What is CVE-2026-73228?
This vulnerability in Django REST framework prior to version 3.17.2 allows interference with JSONParser and FormParser during `request.data` parsing in `rest_framework/request.py`. It is recommended to immediately update affected APIs to version 3.17.2.
Azərbaycanca: Bu boşluq Django REST framework-in 3.17.2 versiyasına qədər olan sistemlərdə `request.data` emalı zamanı JSONParser və FormParser komponentlərinə müdaxiləyə imkan verir. Təsirə məruz qalan API-ləri istifadə edən tətbiqlər üçün dərhal 3.17.2 versiyasına yeniləmək tövsiyə olunur.
FAQ2
Which versions of Django REST framework are affected by CVE-2026-73228?
All systems prior to version 3.17.2 are affected by this vulnerability.
Which components can be exploited through CVE-2026-73228?
This vulnerability allows interference with the JSONParser and FormParser components during `request.data` parsing.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.