Oct. 8, 2026

Django security reporting update

published by The Django Security Team
in blog The Django weblog
published date 2026-10-08
original entry Django security reporting update

We are no longer accepting new security reports for the Django project through HackerOne. Existing reports submitted through HackerOne will remain open and continue to be handled by the Django Security Team.

If you discover a security issue in Django, please follow the reporting process described in the Django security policies.

Security issues should be reported by emailing [email protected]