CVE-2024-21520
EUVD-2024-206126.06.2024, 05:15
Versions of the package djangorestframework before 3.15.2 are vulnerable to Cross-site Scripting (XSS) via the break_long_headers template filter due to improper input sanitization before splitting and joining with <br> tags.
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| django-rest-framework | django_rest_framework | 𝑥 < 3.15.2 | ADP |
Debian Releases
Ubuntu Releases
References