Launch Week Day 1: Announcing Security Design Review
HIGH 7.5 Maven

Allocation of Resources Without Limits or Throttling in Undertow

GHSA-g4cp-h53p-v3v8 · CVE-2020-10705

Published · Modified

Description

A flaw was discovered in Undertow in versions before Undertow 2.1.1.Final where certain requests to the "Expect: 100-continue" header may cause an out of memory error. This flaw may potentially lead to a denial of service.

Ready to move

Start Securing

Free, no credit card | First findings in minutes