CVE-2026-26717 | OpenFUN Richie api.py sync_course_run_from_request signature verification
A vulnerability classified as problematic was found in OpenFUN Richie. The impacted element is the function sync_course_run_from_request of the file src/richie/apps/courses/api.py. Such manipulation leads to improper verification of cryptographic signature.
This vulnerability is documented as CVE-2026-26717. The attack can be executed remotely. There is not any exploit available.
Applying a patch is advised to resolve this issue.