https://seclists.org/oss-sec/2024/q4/144: Django CVE-2024-53907 and CVE-2024-53908
Published Dec 4, 2024
·Updated
Affected Software
3 affected components
Django Software Foundation Django<5.1.4
Django Software Foundation Django<5.0.10
Django Software Foundation Django<4.2.17
Frequently Asked Questions
1
What is the severity of CVE-2024-53907?
CVE-2024-53907 has been classified as a moderate severity vulnerability in Django.
2
How do I fix CVE-2024-53907?
To fix CVE-2024-53907, upgrade to Django version 5.1.4 or later.
3
What is CVE-2024-53908?
CVE-2024-53908 is a vulnerability affecting Django that may lead to authentication bypass.
4
What is the severity of CVE-2024-53908?
CVE-2024-53908 is classified as a high severity vulnerability in Django.
5
How do I fix CVE-2024-53908?
To resolve CVE-2024-53908, users should upgrade to Django version 5.1.4 or later.