Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.
Reconnecting to live updates…
EPSS 0.4%top 71%

CVE-2026-35193: CWE-524: Use of Cache Containing Sensitive Information in djangoproject Django

0
Low
VulnerabilityCVE-2026-35193cvecve-2026-35193cwe-524
Published: 06/03/2026 (06/03/2026, 13:16:38 UTC)
Source: CVE Database V5
Vendor/Project: djangoproject
Product: Django

Description

Django versions 5.2 before 5.2.15 and 6.0 before 6.0.6 have a vulnerability in the UpdateCacheMiddleware where the Authorization header is not added to the Vary response header for requests that include it without Cache-Control: public. This can allow remote attackers to access private cached responses via unauthenticated requests to the same URL. Earlier unsupported Django versions may also be affected. The issue has a low severity score and no known exploits in the wild.

CVSS v3.1

Score 3.1low

Attack Vector
Network
Attack Complexity
High
Privileges Required
None
User Interaction
Required
Scope
Unchanged
Confidentiality
Low
Integrity
None
Availability
None
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Affected software

django
pkg:pypi/django
Affected versions
=5.2=6.0>=5.2 <5.2.15>=6.0 <6.0.6

Run on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.

AI-Powered Analysis

Machine-generated threat intelligence

AILast updated: 06/12/2026, 11:18:21 UTC

Technical Analysis

The vulnerability in Django's UpdateCacheMiddleware arises because it fails to include the Authorization header in the Vary response header when the request contains Authorization but lacks Cache-Control: public. This omission can cause private cached responses to be served to unauthorized users making unauthenticated requests to the same URL, potentially exposing sensitive information. The issue affects Django 5.2 versions prior to 5.2.15 and 6.0 versions prior to 6.0.6. Earlier unsupported versions such as 5.0.x, 4.1.x, and 3.2.x were not evaluated but may also be vulnerable. The CVSS score is 3.1 (low severity), and no official remediation level or patch links are provided in the data.

Potential Impact

Remote attackers can read private cached responses without authentication due to improper cache control handling in Django's middleware. This may lead to exposure of sensitive information cached for authorized users. The impact is limited to information disclosure with no integrity or availability impact reported.

Mitigation Recommendations

Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Since no official remediation level or patch links are provided, users should monitor Django project advisories for updates addressing this issue. Until a fix is available, consider disabling or carefully configuring caching middleware to avoid caching responses that depend on Authorization headers.

Pro Console: star threats, build custom feeds, automate alerts via Slack, email & webhooks.Upgrade to Pro

Technical Details

Data Version
5.2
Assigner Short Name
DSF
Date Reserved
2026-04-01T18:21:23.779Z
Cvss Version
3.1
State
PUBLISHED
Remediation Level
null

Threat ID: 6a2037c3e29bf47b50c14da5

Added to database: 06/03/2026, 14:18:43 UTC

Last enriched: 06/12/2026, 11:18:21 UTC

Last updated: 07/31/2026, 19:22:58 UTC

Views: 73

Community Reviews

0 reviews

Crowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.

Sort by
Loading community insights…

Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.

Actions

PRO

Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.

Please log in to the Console to use AI analysis features.

Need more coverage?

Upgrade to Pro Console for AI refresh and higher limits.

For incident response and remediation, OffSeq services can help resolve threats faster.

Latest Threats

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses