Python-django date template filter information leakage Vulnerability (CVE-2015-8213)
Python-django date template filter information leakage Vulnerability (CVE-2015-8213)
Release date:
Updated on:
Affected Systems:
Django
Description:
CVE (CAN) ID: CVE-2015-8213
Django is an open-source Python Web application development framework.
A security vulnerability exists in the date template filter of python-django. Remote attackers can exploit this vulnerability to obtain sensitive information in application settings.
<* Source: Ryan Butterfield
*>
Suggestion:
Vendor patch:
Django
------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Https://www.djangoproject.com/weblog/2015/nov/24/security-releases-issued/
Django1.8 returns the json string and the content of the json string that receives the post.
How to Use Docker components to develop a Django project?
Install Nginx + uWSGI + Django on Ubuntu Server 12.04
Deployment of Django + Nginx + uWSGI
Django tutorial
Build a Django Python MySQL Linux development environment
Django details: click here
Django's: click here
This article permanently updates the link address: