| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2023-33185 | Incorrect signature verification in django-ses | django-ses | django-ses | Medium | 4.6 | 2023-05-26 20:03:34 | Deep Dive |
| CVE-2017-20182 | Mobile Vikings Django AJAX Utilities Backslash pagination.js Pagination cross site scripting | Mobile Vikings | Django AJAX Utilities | Low | 3.5 | 2023-03-10 02:00:06 | Deep Dive |
| CVE-2016-15010 | University of Cambridge django-ucamlookup Lookup cross site scripting | University of Cambridge | django-ucamlookup | Low | 3.5 | 2023-01-05 08:42:27 | Deep Dive |
| CVE-2022-4595 | django-openipam exposed_hosts.html cross site scripting | unspecified | django-openipam | Low | 3.5 | 2022-12-18 00:00:00 | Deep Dive |
| CVE-2022-4526 | django-photologue Default Template photo_detail.html cross site scripting | unspecified | django-photologue | Low | 3.5 | 2022-12-15 00:00:00 | Deep Dive |
| CVE-2022-24840 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in django-s3file | codingjoe | django-s3file | Critical | 9.1 | 2022-06-06 19:10:11 | Deep Dive |
| CVE-2022-24857 | Multi factor authentication bypass in django-mfa3 | xi | django-mfa3 | High | 7.3 | 2022-04-15 18:50:11 | Deep Dive |
| CVE-2021-43410 | airavata-django-portal allows CRLF log injection because of the lack of escaping in the log statements | Apache Software Foundation | Apache Airavata Django Portal | 中危 | - | 2021-12-09 09:00:12 | Deep Dive |
| CVE-2021-3994 | Cross-site Scripting (XSS) - Stored in django-helpdesk/django-helpdesk | django-helpdesk | django-helpdesk/django-helpdesk | 高危 | - | 2021-12-01 10:40:14 | Deep Dive |
| CVE-2021-25986 | Django-wiki - Stored Cross-Site Scripting (XSS) in Notifications Section | Django-wiki | Django-wiki | Medium | 5.4 | 2021-11-23 19:17:08 | Deep Dive |
| CVE-2021-3950 | Cross-site Scripting (XSS) - Stored in django-helpdesk/django-helpdesk | django-helpdesk | django-helpdesk/django-helpdesk | 中危 | - | 2021-11-19 12:10:10 | Deep Dive |
| CVE-2021-3945 | Cross-site Scripting (XSS) - Stored in django-helpdesk/django-helpdesk | django-helpdesk | django-helpdesk/django-helpdesk | 中危 | - | 2021-11-13 08:25:10 | Deep Dive |
| CVE-2020-15225 | Denial of Service vulnerability in django-filter | carltongibson | django-filter | High | 7.5 | 2021-04-29 00:00:00 | Deep Dive |
| CVE-2021-21416 | Potential sensitive information disclosed in error reports | ubernostrum | django-registration | Low | 3.7 | 2021-04-01 21:15:14 | Deep Dive |
| CVE-2020-25626 | Django 跨站脚本漏洞 | - | Django REST Framework | 中危 | - | 2020-09-30 19:24:45 | Deep Dive |
| CVE-2020-15105 | In Django Two-Factor Authentication, user passwords are stored in clear text in the Django session | Bouke | django-two-factor-auth | Medium | 5.4 | 2020-07-10 20:55:13 | Deep Dive |
| CVE-2020-4071 | Timing attack on django-basic-auth-ip-whitelist | tm-kn | django-basic-auth-ip-whitelist | Low | 2.2 | 2020-06-24 12:15:13 | Deep Dive |
| CVE-2020-5224 | Session key exposure through session list in Django User Sessions | Jazzband | django-user-sessions | Medium | 6.5 | 2020-01-24 20:05:15 | Deep Dive |
| CVE-2012-5474 | OpenStack Dashboard Horizon 信息泄露漏洞 | python-django-horizon | python-django-horizon | 中危 | - | 2019-12-30 19:36:51 | Deep Dive |