7.5
CVSSv3

CVE-2024-24680

Published: 06/02/2024 Updated: 20/04/2024
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

An issue exists in Django 3.2 prior to 3.2.24, 4.2 prior to 4.2.10, and Django 5.0 prior to 5.0.2. The intcomma template filter was subject to a potential denial-of-service attack when used with very long strings.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

djangoproject django

Vendor Advisories

Description<!---->A vulnerability was found in Django When used with very long strings, the intcomma template filter was subject to a potential denial of service attackA vulnerability was found in Django When used with very long strings, the intcomma template filter was subject to a potential denial of service attack ...

Github Repositories

PROFILE Seokchan Yoon (@ch4n3yoon) ch4n3yoon@gmailcom A CTF player of STEALIEN and Aleph Infinite Web Security Researcher @ STEALIEN (202007 ~ 202306) ACHIEVEMENT/AWARDS Finalist, CODEGATE 2023 UNIVERSITY (team: 경희대미남해커들) Finalist, CODEGATE 2022 UNIVERSITY (team: 경희대미남해커들) Finalist (2nd, 국가보안연구소장상), 2022 사이버공