Allocation of Resources Without Limits or Throttling in Django - CVE-2026-77050
Published: October 7, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause a denial of service.
nThe vulnerability exists due to insufficient limits on memory consumption in django.utils.translation.get_supported_language_variant() when processing language codes that are cached before their length is limited. A remote attacker can supply many distinct, very long language codes to cause a denial of service.
n