[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for python-django issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Aug 4 20:20:26 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d6d1f13c by Salvatore Bonaccorso at 2026-08-04T21:19:48+02:00
Add Debian bug reference for python-django issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -273,19 +273,19 @@ CVE-2017-20242 (Keysight IxChariot Endpoint before 9.5.102 contains a stack-base
 CVE-2017-20241 (Keysight IxChariot Endpoint before 9.5.102 contains a heap-based buffe ...)
 	TODO: check
 CVE-2026-15920 (An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0 ...)
-	- python-django <unfixed>
+	- python-django <unfixed> (bug #1143611)
 	NOTE: https://www.djangoproject.com/weblog/2026/aug/04/security-releases/
 	NOTE: Fixed by: https://github.com/django/django/commit/b9adb81339cc418f8f56b1050cca6dfec3ab6349 (5.2.17)
 CVE-2026-15830 (An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0 ...)
-	- python-django <unfixed>
+	- python-django <unfixed> (bug #1143611)
 	NOTE: https://www.djangoproject.com/weblog/2026/aug/04/security-releases/
 	NOTE: Fixed by: https://github.com/django/django/commit/ba80833fa656dd09660b97c4429331067db1b080 (5.2.17)
 CVE-2026-15337 (An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0 ...)
-	- python-django <unfixed>
+	- python-django <unfixed> (bug #1143611)
 	NOTE: https://www.djangoproject.com/weblog/2026/aug/04/security-releases/
 	NOTE: Fixed by: https://github.com/django/django/commit/c72a5dbb64d0777f3f471f1be94e8b2ca91e0959 (5.2.17)
 CVE-2026-15307 (An issue was discovered in Django 5.2 before 5.2.17 and 6.0 before 6.0 ...)
-	- python-django <unfixed>
+	- python-django <unfixed> (bug #1143611)
 	NOTE: https://www.djangoproject.com/weblog/2026/aug/04/security-releases/
 	NOTE: Fixed by: https://github.com/django/django/commit/115ffd0463a765ab1cc93de18e94b5459b8a300e (5.2.17)
 CVE-2026-XXXX [RUSTSEC-2026-0204]



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d6d1f13cea6e7e0c55ca5d00f6d7b99a123c731f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d6d1f13cea6e7e0c55ca5d00f6d7b99a123c731f
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260804/8f0593b5/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list