django-filer is vulnerable to Unrestricted Upload of File with Dangerous Type
43
Medium Risk
Affected versions of this package allow users to upload binary files by default, which can potentially include malicious code. This vulnerability may lead to remote code execution (RCE) or other serious security threats.
You are affected if you are using a version that falls within the vulnerable range.
django-filer is vulnerable to Unrestricted Upload of File with Dangerous Type in versions 0.5.2a1 - 3.2.3.
Upgrade the django-filer library to the patch version or make sure application/octet-stream is blocked from uploading.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant