Known vulnerabilities in python-django (Debian package) - page 3

Vendor: Debian
Software CPE: cpe:2.3:o:debian:python-django_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 52
Public exploits: 9
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting python-django (Debian package) python-django (Debian package) is affected by 52 known vulnerabilities: 14 high, 32 medium, 6 low Critical High Medium Low

Vulnerabilities (52)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU28954 - Improper Certificate Validation
CVE-2020-13254
CWE-295 Medium
Available
No
1:1.10.7-2+deb9u9, 1:1.11.29-1~deb10u1 10.06.2020 SB2020061040
SB2020061041
SB2020121608
and 5 more
#VU25812 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2020-9402
CWE-89 High
No
No
1:1.10.7-2+deb9u9, 1:1.11.29-1~deb10u1 08.03.2020 SB2020030801
SB2020030802
SB2020050101
and 6 more
#VU24846 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2020-7471
CWE-89 Medium
Available
No
1:1.10.7-2+deb9u8, 1:1.11.28-1~deb10u1 03.02.2020 SB2020020315
SB2020020316
SB2020021911
and 6 more
#VU23667 - Improper input validation
CVE-2019-19844
CWE-20 High
Available
No
1:1.10.7-2+deb9u7, 1:1.11.27-1~deb10u1 18.12.2019 SB2019121815
SB2019121916
SB2020010811
and 7 more
#VU19620 - Resource Management Errors
CVE-2019-14235
CWE-399 Medium
No
No
1:1.10.7-2+deb9u6 01.08.2019 SB2019080105
SB2019080204
SB2019080601
and 9 more
#VU19619 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2019-14234
CWE-89 High
No
No
1:1.10.7-2+deb9u6 01.08.2019 SB2019080105
SB2019080204
SB2019080601
and 9 more
#VU19618 - Resource Management Errors
CVE-2019-14233
CWE-399 Medium
No
No
1:1.10.7-2+deb9u6 01.08.2019 SB2019080105
SB2019080204
SB2019080601
and 12 more
#VU19617 - Resource Management Errors
CVE-2019-14232
CWE-399 Medium
No
No
1:1.10.7-2+deb9u6 01.08.2019 SB2019080105
SB2019080204
SB2019080601
and 14 more
#VU18967 - Cleartext Transmission of Sensitive Information
CVE-2019-12781
CWE-319 Medium
No
No
1:1.10.7-2+deb9u5 02.07.2019 SB2019070211
SB2019070601
SB2019070602
and 8 more
#VU18672 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2019-12308
CWE-79 Low
No
No
1:1.10.7-2+deb9u5 04.06.2019 SB2019060403
SB2019060404
SB2019060406
and 10 more
#VU17717 - Resource exhaustion
CVE-2019-6975
CWE-400 Low
No
No
1:1.10.7-2+deb9u5 15.02.2019 SB2019021505
SB2019021814
SB2019070501
and 8 more
#VU16832 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2019-3498
CWE-451 Low
No
No
1:1.10.7-2+deb9u4 07.01.2019 SB2019010703
SB2019010907
SB2019011001
and 7 more


Showing elements 41 - 60 out of 52