 requests 6 Zope2 6 lxml 6 web2py 6 yt-dlp 6 tuf 6 apache-airflow-providers-apache-hive 6 Moin 6 Jinja2 5 oauthenticator 5 pretix 5 paramiko 5 whoogle-search 5 saleor 5 feedparser 5 lmdb 5 omero-web 5 torchserve 5 grpcio 5 grpc 5 bleach 5 jupyterhub 5 python-gnupg 5 nltk 5 ait-core 5 dtale 5 langchain-experimental 5 werkzeug 4 GitPython 4 starlette 4 Radicale 4 Keystone 4 Werkzeug 4 tripleo-heat-templates 4 Scrapy 4 dbt-core 4 Nova 4 apache-iotdb 4 nvflare 4 changedetection.io 4 transformers 4 bottle 4 FreeTAKServer-UI 4 jwcrypto 4 buildbot 4 keylime 4 esphome 4 Flask-Security-Too 4 Weblate 4 open-webui 4 mobsf 4 PyPDF2 4 software.amazon.awssdk.iotdevicesdk:aws-iot-device-sdk 4 indico 4 aws-iot-device-sdk-v2 4 barbican 4 indy-node 4 streamlit 4 markdown2 4 ansible-core 4 reportlab 4 httpie 4 jupyterlab 4 qutebrowser 4 awsiotsdk 4 apache-submarine 4 Pygments 4 gerapy 3 localstack 3 vanna 3 django-tinymce 3 pandasai 3 ujson 3 apache-libcloud 3 pywasm3 3 Mezzanine 3 homeassistant 3 datasette 3 sickrage 3 dulwich 3 pyyaml 3 anki 3 sosreport 3 rsa 3 fava 3 io.grpc:grpc-protobuf 3 ansible-runner 3 torch 3 flask 3 tinymce 3 Red-DiscordBot 3 pycrypto 3 asyncua 3 asyncssh 3 tinymce/tinymce 3 quokka 3 wger 3 h2o 3 ray 3 llama-index 3 TinyMCE 3 docassemble.webapp 3 slixmpp 3 mistune 3 openvpn-monitor 3 setuptools 3 keyring 3 mayan-edms 3 copyparty 3 scikit-learn 3 plone.supermodel 3 keystonemiddleware 3 ecdsa 3 clearml 3 jupyter-server-proxy 3