ended4월 14일· 1 sources
단 20MB HTTP 패킷으로 Django 서버를 1분간 먹통 만드는 취약점이 공개되었습니다 (CVE-2026-33033)
Why it matters
This vulnerability highlights a critical security risk in Django where a small, unauthenticated HTTP request can paralyze a server by exploiting inefficient memory handling and stream parsing. The discovery of such a long-standing flaw using AI tools like Claude Code signals a new era in automated vulnerability research, urging developers to prioritize immediate patching of core web frameworks.
1
Sources
+0
24h
—
Growth
160d
Active
DjangoCVE-2026-33033MultiPartParserPre-Auth DoSClaude Code