Количество 10
Количество 10
CVE-2026-7666
An issue was discovered in Django 6.0 before 6.0.6 and 5.2 before 5.2.15. `django.core.mail.backends.smtp.EmailBackend` in Django fails to prevent reuse of a partially-initialized connection after a failed `STARTTLS` handshake when `fail_silently=True`, which allows on-path network attackers to read email content via cleartext interception. Earlier, unsupported Django series (such as 5.0.x, 4.1.x, and 3.2.x) were not evaluated and may also be affected. Django would like to thank Kasper Dupont for reporting this issue.
CVE-2026-7666
An issue was discovered in Django 6.0 before 6.0.6 and 5.2 before 5.2.15. `django.core.mail.backends.smtp.EmailBackend` in Django fails to prevent reuse of a partially-initialized connection after a failed `STARTTLS` handshake when `fail_silently=True`, which allows on-path network attackers to read email content via cleartext interception. Earlier, unsupported Django series (such as 5.0.x, 4.1.x, and 3.2.x) were not evaluated and may also be affected. Django would like to thank Kasper Dupont for reporting this issue.
CVE-2026-7666
An issue was discovered in Django 6.0 before 6.0.6 and 5.2 before 5.2.15. `django.core.mail.backends.smtp.EmailBackend` in Django fails to prevent reuse of a partially-initialized connection after a failed `STARTTLS` handshake when `fail_silently=True`, which allows on-path network attackers to read email content via cleartext interception. Earlier, unsupported Django series (such as 5.0.x, 4.1.x, and 3.2.x) were not evaluated and may also be affected. Django would like to thank Kasper Dupont for reporting this issue.
CVE-2026-7666
An issue was discovered in Django 6.0 before 6.0.6 and 5.2 before 5.2. ...
ROS-20260707-80-0030
Уязвимость python-django
GHSA-mm6v-q8q9-pgcf
Django fails to prevent reuse of a partially-initialized connection after a failed `STARTTLS` handshake
BDU:2026-10469
Уязвимость функции django.core.mail.backends.smtp.EmailBackend() программной платформы для веб-приложений Django, позволяющая нарушителю раскрыть защищаемую информацию
ROS-20260707-73-0032
Уязвимость python-django
openSUSE-SU-2026:20937-1
Security update for python-Django
SUSE-SU-2026:2318-1
Security update for python-Django
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-7666 An issue was discovered in Django 6.0 before 6.0.6 and 5.2 before 5.2.15. `django.core.mail.backends.smtp.EmailBackend` in Django fails to prevent reuse of a partially-initialized connection after a failed `STARTTLS` handshake when `fail_silently=True`, which allows on-path network attackers to read email content via cleartext interception. Earlier, unsupported Django series (such as 5.0.x, 4.1.x, and 3.2.x) were not evaluated and may also be affected. Django would like to thank Kasper Dupont for reporting this issue. | CVSS3: 3.1 | 0% Низкий | 3 месяца назад | |
CVE-2026-7666 An issue was discovered in Django 6.0 before 6.0.6 and 5.2 before 5.2.15. `django.core.mail.backends.smtp.EmailBackend` in Django fails to prevent reuse of a partially-initialized connection after a failed `STARTTLS` handshake when `fail_silently=True`, which allows on-path network attackers to read email content via cleartext interception. Earlier, unsupported Django series (such as 5.0.x, 4.1.x, and 3.2.x) were not evaluated and may also be affected. Django would like to thank Kasper Dupont for reporting this issue. | CVSS3: 3.1 | 0% Низкий | 3 месяца назад | |
CVE-2026-7666 An issue was discovered in Django 6.0 before 6.0.6 and 5.2 before 5.2.15. `django.core.mail.backends.smtp.EmailBackend` in Django fails to prevent reuse of a partially-initialized connection after a failed `STARTTLS` handshake when `fail_silently=True`, which allows on-path network attackers to read email content via cleartext interception. Earlier, unsupported Django series (such as 5.0.x, 4.1.x, and 3.2.x) were not evaluated and may also be affected. Django would like to thank Kasper Dupont for reporting this issue. | CVSS3: 3.1 | 0% Низкий | 3 месяца назад | |
CVE-2026-7666 An issue was discovered in Django 6.0 before 6.0.6 and 5.2 before 5.2. ... | CVSS3: 3.1 | 0% Низкий | 3 месяца назад | |
ROS-20260707-80-0030 Уязвимость python-django | CVSS3: 3.7 | 0% Низкий | 2 месяца назад | |
GHSA-mm6v-q8q9-pgcf Django fails to prevent reuse of a partially-initialized connection after a failed `STARTTLS` handshake | CVSS3: 3.1 | 0% Низкий | 3 месяца назад | |
BDU:2026-10469 Уязвимость функции django.core.mail.backends.smtp.EmailBackend() программной платформы для веб-приложений Django, позволяющая нарушителю раскрыть защищаемую информацию | CVSS3: 3.1 | 0% Низкий | 3 месяца назад | |
ROS-20260707-73-0032 Уязвимость python-django | CVSS3: 3.7 | 0% Низкий | 2 месяца назад | |
openSUSE-SU-2026:20937-1 Security update for python-Django | 3 месяца назад | |||
SUSE-SU-2026:2318-1 Security update for python-Django | 3 месяца назад |
Уязвимостей на страницу