Safety vulnerability ID: 25718
The information on this page was manually curated by our Cybersecurity Intelligence Team.
The cookie parsing code in Django before 1.8.15 and 1.9.x before 1.9.10, when used on a site with Google Analytics, allows remote attackers to bypass an intended CSRF protection mechanism by setting arbitrary cookies.
Latest version: 5.1.3
A high-level Python web framework that encourages rapid development and clean, pragmatic design.
The cookie parsing code in Django before 1.8.15 and 1.9.x before 1.9.10, when used on a site with Google Analytics, allows remote attackers to bypass an intended CSRF protection mechanism by setting arbitrary cookies.
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application