Debian Security Advisory
DSA-5254-1 python-django -- security update
- Date Reported:
- 15 Oct 2022
- Affected Packages:
- python-django
- Vulnerable:
- Yes
- Security database references:
- In the Debian bugtracking system: Bug 1004752, Bug 1009677, Bug 1014541.
In Mitre's CVE dictionary: CVE-2022-22818, CVE-2022-23833, CVE-2022-28346, CVE-2022-28347, CVE-2022-34265, CVE-2022-36359, CVE-2022-41323. - More information:
-
Multiple security issues were found in Django, a Python web development framework, which could result in denial of service, SQL injection or cross-site scripting.
For the stable distribution (bullseye), these problems have been fixed in version 2:2.2.28-1~deb11u1.
We recommend that you upgrade your python-django packages.
For the detailed security status of python-django please refer to its security tracker page at: https://security-tracker.debian.org/tracker/python-django