Описание
An issue was discovered in Django 5.1 before 5.1.7, 5.0 before 5.0.13, and 4.2 before 4.2.20. The django.utils.text.wrap() method and wordwrap template filter are subject to a potential denial-of-service attack when used with very long strings.
Ссылки
- Vendor AdvisoryRelease Notes
- Vendor Advisory
- Vendor AdvisoryRelease Notes
- Mailing List
- Third Party AdvisoryMailing List
Уязвимые конфигурации
Одно из
EPSS
5 Medium
CVSS3
7.5 High
CVSS3
Дефекты
Связанные уязвимости
An issue was discovered in Django 5.1 before 5.1.7, 5.0 before 5.0.13, and 4.2 before 4.2.20. The django.utils.text.wrap() method and wordwrap template filter are subject to a potential denial-of-service attack when used with very long strings.
An issue was discovered in Django 5.1 before 5.1.7, 5.0 before 5.0.13, and 4.2 before 4.2.20. The django.utils.text.wrap() method and wordwrap template filter are subject to a potential denial-of-service attack when used with very long strings.
An issue was discovered in Django 5.1 before 5.1.7, 5.0 before 5.0.13, ...
Django vulnerable to Allocation of Resources Without Limits or Throttling
EPSS
5 Medium
CVSS3
7.5 High
CVSS3