Alerts This Week
Warning Icon 1 619
Alerts This Week
Warning Icon 1 619

Debian python-django Important Denial of Service SQL Injection DSA-6136-1

debian
Calendar Grey February 15, 2026
Debian Logo
Multiple security issues in Python Django fixed in Debian package updates to prevent SQL injection and more.
Multiple security issues were found in Django, a Python web development framework, which could result in denial of service, information disclosure, directory traversal or SQL injec...

Summary

For the oldstable distribution (bookworm), these problems have been fixed
in version 3:3.2.25-0+deb12u1. python-django-storages also needed to be
updated to ensure ongoing compatibility (1.13.2-1+deb12u1).

We recommend that you upgrade your python-django packages.

For the detailed security status of python-django please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/source-package/python-django

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Severity
important
Lowest
Low
Medium
High
Critical

Package: python-django
CVE ID: CVE-2023-41164 CVE-2023-43665 CVE-2024-24680 CVE-2024-27351

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here