GeekNews[verified]@GeekNewsHadaDisclosure
A newly disclosed CVE‑2026‑33033 describes a pre‑authentication CPU exhaustion attack in Django’s MultiPartParser triggered by a 20 MB HTTP multipart payload encoded in base64 that is primarily whitespace, potentially shutting the server down for about a minute.
Seokchan Yoon / 윤석찬[verified]@_seokchan_yoonPatch
The note announces a Pre‑Auth DoS vulnerability (CVE‑2026‑33033), provides PoC details, and urges users to upgrade to patched Django releases.
Open Source Security mailing list@oss_securityDisclosure
The post announces two new DoS vulnerabilities in Django: one affecting MultiPartParser with base64‑encoded file uploads and another exploiting ASGI's memory upload limit bypass. No PoC, exploit tool, active exploitation, or patch is referenced.
_inside@J_zjaan7946Disclosure
A new denial‑of‑service vulnerability affecting Django’s file upload processor (CVE-2026-33033) has been announced via a blog post. No proof‑of‑concept, exploit code, or patch information is provided in the notice.
Infoflowcloud@infoflowcloudDisclosure
The post announces CVE-2026-33033 in specific software releases, describing it as a remote performance‑degradation issue via MultiPartParser, without providing PoC, exploit, or mitigation details.
CVE@CVEnewDisclosure
The post announces a performance‑degradation vulnerability in `MultiPartParser` affecting multiple software versions, with no indication of PoCs, active exploitation, or available patches.