Логотип exploitDog
product: "django"
Консоль
Логотип exploitDog

exploitDog

product: "django"

Количество 775

Количество 775

github логотип

GHSA-4rrr-2h4v-f3j9

6 дней назад

Django has Inefficient Algorithmic Complexity

EPSS: Низкий
github логотип

GHSA-4mq2-gc4j-cmw6

около 2 лет назад

Django Template Engine Vulnerable to XSS

CVSS3: 9.3
EPSS: Низкий
github логотип

GHSA-4c42-4rxm-x6qf

больше 3 лет назад

Django Denial of Service Vulnerability in the authentication framework

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4894-5vqc-6r2r

больше 3 лет назад

Django cross-site scripting (XSS) vulnerability in the AdminURLFieldWidget widget

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-46x4-9jmv-jc8p

больше 3 лет назад

Django Access Restrictions Bypass

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3jqw-crqj-w8qw

больше 7 лет назад

Denial of service in django

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3f2c-jm6v-cr35

больше 3 лет назад

Django DNS Rebinding Vulnerability

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-37hp-765x-j95x

около 7 лет назад

Django open redirect and possible XSS attack via user-supplied numeric redirect URLs

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-33mw-q7rj-mjwj

6 дней назад

Django has Inefficient Algorithmic Complexity

EPSS: Низкий
github логотип

GHSA-337x-4q8g-prc5

около 7 лет назад

Improper Input Validation in Django

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-2mcm-79hx-8fxw

6 дней назад

Django has Observable Timing Discrepancy

EPSS: Низкий
github логотип

GHSA-2hrw-hx67-34x6

почти 3 года назад

Resource exhaustion in Django

CVSS3: 7.5
EPSS: Средний
github логотип

GHSA-2gwj-7jmv-h26r

почти 4 года назад

SQL Injection in Django

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2f9x-5v75-3qv4

около 7 лет назад

Django Denial-of-service possibility in truncatechars_html and truncatewords_html template filters

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-296w-6qhq-gf92

больше 3 лет назад

Django denial of service via file upload naming

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2655-q453-22f9

больше 3 лет назад

Django Allows Arbitrary URL Generation

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2026-1312

6 дней назад

An issue was discovered in 6.0 before 6.0.2, 5.2 before 5.2.11, and 4.2 before 4.2.28. `.QuerySet.order_by()` is subject to SQL injection in column aliases containing periods when the same alias is, using a suitably crafted dictionary, with dictionary expansion, used in `FilteredRelation`. Earlier, unsupported Django series (such as 5.0.x, 4.1.x, and 3.2.x) were not evaluated and may also be affected. Django would like to thank Solomon Kebede for reporting this issue.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2026-1312

6 дней назад

An issue was discovered in 6.0 before 6.0.2, 5.2 before 5.2.11, and 4.2 before 4.2.28. `.QuerySet.order_by()` is subject to SQL injection in column aliases containing periods when the same alias is, using a suitably crafted dictionary, with dictionary expansion, used in `FilteredRelation`. Earlier, unsupported Django series (such as 5.0.x, 4.1.x, and 3.2.x) were not evaluated and may also be affected. Django would like to thank Solomon Kebede for reporting this issue.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2026-1312

6 дней назад

An issue was discovered in 6.0 before 6.0.2, 5.2 before 5.2.11, and 4. ...

CVSS3: 5.4
EPSS: Низкий
ubuntu логотип

CVE-2026-1287

6 дней назад

An issue was discovered in 6.0 before 6.0.2, 5.2 before 5.2.11, and 4.2 before 4.2.28. `FilteredRelation` is subject to SQL injection in column aliases via control characters, using a suitably crafted dictionary, with dictionary expansion, as the `**kwargs` passed to `QuerySet` methods `annotate()`, `aggregate()`, `extra()`, `values()`, `values_list()`, and `alias()`. Earlier, unsupported Django series (such as 5.0.x, 4.1.x, and 3.2.x) were not evaluated and may also be affected. Django would like to thank Solomon Kebede for reporting this issue.

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-4rrr-2h4v-f3j9

Django has Inefficient Algorithmic Complexity

0%
Низкий
6 дней назад
github логотип
GHSA-4mq2-gc4j-cmw6

Django Template Engine Vulnerable to XSS

CVSS3: 9.3
2%
Низкий
около 2 лет назад
github логотип
GHSA-4c42-4rxm-x6qf

Django Denial of Service Vulnerability in the authentication framework

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
github логотип
GHSA-4894-5vqc-6r2r

Django cross-site scripting (XSS) vulnerability in the AdminURLFieldWidget widget

CVSS3: 6.1
0%
Низкий
больше 3 лет назад
github логотип
GHSA-46x4-9jmv-jc8p

Django Access Restrictions Bypass

CVSS3: 5.5
0%
Низкий
больше 3 лет назад
github логотип
GHSA-3jqw-crqj-w8qw

Denial of service in django

CVSS3: 7.5
2%
Низкий
больше 7 лет назад
github логотип
GHSA-3f2c-jm6v-cr35

Django DNS Rebinding Vulnerability

CVSS3: 8.1
3%
Низкий
больше 3 лет назад
github логотип
GHSA-37hp-765x-j95x

Django open redirect and possible XSS attack via user-supplied numeric redirect URLs

CVSS3: 6.1
1%
Низкий
около 7 лет назад
github логотип
GHSA-33mw-q7rj-mjwj

Django has Inefficient Algorithmic Complexity

0%
Низкий
6 дней назад
github логотип
GHSA-337x-4q8g-prc5

Improper Input Validation in Django

CVSS3: 6.5
1%
Низкий
около 7 лет назад
github логотип
GHSA-2mcm-79hx-8fxw

Django has Observable Timing Discrepancy

0%
Низкий
6 дней назад
github логотип
GHSA-2hrw-hx67-34x6

Resource exhaustion in Django

CVSS3: 7.5
25%
Средний
почти 3 года назад
github логотип
GHSA-2gwj-7jmv-h26r

SQL Injection in Django

CVSS3: 9.8
2%
Низкий
почти 4 года назад
github логотип
GHSA-2f9x-5v75-3qv4

Django Denial-of-service possibility in truncatechars_html and truncatewords_html template filters

CVSS3: 5.3
1%
Низкий
около 7 лет назад
github логотип
GHSA-296w-6qhq-gf92

Django denial of service via file upload naming

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
github логотип
GHSA-2655-q453-22f9

Django Allows Arbitrary URL Generation

CVSS3: 7.5
4%
Низкий
больше 3 лет назад
ubuntu логотип
CVE-2026-1312

An issue was discovered in 6.0 before 6.0.2, 5.2 before 5.2.11, and 4.2 before 4.2.28. `.QuerySet.order_by()` is subject to SQL injection in column aliases containing periods when the same alias is, using a suitably crafted dictionary, with dictionary expansion, used in `FilteredRelation`. Earlier, unsupported Django series (such as 5.0.x, 4.1.x, and 3.2.x) were not evaluated and may also be affected. Django would like to thank Solomon Kebede for reporting this issue.

CVSS3: 5.4
0%
Низкий
6 дней назад
nvd логотип
CVE-2026-1312

An issue was discovered in 6.0 before 6.0.2, 5.2 before 5.2.11, and 4.2 before 4.2.28. `.QuerySet.order_by()` is subject to SQL injection in column aliases containing periods when the same alias is, using a suitably crafted dictionary, with dictionary expansion, used in `FilteredRelation`. Earlier, unsupported Django series (such as 5.0.x, 4.1.x, and 3.2.x) were not evaluated and may also be affected. Django would like to thank Solomon Kebede for reporting this issue.

CVSS3: 5.4
0%
Низкий
6 дней назад
debian логотип
CVE-2026-1312

An issue was discovered in 6.0 before 6.0.2, 5.2 before 5.2.11, and 4. ...

CVSS3: 5.4
0%
Низкий
6 дней назад
ubuntu логотип
CVE-2026-1287

An issue was discovered in 6.0 before 6.0.2, 5.2 before 5.2.11, and 4.2 before 4.2.28. `FilteredRelation` is subject to SQL injection in column aliases via control characters, using a suitably crafted dictionary, with dictionary expansion, as the `**kwargs` passed to `QuerySet` methods `annotate()`, `aggregate()`, `extra()`, `values()`, `values_list()`, and `alias()`. Earlier, unsupported Django series (such as 5.0.x, 4.1.x, and 3.2.x) were not evaluated and may also be affected. Django would like to thank Solomon Kebede for reporting this issue.

CVSS3: 5.4
0%
Низкий
6 дней назад

Уязвимостей на страницу