HIGH 7.5 Maven
Moderate severity vulnerability that affects io.undertow:undertow-core
GHSA-3x7h-5hfr-hvjm · CVE-2017-2670
Published · Modified
AI SAST
Find this class of vulnerability in your own code
Corgea's AI-native static analysis detects vulnerabilities like this one across your repositories, ranks them by exploitability, and returns review-ready fixes.
Description
It was found in Undertow before 1.3.28 that with non-clean TCP close, the Websocket server gets into infinite loop on every IO thread, effectively causing DoS.
References
Ready to move
Start Securing
Free, no credit card | First findings in minutes