Undertow vulnerable to Denial of Service (DoS) attacks
High severity
GitHub Reviewed
Published
Jul 15, 2022
to the GitHub Advisory Database
•
Updated Jan 28, 2023
Description
Published to the GitHub Advisory Database
Jul 15, 2022
Reviewed
Jul 15, 2022
Published by the National Vulnerability Database
Aug 26, 2022
Last updated
Jan 28, 2023
Undertow client side invocation timeout raised when calling over HTTP2, this vulnerability can allow attacker to carry out denial of service (DoS) attacks in versions less than 2.2.15 Final.
References