Home
About
Blog
Courses
Contact
More about Django
· Module 13 - Security hardening
13.5 Common Django vulnerabilities
22 min
Back to the curriculum
Video coming soon
The recording for this lesson has not been published yet.
What we cover
XSS through mark_safe and autoescape off
CSRF and exempted views
SQL injection with raw and extra queries
Mass assignment through open form fields
Keeping dependencies patched
Written notes for this lesson are being prepared. The outline above already shows what the recording will cover.
← 13.4 Protecting forms from abuse
14.1 PaaS versus your own server →
After this lesson you will
Recognise the mistakes that create real holes
Review your own code for those patterns
Module 13
13.1
The deployment checklist
13.2
HTTPS, HSTS and secure cookies
13.3
Content Security Policy with django-csp
13.4
Protecting forms from abuse
13.5
Common Django vulnerabilities