Red Hat Security Advisory 2016-0502-01

Discussion in 'News Aggregator' started by Packet Storm, 24 Mar 2016.

  1. Packet Storm

    Packet Storm Guest

    Red Hat Security Advisory 2016-0502-01 - Django is a high-level Python Web framework that encourages rapid development and a clean, pragmatic design. It focuses on automating as much as possible and adhering to the DRY principle. Security Fix: An open-redirect flaw was found in the way Django's django.utils.http.is_safe_url() function filtered authentication URLs. An attacker able to trick a victim into visiting a crafted URL could use this flaw to redirect that victim to a malicious site.

    Continue reading...
     

Share This Page

Loading...