Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-59295

Опубликовано: 24 авг. 2026
Источник: nvd
CVSS3: 5.9
EPSS Низкий

Описание

Micrometer-instrumented Apache HttpAsyncClient (4.x or 5.x) usage via MicrometerHttpClientInterceptor can leak memory unboundedly when asynchronous requests fail before receiving a response (e.g. connection resets or timeouts). Tracking state for these requests remains in memory indefinitely, and sustained failures lead to heap exhaustion and OutOfMemoryError crashes.

EPSS

Процентиль: 16%
0.0025
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-401

Связанные уязвимости

CVSS3: 5.9
github
3 дня назад

Micrometer-instrumented Apache HttpAsyncClient (4.x or 5.x) usage via MicrometerHttpClientInterceptor can leak memory unboundedly when asynchronous requests fail before receiving a response (e.g. connection resets or timeouts). Tracking state for these requests remains in memory indefinitely, and sustained failures lead to heap exhaustion and OutOfMemoryError crashes.

EPSS

Процентиль: 16%
0.0025
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-401