Red Hat Security Advisory 2016-0158-01

Discussion in 'News Aggregator' started by Packet Storm, 10 Feb 2016.

  1. Packet Storm

    Packet Storm Guest

    Red Hat Security Advisory 2016-0158-01 - Django is a high-level Python Web framework that encourages rapid development and a clean, pragmatic design. It focuses on automating as much as possible and adhering to the DRY principle. An information-exposure flaw was found in the Django date filter. If an application allowed users to provide non-validated date formats, a malicious end user could expose application-settings data by providing the relevant applications-settings key instead of a valid date format.

    Continue reading...
     

Share This Page

Loading...