django-grappelli
A jazzy skin for the Django Admin-Interface.
Activity
- Latest release
- 4mo ago
- Total releases
- 87
- Cadence
- ~2 months
- Last 12 months
- 3
Reach
- Stars
- —
Details
- License
- BSD-3-Clause
- First release
- Dec 23, 2010
| Version | Released | |
|---|---|---|
5.0.0
major
| ||
4.0.4
patch
| ||
4.0.3
patch
| ||
4.0.2
patch
| ||
3.0.10
patch
| ||
4.0.1
major
| ||
3.0.9
patch
| ||
2.15.7
patch
| ||
3.0.8
patch
| ||
3.0.7
patch
| ||
3.0.6
patch
| ||
3.0.5
patch
| ||
3.0.4
patch
| ||
2.15.6
patch
| ||
3.0.3
patch
| ||
3.0.2
patch
| ||
2.15.5
patch
| ||
3.0.1
major
| ||
2.15.4
patch
| ||
2.15.3
patch
| ||
2.15.2
patch
| ||
2.15.1
minor
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.14.4
patch
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.14.3
patch
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.14.2
patch
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.14.1
minor
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.13.4
patch
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.13.3
patch
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.12.4
patch
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.13.2
patch
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.13.1
minor
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.12.3
patch
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.12.2
patch
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.12.1
minor
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.11.2
patch
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.10.4
patch
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.10.3
patch
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.11.1
minor
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.10.2
patch
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.10.1
minor
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.9.1
minor
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.8.3
patch
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.8.2
patch
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.8.1
minor
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.7.3
patch
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.7.2
patch
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.7.1
minor
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.6.5
patch
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.6.4
patch
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev | ||
2.5.7
patch
1 CVE
CVE-2021-46898
GHSA-9x43-5qcq-h79q
PYSEC-2023-211
Oct 22, 2023
Django Grappelli Open Redirect vulnerability
Medium
Network
Low
None
views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with startswith("/") but this does not consider a protocol-relative URL (e.g., //example.com) attack. Affected versions
1.3
2.1
2.1.1
2.10.1
2.10.2
2.10.3
2.10.4
2.11.1
2.11.2
2.12.1
2.12.2
2.12.3
+ 54 more Show less
2.12.4
2.13.1
2.13.2
2.13.3
2.13.4
2.14.1
2.14.2
2.14.3
2.14.4
2.15.1
2.2
2.3
2.3.1
2.3.2
2.3.3
2.3.4
2.3.5
2.3.6
2.3.7
2.3.8
2.3.9
2.4.0
2.4.1
2.4.10
2.4.11
2.4.12
2.4.2
2.4.3
2.4.4
2.4.5
2.4.6
2.4.7
2.4.8
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.7.1
2.7.2
2.7.3
2.8.1
2.8.2
2.8.3
2.9.1
Fixed in
2.15.2
References
Updated Sep 13, 2024 · Source: OSV.dev |