GHSA-mh55-gqvf-xfwm
ADVISORY - githubSummary
Middleware causes a prohibitive amount of heap allocations when processing malicious preflight requests that include a Access-Control-Request-Headers (ACRH) header whose value contains many commas. This behavior can be abused by attackers to produce undue load on the middleware/server as an attempt to cause a denial of service.
Common Weakness Enumeration (CWE)
Allocation of Resources Without Limits or Throttling
GitHub
-
CVSS SCORE
N/AmediumGoLang
-
Chainguard
CGA-2ch7-fpqw-wxm7
-
Chainguard
CGA-4hh3-xj9v-m5pf
-
Chainguard
CGA-4q8p-r7fw-x2qh
-
Chainguard
CGA-6392-2g9c-5xgw
-
Chainguard
CGA-68f4-crv2-qx4h
-
Chainguard
CGA-6wwq-7wq7-4qc2
-
Chainguard
CGA-8w8p-xq8v-22m7
-
Chainguard
CGA-9wx6-3xgp-f745
-
Chainguard
CGA-9x5q-52qg-w96r
-
Chainguard
CGA-ccpc-45g2-49v8
-
Chainguard
CGA-f23v-gr4g-85g6
-
Chainguard
CGA-f9hw-wvc7-v8xj
-
Chainguard
CGA-gcmv-pxrj-3x4w
-
Chainguard
CGA-gpwc-7f5f-8m65
-
Chainguard
CGA-j6c8-qgxx-v95p
-
Chainguard
CGA-j7h3-v37v-34mr
-
Chainguard
CGA-jfwp-xgw2-88xx
-
Chainguard
CGA-m9gq-993h-72v7
-
Chainguard
CGA-mp77-8xxr-pj7f
-
Chainguard
CGA-mpfc-jx36-46xh
-
Chainguard
CGA-vc2m-gvqx-pvqx
-
Chainguard
CGA-w44m-h73q-77vh
-
Chainguard
CGA-w6mf-rxg5-j7gh
-
Chainguard
CGA-w773-cxf8-cjq6
-
Chainguard
CGA-w8g5-jpw3-r6wc
-
Chainguard
CGA-x3c7-grh6-85jm
-
Chainguard
CGA-x55w-43wh-72r3
-
Chainguard
CGA-xj7q-h26w-wfxc
-
Chainguard
CGA-xp5f-fh8m-3gqr
-