First published: Mon Jul 25 2022(Updated: )
Red Hat Ansible Automation Platform integrates Red Hat’s automation suite consisting of Red Hat Ansible Tower, Red Hat Ansible Engine, and use-case specific capabilities for Microsoft Windows,network, security, and more, along with Software-as-a-Service (SaaS)-based capabilities and features for organization-wide effectiveness.<br>Security Fix(es):<br><li> python3-django: Django: SQL injection in QuerySet.annotate(),aggregate() and extra() (CVE-2022-28346)</li> <li> python3-django: Django: SQL injection via QuerySet.explain(options) on PostgreSQL (CVE-2022-28347)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/python3-django | <2.2.28-1.el8 | 2.2.28-1.el8 |
redhat/python3-django | <2.2.28-1.el7 | 2.2.28-1.el7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.