Vulnerabilities > Djangoproject > Django > 1.11.0

DATE CVE VULNERABILITY TITLE RISK
2017-09-07 CVE-2017-12794 Cross-site Scripting vulnerability in Djangoproject Django
In Django 1.10.x before 1.10.8 and 1.11.x before 1.11.5, HTML autoescaping was disabled in a portion of the template for the technical 500 debug page.
network
low complexity
djangoproject CWE-79
6.1