AVG-1070 log

Package python-django
Status Fixed
Severity Low
Type privilege escalation
Affected 2.2.6-2
Fixed 2.2.9-1
Current 4.2.11-2 [extra-testing]
4.2.11-1 [extra]
Ticket None
Created Tue Dec 3 13:20:21 2019
Issue Severity Remote Type Description
CVE-2019-19118 Low Yes Privilege escalation
A privilege escalation issue has been found in Django since 2.1 and before 2.2.8 or 2.1.15, where a user who lacks permission to edit a model should not be...
References
https://seclists.org/oss-sec/2019/q4/106