- Update to 5.2.13
* CVE-2026-3902: ASGI header spoofing via underscore/hyphen
conflation (bsc#1261729)
* CVE-2026-4277: Privilege abuse in GenericInlineModelAdmin
(bsc#1261731)
* CVE-2026-4292: Privilege abuse in ModelAdmin.list_editable
(bsc#1261732)
* CVE-2026-33033: Potential denial-of-service vulnerability in
MultiPartParser via base64-encoded file upload (bsc#1261722)
* CVE-2026-33034: Potential denial-of-service vulnerability in
ASGI requests via memory upload limit bypass (bsc#1261724)
OBS-URL: https://build.opensuse.org/request/show/1345439
OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/python-Django?expand=0&rev=147
Description
No description provided
Languages
Text
100%