CVE-2022-28346
An issue was discovered in Django 2.2 before 2.2.28, 3.2 before 3.2.13, and 4.0 before 4.0.4. QuerySet.annotate(), aggregate(), and extra() methods are subject to SQL injection in column aliases via a crafted dictionary (with dictionary expansion) as the passed **kwargs.
- Affected products
- Alt Linux, Astra Linux, Django, Linuxmint, Red Os, Rocky Linux, Ubuntu
- Djangoproject Django
- < 2.2.28, 3.2.13, 4.0.4
- Fix
- Available
- CVSS 3.1
- 9.8 CRITICAL
- EPSS
- 18.7% (97th percentile)
- Weakness
- CWE-89
- NVD status
- Modified
- Published
- 2022-04-12
CVE-2022-28346 at NVD
8 known exploits for CVE-2022-28346
Proof-of-concept code and exploit modules indexed by Sploitus