Логотип exploitDog
bind:"CVE-2024-45231"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2024-45231"

Количество 7

Количество 7

ubuntu логотип

CVE-2024-45231

8 месяцев назад

An issue was discovered in Django v5.1.1, v5.0.9, and v4.2.16. The django.contrib.auth.forms.PasswordResetForm class, when used in a view implementing password reset flows, allows remote attackers to enumerate user e-mail addresses by sending password reset requests and observing the outcome (only when e-mail sending is consistently failing).

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2024-45231

10 месяцев назад

An issue was discovered in Django v5.1.1, v5.0.9, and v4.2.16. The django.contrib.auth.forms.PasswordResetForm class, when used in a view implementing password reset flows, allows remote attackers to enumerate user e-mail addresses by sending password reset requests and observing the outcome (only when e-mail sending is consistently failing).

CVSS3: 3.7
EPSS: Низкий
nvd логотип

CVE-2024-45231

8 месяцев назад

An issue was discovered in Django v5.1.1, v5.0.9, and v4.2.16. The django.contrib.auth.forms.PasswordResetForm class, when used in a view implementing password reset flows, allows remote attackers to enumerate user e-mail addresses by sending password reset requests and observing the outcome (only when e-mail sending is consistently failing).

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2024-45231

8 месяцев назад

An issue was discovered in Django v5.1.1, v5.0.9, and v4.2.16. The dja ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-rrqc-c2jx-6jgv

8 месяцев назад

Django allows enumeration of user e-mail addresses

CVSS3: 3.7
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3161-1

10 месяцев назад

Security update for python-Django

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3139-1

10 месяцев назад

Security update for python-Django

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-45231

An issue was discovered in Django v5.1.1, v5.0.9, and v4.2.16. The django.contrib.auth.forms.PasswordResetForm class, when used in a view implementing password reset flows, allows remote attackers to enumerate user e-mail addresses by sending password reset requests and observing the outcome (only when e-mail sending is consistently failing).

CVSS3: 5.3
0%
Низкий
8 месяцев назад
redhat логотип
CVE-2024-45231

An issue was discovered in Django v5.1.1, v5.0.9, and v4.2.16. The django.contrib.auth.forms.PasswordResetForm class, when used in a view implementing password reset flows, allows remote attackers to enumerate user e-mail addresses by sending password reset requests and observing the outcome (only when e-mail sending is consistently failing).

CVSS3: 3.7
0%
Низкий
10 месяцев назад
nvd логотип
CVE-2024-45231

An issue was discovered in Django v5.1.1, v5.0.9, and v4.2.16. The django.contrib.auth.forms.PasswordResetForm class, when used in a view implementing password reset flows, allows remote attackers to enumerate user e-mail addresses by sending password reset requests and observing the outcome (only when e-mail sending is consistently failing).

CVSS3: 5.3
0%
Низкий
8 месяцев назад
debian логотип
CVE-2024-45231

An issue was discovered in Django v5.1.1, v5.0.9, and v4.2.16. The dja ...

CVSS3: 5.3
0%
Низкий
8 месяцев назад
github логотип
GHSA-rrqc-c2jx-6jgv

Django allows enumeration of user e-mail addresses

CVSS3: 3.7
0%
Низкий
8 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3161-1

Security update for python-Django

10 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3139-1

Security update for python-Django

10 месяцев назад

Уязвимостей на страницу