mirror of
https://github.com/django/django.git
synced 2025-03-13 10:50:55 +00:00
Thanks sw0rd1ight for the report. Backport of 55d89e25f4115c5674cdd9b9bcba2bb2bb6d820b from main.
14 lines
499 B
Plaintext
14 lines
499 B
Plaintext
===========================
|
|
Django 4.2.20 release notes
|
|
===========================
|
|
|
|
*March 6, 2025*
|
|
|
|
Django 4.2.20 fixes a security issue with severity "moderate" in 4.2.19.
|
|
|
|
CVE-2025-26699: Potential denial-of-service vulnerability in ``django.utils.text.wrap()``
|
|
=========================================================================================
|
|
|
|
The ``wrap()`` and :tfilter:`wordwrap` template filter were subject to a
|
|
potential denial-of-service attack when used with very long strings.
|