Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Smallrye-fault-tolerance: smallrye fault tolerance
Vulnerability Description
A flaw was found in Smallrye, where smallrye-fault-tolerance is vulnerable to an out-of-memory (OOM) issue. This vulnerability is externally triggered when calling the metrics URI. Every call creates a new object within meterMap and may lead to a denial of service (DoS) issue.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Vulnerability Type
CWE-1325
Vulnerability Title
Smallrye 安全漏洞
Vulnerability Description
SmallRye是Smallrye团队的一款开源的MicroProfile(微服务架构优化协议)的实现。 Smallrye存在安全漏洞,该漏洞源于调用metrics URI时可能导致内存不足问题,从而导致拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A