Known vulnerabilities in python-django - page 4
Vendor:
openEuler
Software:
python-django
Software CPE:
cpe:2.3:o:openeuler:python-django:*:*:*:*:*:openeuler:*:*
Website:
https://www.openeuler.org/
Total vulnerabilities:
65
Public exploits:
5
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
4.2.15-18
2.2.27-23
4.2.15-17
4.2.15-16
2.2.27-22
4.2.15-15
2.2.27-21
4.2.15-13
4.2.15-12
2.2.27-20
4.2.15-11
4.2.15-10
2.2.27-19
4.2.15-9
2.2.27-18
4.2.15-8
2.2.27-17
4.2.15-7
4.2.15-6
4.2.15-5
4.2.15-4
2.2.27-13
4.2.15-3
2.2.27-12
4.2.15-2
4.2.15-1
4.2.14-1
2.2.27-11
3.2.12-9
2.2.27-10
2.2.27-9
2.2.27-8
2.2.27-7
2.2.27-6
2.2.27-5
2.2.27-4
3.2.12-1
3.2.12-2
2.2.27-3
2.2.27-2
2.2.27-1
Vulnerabilities (65)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU62051 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2022-28347 |
CWE-89 | High | 2.2.27-2 | 11.04.2022 |
SB2022041110 SB2022041125 SB2022041267 and 8 more |
||
| #VU62050 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2022-28346 |
CWE-89 | High | 2.2.27-2 | 11.04.2022 |
SB2022041110 SB2022041125 SB2022041126 and 14 more |
||
| #VU60197 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2022-22818 |
CWE-79 | Medium | 2.2.27-1, 2.2.27-2 | 01.02.2022 |
SB2022020110 SB2022041954 SB2022020334 and 12 more |
||
| #VU59181 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2021-45452 |
CWE-22 | Low | 2.2.27-1, 2.2.27-2 | 04.01.2022 |
SB2022010412 SB2022031201 SB2022011843 and 7 more |
||
| #VU59180 - CVE-2021-45116 |
Low | 2.2.27-1, 2.2.27-2 | 04.01.2022 |
SB2022010412 SB2022031201 SB2022011843 and 6 more |
Showing elements 61 - 80 out of 65