Описание
A security defect was identified that enabled a user of Foundry Issues to perform a Denial of Service attack by submitting malformed data in an Issue that caused loss of frontend functionality to all issue participants.
This defect was resolved with the release of Foundry Issues 2.510.0 and Foundry Frontend 6.228.0.
Уязвимые конфигурации
Конфигурация 1Версия до 6.228.0 (исключая)Версия до 2.510.0 (исключая)
Одно из
cpe:2.3:a:palantir:foundry_frontend:*:*:*:*:*:*:*:*
cpe:2.3:a:palantir:foundry_issues:*:*:*:*:*:*:*:*
EPSS
Процентиль: 53%
0.00299
Низкий
7.7 High
CVSS3
Дефекты
CWE-20
NVD-CWE-noinfo
Связанные уязвимости
CVSS3: 7.7
github
больше 2 лет назад
A security defect was identified that enabled a user of Foundry Issues to perform a Denial of Service attack by submitting malformed data in an Issue that caused loss of frontend functionality to all issue participants. This defect was resolved with the release of Foundry Issues 2.510.0 and Foundry Frontend 6.228.0.
EPSS
Процентиль: 53%
0.00299
Низкий
7.7 High
CVSS3
Дефекты
CWE-20
NVD-CWE-noinfo