Update Info

SUSE-PackageHub-16.0-packagehub-50


Security update for python-Django


Type: security
Severity: important
Issued: 2025-12-10
Description:
This update for python-Django fixes the following issues:

- CVE-2025-64459: Fixed a potential SQL injection via `_connector` keyword argument in `QuerySet` and `Q` objects (bsc#1252926)
- CVE-2025-13372,CVE-2025-64460: Fixed Denial of Service in 'django.core.serializers.xml_serializer.getInnerText()' (bsc#1254437)


              

Packages


  • python-Django-5.2.4-bp160.4.1