CVE-2024-38875 PUBLISHED

An issue was discovered in Django 4.2 before 4.2.14 and 5.0 before 5.0.7. urlize and urlizetrunc were subject to a potential denial of service attack via certain inputs with a very large number of brackets.

EPSS 0.33% · 55.7th percentile

Risk Scores

EPSS Score
0.33%
55.7th percentile

Affected Products

VendorProductVersions
Bitnamidjango4.2.0, 5.0.0
Bitnamidjango4.2.0, 5.0.0, 4.2.0

Timeline

References

Open in Interactive Console →