CVE detail
CVE-2020-13254 — CVE-2020-13254
Published 2020-06-03 · Modified 2026-06-17 · Vendor djangoproject · Product django · Source nvd
MEDIUM
severity
CVSS-derived band
0.0609
EPSS probability
exploitation probability, 30d
93.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
An issue was discovered in Django 2.2 before 2.2.13 and 3.0 before 3.0.7. In cases where a memcached backend does not perform key validation, passing malformed cache keys could result in a key collision, and potential data leakage.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References