Description
The session backends in Django before 1.4.21, 1.5.x through 1.6.x, 1.7.x before 1.7.9, and 1.8.x before 1.8.3 allows remote attackers to cause a denial of service (session store consumption) via multiple requests with unique session keys.
Remediation
References
Related Vulnerabilities
WordPress Plugin Slideshow Gallery LITE Unspecified Vulnerability (1.7.4.2)
WordPress Cross-Site Scripting Vulnerability (0.70 - 4.1.1)
WordPress Plugin Zephyr Project Manager Multiple Vulnerabilities (3.2.42)
PHP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2012-1171)