Skip to main content

CVE-2024-45230 in Django

  • Django
Severity High
Score 7.5/10

Summary

An issue was discovered in Django package versions 4.2.x prior to 4.2.16, 5.0.x prior to 5.0.9, 5.1.x prior to 5.1.1. The "urlize()" and "urlizetrunc()" template filters are subject to a potential Denial-of-Service attack via very large inputs with a specific sequence of characters.

  • LOW
  • NETWORK
  • NONE
  • UNCHANGED
  • NONE
  • NONE
  • NONE
  • HIGH

Advisory Timeline

  • Published