Bump django from 5.2.1 to 5.2.8 in /graph_tutorial #167
Microsoft GitHub Policy Service / GitOps/AdvancedSecurity
failed
Dec 8, 2025 in 0s
Dependency Review
Dependency review detected vulnerable
Details
Dependency review summary
We have found 2 vulnerable package(s).
Vulnerability
Vulnerabilities were filtered by minimum severity Moderate.
| Dependency | File Name | Version | Vulnerability | Severity |
|---|---|---|---|---|
| Django | graph_tutorial/requirements.txt | 5.2.8 | Django is vulnerable to SQL injection in column aliases | Moderate |
| Django is vulnerable to DoS via XML serializer text extraction | Moderate |
Loading