OSS Support Hub / Web Framework

Python Web Framework BSD-3-Clause

Django

The web framework for perfectionists with deadlines

Project Health at a Glance

Live data from GitHub and PyPI, updated daily.

87.5K+3
GitHub Stars
📦
Latest Release
🔄
Avg. Release Cadence
🐛
427
Open Issues
📅
Yesterday
Last Commit
🔒
10
Active CVEs

Data last fetched: 2026-05-15

Known Vulnerabilities

10 active CVEs reported via OSV.dev

Django Allows Arbitrary URL Generation

Published: 2022-05-17 Fixed in: 1.3.4

Django denial of service via file upload naming

Published: 2022-05-14 Fixed in: 1.4.14

Django Denial-of-service possibility in truncatechars_html and truncatewords_html template filters

Published: 2019-01-04 Fixed in: 2.0.3

SQL Injection in Django

Published: 2022-04-13 Fixed in: 2.2.28

Resource exhaustion in Django

Published: 2023-02-15 Fixed in: 3.2.18

XSS in Django

Published: 2020-06-05 Fixed in: 2.2.13

Django has Observable Timing Discrepancy

Published: 2026-02-03 Fixed in: 6.0.2

Improper Input Validation in Django

Published: 2019-01-14 Fixed in: 1.11.18

Django has Inefficient Algorithmic Complexity

Published: 2026-02-03 Fixed in: 6.0.2

Django open redirect and possible XSS attack via user-supplied numeric redirect URLs

Published: 2019-01-04 Fixed in: 1.10.7

Alternatives to Django

Other Web Framework projects in the Python ecosystem worth evaluating.

Support Options for Django

Enterprise Support via DepKeep

Get SLA-backed support, security patches, and direct access to senior engineers for Django — without relying on volunteer maintainers.

Talk to an Expert →