Django Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2022-22818 - Vulnerability Database
Django Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2022-22818
Medium
Reference:
CVE-2022-22818
Title:
Django Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Overview:
The debug template tag in Django 2.2 before 2.2.27 3.2 before 3.2.12 and 4.0 before 4.0.2 does not properly encode the current context. This may lead to XSS.