AVG-2894 log

Package python-django
Status Fixed
Severity Low
Type content spoofing
Affected 5.1.9-1
Fixed 5.1.11-1
Current 5.1.11-1 [extra]
Ticket None
Created Wed Jun 4 21:00:45 2025
Issue Severity Remote Type Description
CVE-2025-48432 Low Yes Content spoofing
Internal HTTP response logging used request.path directly, allowing control characters (e.g. newlines or ANSI escape sequences) to be written unescaped into...
Date Advisory Package Type
12 Jun 2025 ASA-202506-6 python-django content spoofing