Launch Week Day 1: Announcing Security Design Review
HIGH 7.5 Maven

Moderate severity vulnerability that affects io.undertow:undertow-core

GHSA-3x7h-5hfr-hvjm · CVE-2017-2670

Published · Modified

Description

It was found in Undertow before 1.3.28 that with non-clean TCP close, the Websocket server gets into infinite loop on every IO thread, effectively causing DoS.

Ready to move

Start Securing

Free, no credit card | First findings in minutes