[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2022-23833":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T08:55:32.481Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":19,"aliases":20,"duplicate_of":9,"upstream":24,"downstream":25,"duplicates":62,"related":63,"reserved_at":9,"published_at":72,"modified_at":73,"state":74,"summary":75,"references_raw":84,"kevs":166,"epss":167,"epss_history":170,"metrics":440,"affected":455},"CVE-2022-23833","An issue was discovered in MultiPartParser in Django 2.2 before 2.2.27, 3.2 before 3.2.12, and 4.0 before 4.0.2. Passing certain inputs to multipart forms could result in an infinite loop when parsing files.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":9,"capec":18},"CWE-835","Loop with Unreachable Exit Condition ('Infinite Loop')","The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.","weakness","Incomplete","Base",[],[],[21,22,23],"GHSA-6cw3-g6wv-c2xv","BIT-django-2022-23833","PYSEC-2022-20",[],[26,28,30,32,34,36,38,40,42,44,46,48,50,52,54,56,58,60],{"_key":27},"RHSA-2022:8853",{"_key":29},"SUSE-SU-2022:0285-1",{"_key":31},"SUSE-SU-2022:0286-1",{"_key":33},"UBUNTU-CVE-2022-23833",{"_key":35},"USN-5269-1",{"_key":37},"OPENSUSE-SU-2023:0005-1",{"_key":39},"OPENSUSE-SU-2024:11804-1",{"_key":41},"OPENSUSE-SU-2024:14208-1",{"_key":43},"OPENSUSE-SU-2025:14662-1",{"_key":45},"RHSA-2022:8872",{"_key":47},"DLA-2906-1",{"_key":49},"DLA-3191-1",{"_key":51},"DSA-5254-1",{"_key":53},"OPENSUSE-SU-2026:10005-1",{"_key":55},"MGASA-2022-0104",{"_key":57},"DEBIAN-CVE-2022-23833",{"_key":59},"RHSA-2022:5498",{"_key":61},"USN-5269-2",[],[64,65,66,67,68,69,70,71],{"_key":29},{"_key":31},{"_key":37},{"_key":39},{"_key":41},{"_key":43},{"_key":53},{"_key":55},"2022-02-03T00:00:00.000Z","2024-08-03T03:51:46.008Z","Modified",{"cisa_kev":76,"cisa_ransomware":76,"cisa_vendor":9,"epss_severity":77,"epss_score":78,"severity":79,"severity_score":80,"severity_version":81,"severity_source":82,"severity_vector":83,"severity_status":74},false,"low",0.01058,"high",7.5,"v3.1","nvd","CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",[85,90,98,103,108,112,116,120,124,128,133,137,141,146,150,154,158,162],{"url":86,"sources":87,"tags":89},"https://groups.google.com/forum/#%21forum/django-announce",[88,82],"cve.org",[],{"url":91,"sources":92,"tags":94},"https://docs.djangoproject.com/en/4.0/releases/security/",[88,82,93],"osv_pypi",[95,96,97],"Patch","Third Party Advisory","WEB",{"url":99,"sources":100,"tags":101},"https://www.djangoproject.com/weblog/2022/feb/01/security-releases/",[88,82,93],[95,96,102],"ARTICLE",{"url":104,"sources":105,"tags":106},"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/B4SQG2EAF4WCI2SLRL6XRDJ3RPK3ZRDV/",[88,82],[107],"Vendor Advisory",{"url":109,"sources":110,"tags":111},"https://security.netapp.com/advisory/ntap-20220221-0003/",[88,82],[96],{"url":113,"sources":114,"tags":115},"https://www.debian.org/security/2022/dsa-5254",[88,82,93],[107,96,97],{"url":117,"sources":118,"tags":119},"https://github.com/django/django/commit/c477b761804984c932704554ad35f78a2e230c6a",[88,82,93],[97],{"url":121,"sources":122,"tags":123},"https://github.com/django/django/commit/d16133568ef9c9b42cb7a08bdf9ff3feec2e5468",[88,82,93],[97],{"url":125,"sources":126,"tags":127},"https://github.com/django/django/commit/f9c7d48fdd6f198a6494a9202f90242f176e4fc9",[88,82,93],[97],{"url":129,"sources":130,"tags":131},"https://nvd.nist.gov/vuln/detail/CVE-2022-23833",[93],[132],"Advisory",{"url":134,"sources":135,"tags":136},"https://docs.djangoproject.com/en/4.0/releases/security",[93],[97],{"url":138,"sources":139,"tags":140},"https://github.com/advisories/GHSA-6cw3-g6wv-c2xv",[93],[132],{"url":142,"sources":143,"tags":144},"https://github.com/django/django",[93],[145],"PACKAGE",{"url":147,"sources":148,"tags":149},"https://github.com/pypa/advisory-database/tree/main/vulns/django/PYSEC-2022-20.yaml",[93],[97],{"url":151,"sources":152,"tags":153},"https://groups.google.com/forum/#!forum/django-announce",[93],[97],{"url":155,"sources":156,"tags":157},"https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/B4SQG2EAF4WCI2SLRL6XRDJ3RPK3ZRDV",[93],[97],{"url":159,"sources":160,"tags":161},"https://security.netapp.com/advisory/ntap-20220221-0003",[93],[97],{"url":163,"sources":164,"tags":165},"https://www.djangoproject.com/weblog/2022/feb/01/security-releases",[93],[97],[],{"date":168,"score":78,"percentile":169},"2026-06-04",0.7796,[171,175,178,181,184,186,189,192,194,198,201,204,207,210,213,217,220,223,226,228,231,234,237,240,243,246,249,252,255,258,261,264,267,270,273,275,278,281,284,287,290,293,296,299,302,306,309,312,315,319,322,325,328,331,335,338,341,344,347,350,353,355,359,362,365,367,370,373,376,379,382,385,388,390,393,395,398,401,404,407,410,413,416,419,422,425,428,431,434,437],{"date":172,"score":173,"percentile":174},"2025-11-04",0.00621,0.6923,{"date":176,"score":173,"percentile":177},"2025-11-05",0.69217,{"date":179,"score":173,"percentile":180},"2025-11-06",0.69216,{"date":182,"score":173,"percentile":183},"2025-11-07",0.69228,{"date":185,"score":173,"percentile":183},"2025-11-08",{"date":187,"score":173,"percentile":188},"2025-11-09",0.69218,{"date":190,"score":173,"percentile":191},"2025-11-10",0.69209,{"date":193,"score":173,"percentile":188},"2025-11-11",{"date":195,"score":196,"percentile":197},"2025-11-12",0.00674,0.70645,{"date":199,"score":196,"percentile":200},"2025-11-13",0.70652,{"date":202,"score":196,"percentile":203},"2025-11-14",0.70659,{"date":205,"score":196,"percentile":206},"2025-11-15",0.7066,{"date":208,"score":196,"percentile":209},"2025-11-16",0.70656,{"date":211,"score":196,"percentile":212},"2025-11-17",0.70649,{"date":214,"score":215,"percentile":216},"2025-11-18",0.07023,0.90578,{"date":218,"score":215,"percentile":219},"2025-11-19",0.90582,{"date":221,"score":215,"percentile":222},"2025-11-20",0.90586,{"date":224,"score":196,"percentile":225},"2025-11-21",0.7067,{"date":227,"score":196,"percentile":206},"2025-11-22",{"date":229,"score":196,"percentile":230},"2025-11-23",0.70642,{"date":232,"score":196,"percentile":233},"2025-11-24",0.70635,{"date":235,"score":196,"percentile":236},"2025-11-25",0.70638,{"date":238,"score":196,"percentile":239},"2025-11-26",0.70644,{"date":241,"score":196,"percentile":242},"2025-11-27",0.70643,{"date":244,"score":196,"percentile":245},"2025-11-28",0.70632,{"date":247,"score":196,"percentile":248},"2025-11-29",0.7062,{"date":250,"score":196,"percentile":251},"2025-11-30",0.70613,{"date":253,"score":196,"percentile":254},"2025-12-01",0.70756,{"date":256,"score":196,"percentile":257},"2025-12-02",0.70767,{"date":259,"score":196,"percentile":260},"2025-12-03",0.70766,{"date":262,"score":196,"percentile":263},"2025-12-04",0.70619,{"date":265,"score":196,"percentile":266},"2025-12-05",0.70631,{"date":268,"score":196,"percentile":269},"2025-12-06",0.70634,{"date":271,"score":196,"percentile":272},"2025-12-07",0.70633,{"date":274,"score":196,"percentile":236},"2025-12-08",{"date":276,"score":196,"percentile":277},"2025-12-09",0.70669,{"date":279,"score":196,"percentile":280},"2025-12-10",0.70705,{"date":282,"score":196,"percentile":283},"2025-12-11",0.70726,{"date":285,"score":196,"percentile":286},"2025-12-12",0.70751,{"date":288,"score":196,"percentile":289},"2025-12-13",0.70753,{"date":291,"score":196,"percentile":292},"2025-12-14",0.70754,{"date":294,"score":196,"percentile":295},"2025-12-15",0.7075,{"date":297,"score":196,"percentile":298},"2025-12-16",0.70758,{"date":300,"score":196,"percentile":301},"2025-12-17",0.70774,{"date":303,"score":304,"percentile":305},"2025-12-18",0.0367,0.87509,{"date":307,"score":304,"percentile":308},"2025-12-19",0.87512,{"date":310,"score":304,"percentile":311},"2025-12-20",0.8751,{"date":313,"score":304,"percentile":314},"2025-12-21",0.87515,{"date":316,"score":317,"percentile":318},"2025-12-22",0.03841,0.87811,{"date":320,"score":317,"percentile":321},"2025-12-23",0.87816,{"date":323,"score":317,"percentile":324},"2025-12-24",0.8782,{"date":326,"score":317,"percentile":327},"2025-12-25",0.87833,{"date":329,"score":317,"percentile":330},"2025-12-26",0.8783,{"date":332,"score":333,"percentile":334},"2025-12-27",0.03255,0.86794,{"date":336,"score":317,"percentile":337},"2025-12-28",0.87818,{"date":339,"score":317,"percentile":340},"2025-12-29",0.87812,{"date":342,"score":317,"percentile":343},"2025-12-30",0.87822,{"date":345,"score":333,"percentile":346},"2025-12-31",0.86754,{"date":348,"score":333,"percentile":349},"2026-01-01",0.86815,{"date":351,"score":333,"percentile":352},"2026-01-02",0.86817,{"date":354,"score":333,"percentile":352},"2026-01-03",{"date":356,"score":357,"percentile":358},"2026-01-04",0.03594,0.87399,{"date":360,"score":357,"percentile":361},"2026-01-05",0.87395,{"date":363,"score":357,"percentile":364},"2026-01-06",0.87397,{"date":366,"score":357,"percentile":364},"2026-01-07",{"date":368,"score":357,"percentile":369},"2026-01-08",0.87403,{"date":371,"score":357,"percentile":372},"2026-01-09",0.87402,{"date":374,"score":357,"percentile":375},"2026-01-10",0.87404,{"date":377,"score":357,"percentile":378},"2026-01-11",0.87398,{"date":380,"score":357,"percentile":381},"2026-01-12",0.87396,{"date":383,"score":357,"percentile":384},"2026-01-13",0.87394,{"date":386,"score":357,"percentile":387},"2026-01-14",0.87406,{"date":389,"score":357,"percentile":387},"2026-01-15",{"date":391,"score":357,"percentile":392},"2026-01-16",0.87412,{"date":394,"score":357,"percentile":392},"2026-01-17",{"date":396,"score":333,"percentile":397},"2026-01-18",0.86769,{"date":399,"score":333,"percentile":400},"2026-01-19",0.86763,{"date":402,"score":333,"percentile":403},"2026-01-20",0.86758,{"date":405,"score":333,"percentile":406},"2026-01-21",0.86764,{"date":408,"score":333,"percentile":409},"2026-01-22",0.8677,{"date":411,"score":333,"percentile":412},"2026-01-23",0.86786,{"date":414,"score":333,"percentile":415},"2026-01-24",0.86792,{"date":417,"score":333,"percentile":418},"2026-01-25",0.86787,{"date":420,"score":357,"percentile":421},"2026-01-26",0.87434,{"date":423,"score":357,"percentile":424},"2026-01-27",0.87435,{"date":426,"score":357,"percentile":427},"2026-01-28",0.87437,{"date":429,"score":357,"percentile":430},"2026-01-29",0.87441,{"date":432,"score":357,"percentile":433},"2026-01-30",0.87445,{"date":435,"score":357,"percentile":436},"2026-01-31",0.87443,{"date":438,"score":357,"percentile":439},"2026-02-01",0.87511,[441,450],{"source":82,"cvss_v2_0":442,"cvss_v3_0":9,"cvss_v3_1":447,"cvss_v4_0":9},{"baseScore":443,"baseSeverity":9,"vectorString":444,"impactScore":445,"exploitabilityScore":446},5,"AV:N/AC:L/Au:N/C:N/I:N/A:P",2.9,10,{"baseScore":80,"baseSeverity":448,"vectorString":83,"impactScore":449,"exploitabilityScore":446},"HIGH",6,{"source":93,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":451,"cvss_v4_0":452},{"baseScore":80,"baseSeverity":9,"vectorString":83,"impactScore":449,"exploitabilityScore":446},{"baseScore":453,"baseSeverity":9,"vectorString":454,"impactScore":9,"exploitabilityScore":9},8.7,"CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N",[456,465,486,494],{"ecosystem":9,"name":457,"vendor":458,"product":459,"cpe_part":460,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":461},"debian linux","debian","debian_linux","o",[462],{"version":463,"is_range":76,"range_type":464,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"11.0","cpe",{"ecosystem":9,"name":466,"vendor":467,"product":468,"cpe_part":469,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":470},"Django","djangoproject","django","a",[471,478,482],{"version":472,"is_range":473,"range_type":464,"version_start":474,"version_start_type":475,"version_end":476,"version_end_type":477,"fixed_in":9},"gte2.2_lt2.2.27",true,"2.2","including","2.2.27","excluding",{"version":479,"is_range":473,"range_type":464,"version_start":480,"version_start_type":475,"version_end":481,"version_end_type":477,"fixed_in":9},"gte3.2_lt3.2.12","3.2","3.2.12",{"version":483,"is_range":473,"range_type":464,"version_start":484,"version_start_type":475,"version_end":485,"version_end_type":477,"fixed_in":9},"gte4.0_lt4.0.2","4.0","4.0.2",{"ecosystem":9,"name":487,"vendor":488,"product":487,"cpe_part":460,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":489},"fedora","fedoraproject",[490,492],{"version":491,"is_range":76,"range_type":464,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"34",{"version":493,"is_range":76,"range_type":464,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"35",{"ecosystem":495,"name":468,"vendor":495,"product":468,"cpe_part":9,"purl_type":496,"purl_namespace":9,"purl_name":468,"source":9,"versions":497},"PyPI","pypi",[498,501,503],{"version":499,"is_range":473,"range_type":500,"version_start":474,"version_start_type":475,"version_end":476,"version_end_type":477,"fixed_in":9},"gte2_2_lt2_2_27","ecosystem",{"version":502,"is_range":473,"range_type":500,"version_start":480,"version_start_type":475,"version_end":481,"version_end_type":477,"fixed_in":9},"gte3_2_lt3_2_12",{"version":504,"is_range":473,"range_type":500,"version_start":484,"version_start_type":475,"version_end":485,"version_end_type":477,"fixed_in":9},"gte4_0_lt4_0_2"]