RHSA-2022:8853: Moderate: Red Hat OpenStack Platform 16.2.4 (python-django20) security update
Security Fix(es):<br><li> Possible XSS via '{% debug %}' template tag (CVE-2022-22818)</li> <li> Denial of service possibility in file uploads (CVE-2022-23833)</li> For more details about the security issue(s), including the impact, a CVSS<br>score, acknowledgments, and other related information, refer to the CVE<br>page listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What security issues are addressed in RHSA-2022:8853?
RHSA-2022:8853 addresses a possible XSS via the '{% debug %}' template tag (CVE-2022-22818) and a denial of service possibility in file uploads (CVE-2022-23833).
What is the CVSS score for RHSA-2022:8853?
The CVSS score for RHSA-2022:8853 is not specified in the provided details.
What versions of Python Django are affected by RHSA-2022:8853?
RHSA-2022:8853 affects python-django20 and python3-django20 versions up to 2.0.13-18.el8.
How can I mitigate the vulnerabilities described in RHSA-2022:8853?
To mitigate the vulnerabilities in RHSA-2022:8853, users should upgrade to version 2.0.13-18.el8 or higher.
Where can I find more information about RHSA-2022:8853?
More information about RHSA-2022:8853, including details on the security issues, can be found in the related Red Hat advisory.