Skip to content

Apply Django Security Patch v4.2.20 for Sumac #438

@magajh

Description

@magajh

Apply latest Django security patch in Sumac https://docs.djangoproject.com/en/5.1/releases/4.2.20/

March 6, 2025

Django 4.2.20 fixes a security issue with severity “moderate” in 4.2.19.
CVE-2025-26699: Potential denial-of-service vulnerability in django.utils.text.wrap()

The wrap() and wordwrap template filter were subject to a potential denial-of-service attack when used with very long strings.

Open edX services to upgrade

(from https://openedx.atlassian.net/wiki/spaces/COMM/pages/4558782480/Sumac.master)

Metadata

Metadata

Assignees

Labels

securityRelates to improving to the security posture of the platformsumacReleased in Sumac

Type

No type

Projects

Status

In progress

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions