CVE-2024-39329 - An issue was discovered in Django 5.0 before 5.0.7
CVE ID : CVE-2024-39329 Published : July 10, 2024, 5:15 a.m. | 1 hour, 14 minutes ago Description : An issue was discovered in Django 5.0 before 5.0.7 and 4.2 before 4.2.14. The django.contrib.auth.backends.ModelBackend.authenticate() method allows remote attackers to enumerate users via a timing attack involving login requests for users with an unusable password. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...
![CVE-2024-39329 - An issue was discovered in Django 5.0 before 5.0.7](https://cdn.cvefeed.io/images/cvefeed.io-new.webp)
Published : July 10, 2024, 5:15 a.m. | 1 hour, 14 minutes ago
Description : An issue was discovered in Django 5.0 before 5.0.7 and 4.2 before 4.2.14. The django.contrib.auth.backends.ModelBackend.authenticate() method allows remote attackers to enumerate users via a timing attack involving login requests for users with an unusable password.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...