Known Vulnerabilities for products from Django Project
Listed below are 6 of the newest known vulnerabilities associated with the vendor "Django Project".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-44987 json | Not Provided | 2026-05-08 | 2026-05-12 | |
| CVE-2026-41654 json | Not Provided | 2026-05-07 | 2026-05-08 | |
| CVE-2026-40102 json | Not Provided | 2026-05-20 | 2026-05-21 | |
| CVE-2026-16216 json | Not Provided | 2026-07-19 | 2026-07-21 | |
| CVE-2026-16215 json | Not Provided | 2026-07-19 | 2026-07-20 | |
| CVE-2026-16214 json | Not Provided | 2026-07-19 | 2026-07-22 | |
| CVE-2026-16213 json | Not Provided | 2026-07-19 | 2026-07-20 | |
| CVE-2026-16212 json | Not Provided | 2026-07-19 | 2026-07-20 | |
| CVE-2026-16208 json | Not Provided | 2026-07-19 | 2026-07-22 | |
| CVE-2026-16207 json | Not Provided | 2026-07-19 | 2026-07-20 | |
| CVE-2009-2659 json | The Admin media handler in core/servers/basehttp.py in Django 1.0 and 0.96 does not properly map URL requests to expected "st... | Not Provided | 2009-08-04 | 2026-04-23 |
| CVE-2008-2302 json | Cross-site scripting (XSS) vulnerability in the login form in the administration application in Django 0.91 before 0.91.2, 0.... | Not Provided | 2008-05-23 | 2026-04-23 |
| CVE-2007-5828 json | Cross-site request forgery (CSRF) vulnerability in the admin panel in Django 0.96 allows remote attackers to change passwords... | Not Provided | 2007-11-05 | 2026-04-23 |
| CVE-2007-5712 json | The internationalization (i18n) framework in Django 0.91, 0.95, 0.95.1, and 0.96, and as used in other products such as PyLuc... | Not Provided | 2007-10-30 | 2026-04-23 |
| CVE-2007-0405 json | The LazyUser class in the AuthenticationMiddleware for Django 0.95 does not properly cache the user name across requests, whi... | Not Provided | 2007-01-23 | 2026-04-23 |
| CVE-2007-0404 json | bin/compile-messages.py in Django 0.95 does not quote argument strings before invoking the msgfmt program through the os.syst... | Not Provided | 2007-01-23 | 2026-04-23 |
Known software with vulnerabilities from Django Project
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Django Project | Django | 1.10.7 |