python-django vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the python-django package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • L
Improper Input Validation

<1.6.11-0ubuntu1.3+esm6
  • M
Resource Exhaustion

*
  • M
Allocation of Resources Without Limits or Throttling

*
  • H
SQL Injection

<1.6.11-0ubuntu1.3+esm5
  • M
Cross-site Scripting (XSS)

<1.6.11-0ubuntu1.3+esm4
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

<1.6.11-0ubuntu1.3+esm4
  • L
Directory Traversal

*
  • M
CVE-2021-45115

*
  • L
Improper Input Validation

*
  • M
Unrestricted Upload of File with Dangerous Type

<1.6.11-0ubuntu1.3+esm3
  • L
Directory Traversal

*
  • M
Directory Traversal

<1.6.11-0ubuntu1.3+esm2
  • M
Cross-site Scripting (XSS)

<1.6.11-0ubuntu1.3+esm1
  • M
Improper Certificate Validation

<1.6.11-0ubuntu1.3+esm1
  • H
Weak Password Recovery Mechanism for Forgotten Password

<1.6.11-0ubuntu1.3+esm7
  • M
Resource Exhaustion

*
  • M
SQL Injection

*
  • M
Resource Exhaustion

*
  • M
Uncontrolled Recursion

*
  • M
Cleartext Transmission of Sensitive Information

*
  • L
Cross-site Scripting (XSS)

*
  • M
Improper Input Validation

<1.6.11-0ubuntu1.3
  • M
Incorrect Regular Expression

<1.6.11-0ubuntu1.2
  • M
Incorrect Regular Expression

<1.6.11-0ubuntu1.2
  • M
Open Redirect

<1.6.11-0ubuntu1.1
  • M
Open Redirect

<1.6.11-0ubuntu1.1
  • M
Use of Hard-coded Credentials

<1.6.1-2ubuntu0.16
  • M
Access Restriction Bypass

<1.6.1-2ubuntu0.16
  • M
Security Features

<1.6.1-2ubuntu0.15
  • M
Cross-site Scripting (XSS)

<1.6.1-2ubuntu0.12
  • M
Information Exposure

<1.6.1-2ubuntu0.12
  • M
Information Exposure

<1.6.1-2ubuntu0.11
  • M
Resource Management Errors

<1.6.1-2ubuntu0.10
  • M
Resource Management Errors

<1.6.1-2ubuntu0.10
  • M
Improper Input Validation

<1.6.1-2ubuntu0.9
  • M
Resource Management Errors

<1.6.1-2ubuntu0.9
  • M
Resource Management Errors

<1.6.1-2ubuntu0.8
  • M
Cross-site Scripting (XSS)

<1.6.1-2ubuntu0.8
  • M
Cross-site Scripting (XSS)

<1.6.1-2ubuntu0.6
  • M
Resource Management Errors

<1.6.1-2ubuntu0.6
  • M
Code

<1.6.1-2ubuntu0.6
  • M
Code

<1.6.1-2ubuntu0.6
  • M
Improper Authentication

<1.6.1-2ubuntu0.4
  • L
Access Restriction Bypass

<1.6.1-2ubuntu0.4
  • L
Resource Management Errors

<1.6.1-2ubuntu0.4
  • L
Improper Input Validation

<1.6.1-2ubuntu0.4
  • M
CVE-2014-1418

<1.6.1-2ubuntu0.3
  • M
Improper Input Validation

<1.6.1-2ubuntu0.3
  • M
Resource Management Errors

<1.6.1-2ubuntu0.1
  • M
Arbitrary Code Injection

<1.6.1-2ubuntu0.1
  • M
Access Restriction Bypass

<1.6.1-2ubuntu0.1