THREAT OPS › Threat News › [NVD] CVE-2026-73228 (MEDIUM 5.3) — Django REST framework is a toolkit for building Web APIs. Prior to 3.17.2, Django REST Framework's request.data parsing in rest_framework/request.py Request._parse() passes the underlying HttpRequest stream to JSONParser and FormParser for application/json and application/x-www-f
[NVD] CVE-2026-73228 (MEDIUM 5.3) — Django REST framework is a toolkit for building Web APIs. Prior to 3.17.2, Django REST Framework's request.data parsing in rest_framework/request.py Request._parse() passes the underlying HttpRequest stream to JSONParser and FormParser for application/json and application/x-www-f
CVE-2026-73228 CVSS: 5.3 MEDIUM Published: 2026-08-11T19:18:52.603
Django REST framework is a toolkit for building Web APIs. Prior to 3.17.2, Django REST Framework's request.data parsing in rest_framework/request.py Request._parse() passes the underlying HttpRequest stream to JSONParser and FormParser for application/json and application/x-www-form-urlencoded bodies, bypassing Django's DATA_UPLOA
Indicators of compromise
- CVE-2026-73228cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-73228