An issue was discovered in Django 5.1 before 5.1.7, 5.0 before 5.0.13, and 4.2 before 4.2.20. The django.utils.text.wrap() method and wordwrap template filter are subject to a potential denial-of-service attack when used with very long strings.
2025-03-06T19:15:27.683
2025-10-03T00:32:38.420
Analyzed
CVSSv3.1: 5.0 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | djangoproject | django | < 4.2.20 | Yes |
| Application | djangoproject | django | < 5.0.13 | Yes |
| Application | djangoproject | django | < 5.1.7 | Yes |
| Operating System | debian | debian_linux | 11.0 | Yes |