[Snyk: High] django Denial of Service (DoS) (10/6/23) #5896
Labels
Security: general
General security concern or issue
Security: high
Remediate within 30 days
Work: Back-end
Milestone
Introduced through
[email protected], [email protected] and others
Fixed in
[email protected], @4.1.11, @4.2.5
Detailed paths and remediation
Introduced through: [email protected] › [email protected] › [email protected]
Fix: Pin django to version 3.2.21 or 4.1.11 or 4.2.5
Introduced through: [email protected] › [email protected] › [email protected]
Fix: Pin django to version 3.2.21 or 4.1.11 or 4.2.5
…and 8 more
Security information
Factors contributing to the scoring:
Why are the scores different? Learn how Snyk evaluates vulnerability scores
Overview
Affected versions of this package are vulnerable to Denial of Service (DoS) in the django.utils.encoding.uri_to_iri() function when processing inputs with a large number of Unicode characters.
Completion Criteria
[ ] We have either upgraded and removed the vulnerability, or determined we are not affected
The text was updated successfully, but these errors were encountered: