CVE-2018-25045
23.07.2022, 02:15
Django REST framework (aka django-rest-framework) before 3.9.1 allows XSS because the default DRF Browsable API view templates disable autoescaping.
| Vendor | Product | Version |
|---|---|---|
| django-rest-framework | django_rest_framework | 𝑥 < 3.9.1 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
References