Update Info

SUSE-SLE-Module-Packagehub-Subpackages-15-SP7-2026-3503


Security update for python-Django


Type: security
Severity: critical
Issued: 2026-08-05
Description:
This update for python-Django fixes the following issues:

- CVE-2026-15307: server-side file-write and request forgery via spatial lookups (bsc#1272997).
- CVE-2026-15337: potential denial-of-service vulnerability in `check_for_language()` (bsc#1272998).
- CVE-2026-15830: potential denial-of-service vulnerability via nested geometry collections (bsc#1272999).
- CVE-2026-15920: potential cross-site scripting via `URLField` values in the admin (bsc#1273000).


              

Packages


  • python-Django-4.2.11-150600.3.65.1