ELA-1808-1 python-django security update

multiple vulnerabilities

2026-08-12
Packagepython-django
Version1:1.10.7-2+deb9u31 (stretch), 1:1.11.29-1+deb10u20 (buster)
Related CVEs CVE-2026-15337 CVE-2026-15920


Two issues were discovered in Django, the Python-based web development framework:



For Debian 10 buster, these problems have been fixed in version 1:1.11.29-1+deb10u20.

For Debian 9 stretch, these problems have been fixed in version 1:1.10.7-2+deb9u31.

We recommend that you upgrade your python-django packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.