djangoproject
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 158 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from September 3, 2008 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →Header injection possibility since DomainNameValidator accepted newlines in input
Heap buffer over-read in GDALRaster
Potential exposure of private data via cached Set-Cookie response
Header injection via WebSocket upgrade parser differential allows ASGI scope header spoofing
Unbounded WebSocket message and frame sizes can cause unauthenticated remote denial of service
Potential exposure of private data via whitespace padding in Vary header
Potential exposure of private data via missing Vary: Authorization in UpdateCacheMiddleware
Potential exposure of private data via case-sensitive Cache-Control directives in UpdateCacheMiddleware
Potential unencrypted email transmission via STARTTLS in the SMTP backend
Signed cookie salt namespace collision in django.http.HttpRequest.get_signed_cookie
Monitor djangoproject in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.