Lucene search

K
osvGoogleOSV:USN-4932-2
HistoryMay 13, 2021 - 12:31 p.m.

python-django vulnerability

2021-05-1312:31:15
Google
osv.dev
3
django
vulnerability
ubuntu
14.04
16.04
esm

AI Score

6.8

Confidence

Low

EPSS

0.002

Percentile

59.7%

USN-4932-1 fixed a vulnerability in Django. This update provides
the corresponding update for Ubuntu 14.04 ESM and Ubuntu 16.04 ESM.

Original advisory details:

It was discovered that Django incorrectly handled certain
filenames. A remote attacker could possibly use this issue to create or
overwrite files in unexpected directories.