June 10, 2025
Django 5.1.11 fixes a potential log injection issue in 5.1.10.
Fixed a log injection possibility by migrating remaining response logging
to django.utils.log.log_response()
, which safely escapes arguments such
as the request path to prevent unsafe log output (CVE 2025-48432).
Jul 26, 2025