django-storages is vulnerable to Path Traversal
83
High Risk
Affected versions of this package are vulnerable to path traversal due to an improper override of get_available_name, which Django relies on for security. This issue, originally addressed in CVE-2024-39330, was reintroduced by the overridden implementation in this library. The vulnerability is fixed in version 4.2 and later.
You are affected if you are using a version that falls within the vulnerable range.
django-storages is vulnerable to Path Traversal in versions 1.7 - 1.14.4.
Upgrade the django-storages library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant