OPENSUSE-SU-2022:10103-1

Advisory lineage Upstream: 1 Downstream: 0
Upstream
Published: 27 Aug 2022, 12:33
Last modified:07 May 2025, 18:14

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

27 Aug 2022, 12:33
Published
Vulnerability first disclosed
07 May 2025, 18:14
Last Modified
Vulnerability information updated

Description

Security update for python-Django This update for python-Django fixes the following issues: - CVE-2022-36359: Fixed potential reflected file download vulnerability in FileResponse (boo#1201923) * Backport fix and tests from uptream branch 3.2.X

Affected Systems

  • opensusepython-Django&distro=openSUSE Leap 15.4

    < 2.2.28-bp154.2.3.3

  • susepython-Django&distro=SUSE Package Hub 15 SP4

    < 2.2.28-bp154.2.3.3

References (3)