CVE-2022-41323
16.10.2022, 06:15
In Django 3.2 before 3.2.16, 4.0 before 4.0.8, and 4.1 before 4.1.2, internationalized URLs were subject to a potential denial of service attack via the locale parameter, which is treated as a regular expression.Enginsight
Vendor | Product | Version |
---|---|---|
djangoproject | django | 3.2 ≤ 𝑥 < 3.2.16 |
djangoproject | django | 4.0 ≤ 𝑥 < 4.0.8 |
djangoproject | django | 4.1 ≤ 𝑥 < 4.1.2 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References