Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-ghwq-2rg5-c7j8

Опубликовано: 24 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

It is possible to bypass the maximum number of normalized policy alternatives that was introduced in Apache Neethi 3.2.2 via certain crafted policies, which may lead to a denial of service attack via resource consumption. Users are recommended to upgrade to version 3.2.3, which fixes this issue.

It is possible to bypass the maximum number of normalized policy alternatives that was introduced in Apache Neethi 3.2.2 via certain crafted policies, which may lead to a denial of service attack via resource consumption. Users are recommended to upgrade to version 3.2.3, which fixes this issue.

EPSS

Процентиль: 41%
0.00513
Низкий

7.5 High

CVSS3

Дефекты

CWE-400

Связанные уязвимости

CVSS3: 7.5
nvd
14 дней назад

It is possible to bypass the maximum number of normalized policy alternatives that was introduced in Apache Neethi 3.2.2 via certain crafted policies, which may lead to a denial of service attack via resource consumption. Users are recommended to upgrade to version 3.2.3, which fixes this issue.

EPSS

Процентиль: 41%
0.00513
Низкий

7.5 High

CVSS3

Дефекты

CWE-400