​
DirectorySecurity Advisories
Sign In
Security Advisories

CGA-j4j8-9c7h-cq88

Published

Last updated

https://images.chainguard.dev/security/CGA-j4j8-9c7h-cq88
Package

py3-django

Latest Update
Fixed
Fixed Version

5.0.7-r0

Aliases
  • CVE-2024-38875
  • GHSA-qg2p-9jwr-mmqf

Severity

7.5

High

CVSS V3

Summary

Django vulnerable to Denial of Service

Description

An issue was discovered in Django 4.2 before 4.2.14 and 5.0 before 5.0.7. urlize and urlizetrunc were subject to a potential denial of service attack via certain inputs with a very large number of brackets.

References

Updates


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2024 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard Images