HIGH 7.5 Maven

Undertow Uncontrolled Resource Consumption

GHSA-rf6q-vx79-mjxr · CVE-2021-3629

Published · Modified

AI SAST

Find this class of vulnerability in your own code

Corgea's AI-native static analysis detects vulnerabilities like this one across your repositories, ranks them by exploitability, and returns review-ready fixes.

Description

A flaw was found in Undertow. A potential security issue in flow control handling by the browser over HTTP/2 may potentially cause overhead or a denial of service in the server. The highest threat from this vulnerability is availability. This flaw affects Undertow versions prior to 2.0.40.Final and prior to 2.2.11.Final.

Ready to move

Start Securing

Free, no credit card | First findings in minutes