VDB

GCVE-110-MAGEIA-2023-165

GCVE-110-MAGEIA-2023-165
Advisory Published
Vulnetix · Advisory published May 16, 2023
Passing certain inputs (e.g., an excessive number of parts) to multipart forms could result in too many open files or memory exhaustion, and provided a potential vector for a denial-of-service attack. (CVE-2023-24580) Bypass of validation when using one form field to upload multiple files. This multiple upload has never been supported by forms.FileField or forms.ImageField (only the last uploaded file was validated). However, Django's "Uploading multiple files" documentation suggested otherwise. (CVE-2023-31047)

Affected Products

VendorProductVersionsPlatforms
Mageiapython-django0 (affected), 3.2.18-1.mga8 (unaffected)

Browse GCVE Records

74,265 records in the GCVE database · Updated July 22, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›