Package python3-module-django: Information

    Source package: python3-module-django
    Version: 5.2.11-alt1
    Latest version according to Repology
    Build time:  Feb 19, 2026, 02:43 AM in the task #408645
    Report package bug
    License: BSD-3-Clause
    Summary: A high-level Python 3 Web framework that encourages rapid development and clean, pragmatic design.
    Description: 
    A high-level Python 3 Web framework that encourages rapid development and clean, pragmatic design.

    List of RPM packages built from this SRPM:
    python3-module-django (noarch)
    python3-module-django-dbbackend-mysql (noarch)
    python3-module-django-dbbackend-oracle (noarch)
    python3-module-django-dbbackend-postgresql (noarch)
    python3-module-django-dbbackend-sqlite3 (noarch)
    python3-module-django-doc (noarch)

    Maintainer: Alexander Burmatov



      1. bash-completion
      2. python3(jinja2)
      3. python3(memcache)
      4. python3(numpy)
      5. python3(pylibmc)
      6. python3(pytz)
      7. python3(yaml)
      8. python3-module-asgiref >= 3.6.0
      9. python3(selenium)
      10. python3-module-pyproject-installer >= 0.4.0
      11. rpm-build-python3
      12. python3-module-setuptools
      13. python3-module-setuptools-wheel
      14. python3-module-sqlparse >= 0.3.1
      15. python3(sqlite3)
      16. python3(sqlparse)

    Last changed


    Feb. 18, 2026 Alexander Burmatov 5.2.11-alt1
    - New version 5.2.11.
    - Fixes for the following security vulnerabilities:
      + CVE-2025-13473: Username enumeration through timing difference in mod_wsgi authentication handler
      + CVE-2025-14550: Potential denial-of-service vulnerability via repeated headers when using ASGI
      + CVE-2026-1207: Potential SQL injection via raster lookups on PostGIS
      + CVE-2026-1285: Potential denial-of-service vulnerability in django.utils.text.Truncator HTML methods
      + CVE-2026-1287: Potential SQL injection in column aliases via control characters
      + CVE-2026-1312: Potential SQL injection via QuerySet.order_by and FilteredRelation
    Jan. 21, 2026 Alexander Burmatov 5.2.10-alt1
    - New version 5.2.10.
    - Some bugfixes.
    Dec. 10, 2025 Alexander Burmatov 5.2.9-alt1
    - New version 5.2.9.
    - Fixes for the following security vulnerabilities:
      + CVE-2025-13372: Potential SQL injection in FilteredRelation column aliases on PostgreSQL
      + CVE-2025-64460: Potential denial-of-service vulnerability in XML Deserializer
    - Some bugfixes.