Lack of data validation In django
Description
multiple issues
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
pypi | >=1.8a1 <1.8.16 || >=1.9a1 <1.9.11 || >=1.10a1 <1.10.3 | 1.8.16, 1.9.11, 1.10.3 | |
alpine v3.10 | =1.2.5-r0 || =1.2.5-r1 || =1.4.1-r0 || =1.5-r0 || =1.5.1-r0 || =1.5.5-r0 || =1.5.6-r0 || =1.5.7-r0 || =1.5.8-r0 || =1.6.5-r0 || =1.6.6-r0 || =1.7-r0 || =1.8-r0 || =1.8.10-r0 || =1.8.12-r0 || =1.8.14-r0 || =1.8.15-r0 || =1.8.3-r0 || =1.8.4-r0 || =1.8.6-r0 || =1.8.7-r0 || =1.8.8-r0 || >=0 <1.8.16-r0 | 1.8.16-r0 | |
alpine v3.4 | =1.2.5-r0 || =1.2.5-r1 || =1.4.1-r0 || =1.5-r0 || =1.5.1-r0 || =1.5.5-r0 || =1.5.6-r0 || =1.5.7-r0 || =1.5.8-r0 || =1.6.5-r0 || =1.6.6-r0 || =1.7-r0 || =1.8-r0 || =1.8.10-r0 || =1.8.12-r0 || =1.8.14-r0 || =1.8.15-r0 || =1.8.3-r0 || =1.8.4-r0 || =1.8.6-r0 || =1.8.7-r0 || =1.8.8-r0 || >=0 <1.8.16-r0 | 1.8.16-r0 | |
alpine v3.8 | =1.2.5-r0 || =1.2.5-r1 || =1.4.1-r0 || =1.5-r0 || =1.5.1-r0 || =1.5.5-r0 || =1.5.6-r0 || =1.5.7-r0 || =1.5.8-r0 || =1.6.5-r0 || =1.6.6-r0 || =1.7-r0 || =1.8-r0 || =1.8.10-r0 || =1.8.12-r0 || =1.8.14-r0 || =1.8.15-r0 || =1.8.3-r0 || =1.8.4-r0 || =1.8.6-r0 || =1.8.7-r0 || =1.8.8-r0 || >=0 <1.8.16-r0 | 1.8.16-r0 | |
debian 14 | >=0 <1:1.10.3-1 | 1:1.10.3-1 | |
alpine v3.9 | =1.2.5-r0 || =1.2.5-r1 || =1.4.1-r0 || =1.5-r0 || =1.5.1-r0 || =1.5.5-r0 || =1.5.6-r0 || =1.5.7-r0 || =1.5.8-r0 || =1.6.5-r0 || =1.6.6-r0 || =1.7-r0 || =1.8-r0 || =1.8.10-r0 || =1.8.12-r0 || =1.8.14-r0 || =1.8.15-r0 || =1.8.3-r0 || =1.8.4-r0 || =1.8.6-r0 || =1.8.7-r0 || =1.8.8-r0 || >=0 <1.8.16-r0 | 1.8.16-r0 | |
alpine v3.2 | =1.2.5-r0 || =1.2.5-r1 || =1.4.1-r0 || =1.5-r0 || =1.5.1-r0 || =1.5.5-r0 || =1.5.6-r0 || =1.5.7-r0 || =1.5.8-r0 || =1.6.5-r0 || =1.6.6-r0 || =1.7-r0 || =1.8-r0 || =1.8.10-r0 || =1.8.14-r0 || =1.8.15-r0 || =1.8.3-r0 || =1.8.3-r1 || >=0 <1.8.16-r0 | 1.8.16-r0 | |
alpine v3.3 | =1.2.5-r0 || =1.2.5-r1 || =1.4.1-r0 || =1.5-r0 || =1.5.1-r0 || =1.5.5-r0 || =1.5.6-r0 || =1.5.7-r0 || =1.5.8-r0 || =1.6.5-r0 || =1.6.6-r0 || =1.7-r0 || =1.8-r0 || =1.8.10-r0 || =1.8.12-r0 || =1.8.14-r0 || =1.8.15-r0 || =1.8.3-r0 || =1.8.4-r0 || =1.8.6-r0 || =1.8.7-r0 || >=0 <1.8.16-r0 | 1.8.16-r0 | |
alpine v3.6 | =1.2.5-r0 || =1.2.5-r1 || =1.4.1-r0 || =1.5-r0 || =1.5.1-r0 || =1.5.5-r0 || =1.5.6-r0 || =1.5.7-r0 || =1.5.8-r0 || =1.6.5-r0 || =1.6.6-r0 || =1.7-r0 || =1.8-r0 || =1.8.10-r0 || =1.8.12-r0 || =1.8.14-r0 || =1.8.15-r0 || =1.8.3-r0 || =1.8.4-r0 || =1.8.6-r0 || =1.8.7-r0 || =1.8.8-r0 || >=0 <1.8.16-r0 | 1.8.16-r0 | |
alpine v3.7 | =1.2.5-r0 || =1.2.5-r1 || =1.4.1-r0 || =1.5-r0 || =1.5.1-r0 || =1.5.5-r0 || =1.5.6-r0 || =1.5.7-r0 || =1.5.8-r0 || =1.6.5-r0 || =1.6.6-r0 || =1.7-r0 || =1.8-r0 || =1.8.10-r0 || =1.8.12-r0 || =1.8.14-r0 || =1.8.15-r0 || =1.8.3-r0 || =1.8.4-r0 || =1.8.6-r0 || =1.8.7-r0 || =1.8.8-r0 || >=0 <1.8.16-r0 | 1.8.16-r0 |
1-10 of 17
10
Aliases
References
1. https://github.com/django/django/commit/45acd6d836895a4c36575f48b3fb36a3dae98d192. https://github.com/django/django/commit/884e113838e5a72b4b0ec9e5e87aa480f6aa44723. https://github.com/django/django/commit/c401ae9a7dfb1a94a8a61927ed541d6f930895874. https://github.com/pypa/advisory-database/tree/main/vulns/django/PYSEC-2016-18.yaml5. https://lists.fedoraproject.org/archives/list/[email protected]/message/OG5ROMUPS6C7BXELD3TAUUH7OBYV56WQ6. https://lists.fedoraproject.org/archives/list/[email protected]/message/QXDKJYHN74BWY3P7AR2UZDVJREQMRE6S7. https://web.archive.org/web/20210123185619/http://www.securityfocus.com/bid/940688. https://web.archive.org/web/20211204043252/http://www.securitytracker.com/id/10371599. https://www.djangoproject.com/weblog/2016/nov/01/security-releases10. http://www.debian.org/security/2017/dsa-383511. http://www.ubuntu.com/usn/USN-3115-1
Does your application use this vulnerable software?
During the free trial, our tools assess your application, identify vulnerabilities, and provide recommendations for their remediation.