Uncontrolled Memory Consumption in Django's numberformat.format() Function

Uncontrolled Memory Consumption in Django's numberformat.format() Function

CVE-2019-6975 · MEDIUM Severity

AV:N/AC:L/AU:N/C:N/I:N/A:P

Django 1.11.x before 1.11.19, 2.0.x before 2.0.11, and 2.1.x before 2.1.6 allows Uncontrolled Memory Consumption via a malicious attacker-supplied value to the django.utils.numberformat.format() function.

Learn more about our Web Application Penetration Testing UK.