REDHAT-BUG-2348993: Medium severity Django Software Foundation Django vulnerability
The wrap() and :tfilter:wordwrap template filter were subject to a potential denial-of-service attack when used with very long strings.
Affected versions =================
Django main development branch Django 5.2 (currently at beta status) Django 5.1 Django 5.0 Django 4.2
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2348993?
REDHAT-BUG-2348993 has been identified as a potential denial-of-service vulnerability.
How do I fix REDHAT-BUG-2348993?
To mitigate REDHAT-BUG-2348993, update Django to the latest patched version.
Which versions of Django are affected by REDHAT-BUG-2348993?
REDHAT-BUG-2348993 affects Django versions from 4.2 up to, but not including, 5.2.
What is the nature of the issue described in REDHAT-BUG-2348993?
The issue in REDHAT-BUG-2348993 pertains to the potential for denial-of-service attacks with the wrap() and wordwrap template filters.
Is this issue present in all Django versions?
No, REDHAT-BUG-2348993 is specifically related to certain versions of Django, particularly from 4.2 to 5.2.