← Back to Resources
Open Source NewsJune 4, 20252 min read

Django Security Releases Fix Log Injection Vulnerability

By BIOS Founding Team

Django Security Releases Fix Log Injection Vulnerability

This release fixed CVE-2025-48432, a log-injection vulnerability where internal HTTP response logging wrote request.path unescaped, letting attackers inject control characters to forge or manipulate log entries.

Full details: https://www.djangoproject.com/weblog/2025/jun/04/security-releases/