<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T14:52:09.033279+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2015-11592</id>
    <title>bdu:2015-11592</title>
    <updated>2026-10-03T14:52:09.039647+00:00</updated>
    <content>bdu:2015-11592</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2015-11592"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2015-04478</id>
    <title>cnvd-2015-04478</title>
    <updated>2026-10-03T14:52:09.039680+00:00</updated>
    <content>cnvd-2015-04478</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2015-04478"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-93183</id>
    <title>EUVD-2026-93183</title>
    <updated>2026-10-03T14:52:09.039695+00:00</updated>
    <content>EUVD-2026-93183</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-93183"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2015-5144</id>
    <title>fkie_cve-2015-5144</title>
    <updated>2026-10-03T14:52:09.039706+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Django before 1.4.21, 1.5.x through 1.6.x, 1.7.x before 1.7.9, and 1.8.x before 1.8.3 uses an incorrect regular expression, which allows remote attackers to inject arbitrary headers and conduct HTTP response splitting attacks via a newline character in an (1) email message to the EmailValidator, a (2) URL to the URLValidator, or unspecified vectors to the (3) validate_ipv4_address or (4) validate_slug validator.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2015-5144"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-q5qw-4364-5hhm</id>
    <title>GHSA-q5qw-4364-5hhm — Django Vulnerable to HTTP Response Splitting Attack</title>
    <updated>2026-10-03T14:52:09.039733+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> PyPI: Django</p>
<p>Django before 1.4.21, 1.5.x through 1.6.x, 1.7.x before 1.7.9, and 1.8.x before 1.8.3 uses an incorrect regular expression, which allows remote attackers to inject arbitrary headers and conduct HTTP response splitting attacks via a newline character in an (1) email message to the EmailValidator, a (2) URL to the URLValidator, or unspecified vectors to the (3) validate_ipv4_address or (4) validate_slug validator.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-q5qw-4364-5hhm"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2015-5144</id>
    <title>gsd-2015-5144</title>
    <updated>2026-10-03T14:52:09.039758+00:00</updated>
    <content>gsd-2015-5144</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2015-5144"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/pysec-2015-10</id>
    <title>PYSEC-2015-10</title>
    <updated>2026-10-03T14:52:09.039770+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> PyPI: django</p>
<p>Django before 1.4.21, 1.5.x through 1.6.x, 1.7.x before 1.7.9, and 1.8.x before 1.8.3 uses an incorrect regular expression, which allows remote attackers to inject arbitrary headers and conduct HTTP response splitting attacks via a newline character in an (1) email message to the EmailValidator, a (2) URL to the URLValidator, or unspecified vectors to the (3) validate_ipv4_address or (4) validate_slug validator.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/pysec-2015-10"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2015:1810-1</id>
    <title>SUSE-SU-2015:1810-1 — Security update for python-Django</title>
    <updated>2026-10-03T14:52:09.039788+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for python-Django</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2015:1810-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2015-5144</id>
    <title>UBUNTU-CVE-2015-5144</title>
    <updated>2026-10-03T14:52:09.039806+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:14.04:LTS: python-django</p>
<p>Django before 1.4.21, 1.5.x through 1.6.x, 1.7.x before 1.7.9, and 1.8.x before 1.8.3 uses an incorrect regular expression, which allows remote attackers to inject arbitrary headers and conduct HTTP response splitting attacks via a newline character in an (1) email message to the EmailValidator, a (2) URL to the URLValidator, or unspecified vectors to the (3) validate_ipv4_address or (4) validate_slug validator.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2015-5144"/>
  </entry>
</feed>
