VYPR
Moderate severityNVD Advisory· Published Mar 6, 2025· Updated Mar 19, 2025

CVE-2025-26699

CVE-2025-26699

Description

An issue was discovered in Django 5.1 before 5.1.7, 5.0 before 5.0.13, and 4.2 before 4.2.20. The django.utils.text.wrap() method and wordwrap template filter are subject to a potential denial-of-service attack when used with very long strings.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
DjangoPyPI
>= 4.2, < 4.2.204.2.20
DjangoPyPI
>= 5.0, < 5.0.135.0.13
DjangoPyPI
>= 5.1, < 5.1.75.1.7

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

10

News mentions

0

No linked articles in our index yet.