[Git][security-tracker-team/security-tracker][master] Triage CVE-2025-14550 in python-django for bullseye LTS.
Chris Lamb (@lamby)
lamby at debian.org
Wed Feb 18 19:57:59 GMT 2026
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker
Commits:
36f86caa by Chris Lamb at 2026-02-18T11:57:53-08:00
Triage CVE-2025-14550 in python-django for bullseye LTS.
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -6114,6 +6114,7 @@ CVE-2026-1207 (An issue was discovered in 6.0 before 6.0.2, 5.2 before 5.2.11, a
NOTE: Fixed by: https://github.com/django/django/commit/a14363102d98fa29b8cced578eb3a0fadaa5bcb7 (4.2.28)
CVE-2025-14550 (An issue was discovered in 6.0 before 6.0.2, 5.2 before 5.2.11, and 4. ...)
- python-django 3:4.2.28-1 (bug #1126914)
+ [bullseye] - python-django <not-affected> (Vulnerable code not present; no ASGI support)
NOTE: https://www.djangoproject.com/weblog/2026/feb/03/security-releases/
NOTE: Fixed by: https://github.com/django/django/commit/f578acc8c54530fffabd52d2db654c8669b011af (4.2.28)
CVE-2025-13473 (An issue was discovered in 6.0 before 6.0.2, 5.2 before 5.2.11, and 4. ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/36f86caadab82b6c8701cec6c03a26960b881d1c
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/36f86caadab82b6c8701cec6c03a26960b881d1c
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260218/fbb3aed7/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list