logo

Urgent Django Update: Patches 3 Critical SQL Injections & DoS Risks

ID: 147b8379-8d36-5b10-b3cb-b4a2e1b4515a

STIX ID: report--147b8379-8d36-5b10-b3cb-b4a2e1b4515a

Feed Name: securityonline.info

Threat Score
70/100

Date Published: 2026-02-04

Date Updated: 2026-04-23

Author: Ddos

...
...

The Django project released an urgent security update for versions 6.0.2, 5.2.11, and 4.2.28 addressing six vulnerabilities: three high-severity SQL injection flaws (including CVE-2026-1207, CVE-2026-1287, CVE-2026-1312) that could allow arbitrary SQL execution, two denial-of-service issues (CVE-2025-14550 and CVE-2026-1285) that can degrade or crash services, and a low-severity timing attack (CVE-2025-13473) enabling user enumeration; administrators are advised to apply patches promptly.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.