Description
The {% debug %} template tag in Django 2.2 before 2.2.27, 3.2 before 3.2.12, and 4.0 before 4.0.2 does not properly encode the current context. This may lead to XSS.
Remediation
References
Related Vulnerabilities
WordPress Plugin YITH WooCommerce Points and Rewards Security Bypass (1.3.4)
MediaWiki CVE-2022-28209 Vulnerability (CVE-2022-28209)
OpenSSL Improper Input Validation Vulnerability (CVE-2015-0293)
MySQL CVE-2012-1757 Vulnerability (CVE-2012-1757)
WordPress Plugin PowerPress Podcasting by Blubrry Unspecified Vulnerability (8.6.1)