Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2024-53907

Опубликовано: 06 дек. 2024
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 7.5

Описание

An issue was discovered in Django 5.1 before 5.1.4, 5.0 before 5.0.10, and 4.2 before 4.2.17. The strip_tags() method and striptags template filter are subject to a potential denial-of-service attack via certain inputs containing large sequences of nested incomplete HTML entities.

РелизСтатусПримечание
devel

released

3:4.2.17-2
esm-infra-legacy/trusty

needs-triage

esm-infra/bionic

released

1:1.11.11-1ubuntu1.21+esm8
esm-infra/focal

not-affected

2:2.2.12-1ubuntu0.26
esm-infra/xenial

released

1.8.7-1ubuntu5.15+esm8
focal

released

2:2.2.12-1ubuntu0.26
jammy

released

2:3.2.12-2ubuntu1.15
noble

released

3:4.2.11-1ubuntu1.4
oracular

released

3:4.2.15-1ubuntu1.1
plucky

released

3:4.2.17-2

Показывать по

EPSS

Процентиль: 27%
0.00092
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 6.5
redhat
7 месяцев назад

An issue was discovered in Django 5.1 before 5.1.4, 5.0 before 5.0.10, and 4.2 before 4.2.17. The strip_tags() method and striptags template filter are subject to a potential denial-of-service attack via certain inputs containing large sequences of nested incomplete HTML entities.

CVSS3: 7.5
nvd
6 месяцев назад

An issue was discovered in Django 5.1 before 5.1.4, 5.0 before 5.0.10, and 4.2 before 4.2.17. The strip_tags() method and striptags template filter are subject to a potential denial-of-service attack via certain inputs containing large sequences of nested incomplete HTML entities.

CVSS3: 7.5
debian
6 месяцев назад

An issue was discovered in Django 5.1 before 5.1.4, 5.0 before 5.0.10, ...

CVSS3: 7.5
github
6 месяцев назад

Django denial-of-service in django.utils.html.strip_tags()

CVSS3: 7.5
fstec
7 месяцев назад

Уязвимость функции strip_tags() модуля django.utils.html программной платформы для веб-приложений Django, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 27%
0.00092
Низкий

7.5 High

CVSS3