vulnerability
Ubuntu: USN-6946-1 (CVE-2024-41990): Django vulnerabilities
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
8 | (AV:N/AC:L/Au:N/C:N/I:N/A:C) | Aug 6, 2024 | Aug 7, 2024 | Jan 28, 2025 |
Severity
8
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:C)
Published
Aug 6, 2024
Added
Aug 7, 2024
Modified
Jan 28, 2025
Description
An issue was discovered in Django 5.0 before 5.0.8 and 4.2 before 4.2.15. The urlize() and urlizetrunc() template filters are subject to a potential denial-of-service attack via very large inputs with a specific sequence of characters.
Solution(s)
ubuntu-pro-upgrade-python-djangoubuntu-pro-upgrade-python3-django

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.