HIGH 7.5 Go

Shoutrrr util package DoS via sending 2000, 4000, or 6000 character messages

GHSA-477v-w82m-634j · CVE-2022-25891 · GO-2022-0528 · SNYK-GOLANG-GITHUBCOMCONTAINRRRSHOUTRRRPKGUTIL-2849059

Published · Modified

Description

The package github.com/containrrr/shoutrrr/pkg/util before 0.6.0 are vulnerable to Denial of Service (DoS) via the util.PartitionMessage function. Exploiting this vulnerability is possible by sending exactly 2000, 4000, or 6000 characters messages.

Ready to move

Start Securing

Free, no credit card | First findings in minutes