Skip to content

Conversation

@chosak
Copy link
Member

@chosak chosak commented Jun 16, 2025

CVE-2025-48432 (medium severity) is fixed in 4.2.22, released 6/4/25.

There's also a 4.2.23 version, released 6/10/25, so we can upgrade to that as well.

CVE-2025-48432 (medium severity) is fixed in 4.2.22, released 6/4/25:
https://nvd.nist.gov/vuln/detail/cve-2025-48432
https://docs.djangoproject.com/en/5.2/releases/4.2.22/

There's also a 4.2.23 version, released 6/10/25, so we can upgrade to that as well:
https://docs.djangoproject.com/en/5.2/releases/4.2.23/
@chosak chosak requested a review from lfatty June 16, 2025 13:34
@chosak chosak merged commit f457ef8 into main Jun 16, 2025
3 checks passed
@chosak chosak deleted the upgrade/django-4.2.23 branch June 16, 2025 13:54
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants