python-django vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the python-django package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • M
CVE-2024-53907

<1.8.7-1ubuntu5.15+esm8
  • M
CVE-2024-24680

*
  • M
Improper Validation of Specified Quantity in Input

*
  • L
Improper Input Validation

<1.8.7-1ubuntu5.15+esm7
  • M
Resource Exhaustion

*
  • M
Allocation of Resources Without Limits or Throttling

<1.8.7-1ubuntu5.15+esm6
  • H
SQL Injection

<1.8.7-1ubuntu5.15+esm5
  • M
Cross-site Scripting (XSS)

<1.8.7-1ubuntu5.15+esm4
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

<1.8.7-1ubuntu5.15+esm4
  • L
Directory Traversal

*
  • M
CVE-2021-45115

*
  • L
Improper Input Validation

*
  • L
Directory Traversal

<1.8.7-1ubuntu5.15+esm3
  • M
Unrestricted Upload of File with Dangerous Type

<1.8.7-1ubuntu5.15+esm1
  • L
Directory Traversal

<1.8.7-1ubuntu5.15
  • M
Directory Traversal

<1.8.7-1ubuntu5.14
  • M
Cross-site Scripting (XSS)

<1.8.7-1ubuntu5.13
  • M
Improper Certificate Validation

<1.8.7-1ubuntu5.13
  • M
SQL Injection

<1.8.7-1ubuntu5.12
  • H
Weak Password Recovery Mechanism for Forgotten Password

<1.8.7-1ubuntu5.11
  • M
Resource Exhaustion

<1.8.7-1ubuntu5.10
  • M
SQL Injection

<1.8.7-1ubuntu5.10
  • M
Resource Exhaustion

<1.8.7-1ubuntu5.10
  • M
Uncontrolled Recursion

<1.8.7-1ubuntu5.10
  • M
Cleartext Transmission of Sensitive Information

<1.8.7-1ubuntu5.9
  • L
Cross-site Scripting (XSS)

*
  • M
Allocation of Resources Without Limits or Throttling

<1.8.7-1ubuntu5.8
  • M
Improper Input Validation

<1.8.7-1ubuntu5.7
  • M
Incorrect Regular Expression

<1.8.7-1ubuntu5.6
  • M
Incorrect Regular Expression

<1.8.7-1ubuntu5.6
  • M
Open Redirect

<1.8.7-1ubuntu5.5
  • M
Open Redirect

<1.8.7-1ubuntu5.5
  • M
Access Restriction Bypass

<1.8.7-1ubuntu5.4
  • M
Use of Hard-coded Credentials

<1.8.7-1ubuntu5.4
  • M
Security Features

<1.8.7-1ubuntu5.2
  • M
Cross-site Scripting (XSS)

<1.8.7-1ubuntu5.1