[Git][security-tracker-team/security-tracker][master] Triage CVE-2025-14550 in python-django for bullseye LTS.

Chris Lamb (@lamby) lamby at debian.org
Wed Feb 18 19:57:59 GMT 2026



Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker


Commits:
36f86caa by Chris Lamb at 2026-02-18T11:57:53-08:00
Triage CVE-2025-14550 in python-django for bullseye LTS.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -6114,6 +6114,7 @@ CVE-2026-1207 (An issue was discovered in 6.0 before 6.0.2, 5.2 before 5.2.11, a
 	NOTE: Fixed by: https://github.com/django/django/commit/a14363102d98fa29b8cced578eb3a0fadaa5bcb7 (4.2.28)
 CVE-2025-14550 (An issue was discovered in 6.0 before 6.0.2, 5.2 before 5.2.11, and 4. ...)
 	- python-django 3:4.2.28-1 (bug #1126914)
+	[bullseye] - python-django <not-affected> (Vulnerable code not present; no ASGI support)
 	NOTE: https://www.djangoproject.com/weblog/2026/feb/03/security-releases/
 	NOTE: Fixed by: https://github.com/django/django/commit/f578acc8c54530fffabd52d2db654c8669b011af (4.2.28)
 CVE-2025-13473 (An issue was discovered in 6.0 before 6.0.2, 5.2 before 5.2.11, and 4. ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/36f86caadab82b6c8701cec6c03a26960b881d1c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/36f86caadab82b6c8701cec6c03a26960b881d1c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260218/fbb3aed7/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list