CVE-2019-14234SQL Injection in Django

Severity
9.8CRITICALNVD
EPSS
19.1%
top 4.65%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 9
Latest updateAug 29

Description

An issue was discovered in Django 1.11.x before 1.11.23, 2.1.x before 2.1.11, and 2.2.x before 2.2.4. Due to an error in shallow key transformation, key and index lookups for django.contrib.postgres.fields.JSONField, and key lookups for django.contrib.postgres.fields.HStoreField, were subject to SQL injection. This could, for example, be exploited via crafted use of "OR 1=1" in a key or index name to return all records, using a suitably crafted dictionary, with dictionary expansion, as the **kwa

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages2 packages

NVDdjangoproject/django1.111.11.23+2
PyPIdjangoproject/django1.11a11.11.23+2

Also affects: Debian Linux 10.0, 9.0, Fedora 30

🔴Vulnerability Details

5
OSV
SQL Injection in Django2019-08-16
GHSA
SQL Injection in Django2019-08-16
OSV
CVE-2019-14234: An issue was discovered in Django 12019-08-09
CVEList
CVE-2019-14234: An issue was discovered in Django 12019-08-09
OSV
python-django vulnerabilities2019-08-01

📋Vendor Advisories

3
Red Hat
Django: SQL injection possibility in key and index lookups for JSONField/HStoreField2019-08-01
Ubuntu
Django vulnerabilities2019-08-01
Debian
CVE-2019-14234: python-django - An issue was discovered in Django 1.11.x before 1.11.23, 2.1.x before 2.1.11, an...2019

💬Community

6
Bugzilla
CVE-2019-14234 python-django: Django: SQL injection possibility in key and index lookups for JSONField/HStoreField [openstack-rdo]2019-08-29
Bugzilla
CVE-2019-14234 python-django: Django: SQL injection possibility in key and index lookups for JSONField/HStoreField [epel-7]2019-08-01
Bugzilla
CVE-2019-14234 python-django: Django: SQL injection possibility in key and index lookups for JSONField/HStoreField [fedora-29]2019-08-01
Bugzilla
CVE-2019-14234 python-django: Django: SQL injection possibility in key and index lookups for JSONField/HStoreField [fedora-30]2019-08-01
Bugzilla
CVE-2019-14234 python-django16: Django: SQL injection possibility in key and index lookups for JSONField/HStoreField [epel-7]2019-08-01
CVE-2019-14234 — SQL Injection in Djangoproject Django | cvebase