4.2.16.txt 570 B

123456789101112131415
  1. ===========================
  2. Django 4.2.16 release notes
  3. ===========================
  4. *September 3, 2024*
  5. Django 4.2.16 fixes one security issue with severity "moderate" and one
  6. security issue with severity "low" in 4.2.15.
  7. CVE-2024-45230: Potential denial-of-service vulnerability in ``django.utils.html.urlize()``
  8. ===========================================================================================
  9. :tfilter:`urlize` and :tfilter:`urlizetrunc` were subject to a potential
  10. denial-of-service attack via very large inputs with a specific sequence of
  11. characters.