Errata overview
Errata ID 629
Date 2020-06-24
Source package python-django
Fixed in version 1:1.10.7-2+deb9u9
Description
This update addresses the following issues:
* potential data leakage via malformed memcached keys (CVE-2020-13254)
* possible XSS via admin ForeignKeyRawIdWidget (CVE-2020-13596)
Additional notes
CVE ID CVE-2020-13254
CVE-2020-13596
UCS Bug number #51543