Django 6.0.8 and 5.2.17 Security Releases
Django released versions 6.0.8 and 5.2.17 to address four vulnerabilities, including a high-severity GeoDjango issue and several moderate/low-severity flaws.
Django released versions 6.0.8 and 5.2.17 to address four vulnerabilities, including a high-severity GeoDjango issue and several moderate/low-severity flaws.
GeoDjango, Django's geographic-data layer, had a high-severity vulnerability (CVE-2026-15307) in spatial lookups that could lead to file write or RCE. Fixed in…
HashiCorp, Veeam, and the Django Software Foundation have released patches for 11 vulnerabilities across Terraform MCP Server, Veeam Service Provider Console, and…
CVE-2026-15920 is a moderate stored cross-site scripting vulnerability in Django's admin interface where unsafe URLField values could be rendered as links and…
CVE-2026-15830 is a moderate denial-of-service vulnerability in Django caused by deeply nested GEOMETRYCOLLECTION objects that can trigger a GEOS segmentation fault. The…
CVE-2026-15337 is a low-severity memory-consumption denial-of-service vulnerability in Django's check_for_language() function. The fix rejects language codes longer than 500 characters. Fixed in…
The Django Software Foundation released versions 6.0.8 and 5.2.17 to patch four vulnerabilities, including a high-severity GeoDjango file write/RCE issue (CVE-2026-15307) and…
CrowdSec reported exploitation in the wild of CVE-2026-1207, a SQL injection flaw in Django's PostGIS raster lookups, and released detection rules. This…
This week's cybersecurity landscape is marked by a series of critical threats and vulnerabilities. Progress has urged ShareFile customers to shut down…