Known vulnerabilities in python-django20 (Red Hat package)

Software CPE: cpe:2.3:o:red_hat:python-django20_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 11
Public exploits: 6
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting python-django20 (Red Hat package) python-django20 (Red Hat package) is affected by 11 known vulnerabilities: 4 high, 6 medium, 1 low Critical High Medium Low

Vulnerabilities (11)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU114764 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2025-57833
CWE-89 High
Available
No
2.0.13-20.el8ost 03.09.2025 SB2025090342
SB2025090433
SB2025090469
and 19 more
#VU62050 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2022-28346
CWE-89 High
Available
No
2.0.13-17.el8ost, 2.0.13-18.el8ost 11.04.2022 SB2022041110
SB2022041125
SB2022041126
and 14 more
#VU60198 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2022-23833
CWE-835 Medium
No
No
2.0.13-18.el8ost 01.02.2022 SB2022020110
SB2022041954
SB2022020334
and 11 more
#VU60197 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-22818
CWE-79 Medium
Available
No
2.0.13-18.el8ost 01.02.2022 SB2022020110
SB2022041954
SB2022020334
and 12 more
#VU53742 - Server-Side Request Forgery (SSRF)
CVE-2021-33571
CWE-918 Medium
No
No
2.0.13-16.el8ost.1 02.06.2021 SB2021060208
SB2021061516
SB2021060234
and 5 more
#VU53741 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-33203
CWE-22 Medium
No
No
2.0.13-16.el8ost.1 02.06.2021 SB2021060208
SB2021061516
SB2021060234
and 6 more
#VU52842 - Unrestricted Upload of File with Dangerous Type
CVE-2021-31542
CWE-434 High
No
No
2.0.13-16.el8ost.1 04.05.2021 SB2021050411
SB2021111919
SB2021050433
and 7 more
#VU51936 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-28658
CWE-22 Medium
No
No
2.0.13-16.el8ost.1 06.04.2021 SB2021040605
SB2021040630
SB2021121031
and 3 more
#VU50172 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-3281
CWE-22 High
Available
No
2.0.13-16.el8ost.1 01.02.2021 SB2021020117
SB2021020612
SB2021080213
and 7 more
#VU28954 - Improper Certificate Validation
CVE-2020-13254
CWE-295 Medium
Available
No
2.0.13-12.el8ost 10.06.2020 SB2020061040
SB2020061041
SB2020121608
and 5 more
#VU27519 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-11023
CWE-79 Low
Available
Exploited
2.0.13-19.el8ost 05.05.2020 SB2020042126
SB2020052033
SB2020052103
and 180 more