Junglewise Threat Intelligence

CVE-2025-24370: PYSEC-2026-329 - Django-Unicorn Class Pollution Vulnerability, Leading to XSS, DoS and Authentication Bypass

CVE-2025-24370 · Severity: medium · CVSS 4 · Published 2026-06-29

Technologies: django-unicorn (PyPI). Vendors: PyPI.

Executive brief

Django-Unicorn Class Pollution Vulnerability, Leading to XSS, DoS and Authentication Bypass

Affected products

  • PyPI django-unicorn

Related threats