HIGH 7.1 Maven

Logback is vulnerable to an attacker mounting a Denial-Of-Service attack by sending poisoned data

GHSA-gm62-rw4g-vrc4 · CVE-2023-6481

Published · Modified

AI SAST

Find this class of vulnerability in your own code

Corgea's AI-native static analysis detects vulnerabilities like this one across your repositories, ranks them by exploitability, and returns review-ready fixes.

Description

A serialization vulnerability in logback receiver component part of logback version 1.4.13, 1.3.13 and 1.2.12 allows an attacker to mount a Denial-Of-Service attack by sending poisoned data.

Ready to move

Start Securing

Free, no credit card | First findings in minutes