django-axes@1.3.8 vulnerabilities

Keep track of failed login attempts in Django-powered sites.

  • latest version

    8.0.0

  • latest non vulnerable version

  • first published

    16 years ago

  • latest version published

    2 months ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the django-axes package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • M
    Race Condition

    django-axes is a Keep track of failed login attempts in Django-powered sites.

    Affected versions of this package are vulnerable to Race Condition. The creation of several entries is possible due to race conditions between different worker processes, which can later break the usage of get in this situation.

    How to fix Race Condition?

    Upgrade django-axes to version 5.20.0 or higher.

    [,5.20.0)