Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2022-23837

Опубликовано: 21 янв. 2022
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5
CVSS3: 7.5

Описание

In api.rb in Sidekiq before 5.2.10 and 6.4.0, there is no limit on the number of days when requesting stats for the graph. This overloads the system, affecting the Web UI, and makes it unavailable to users.

РелизСтатусПримечание
bionic

ignored

end of standard support, was needs-triage
devel

not-affected

7.3.2+dfsg-1
esm-apps-legacy/xenial

needed

esm-apps/bionic

released

5.0.4+dfsg-2ubuntu0.1~esm1
esm-apps/focal

released

5.2.7+dfsg-1ubuntu0.1~esm1
esm-apps/jammy

released

6.3.1+dfsg-1ubuntu0.1~esm1
esm-apps/noble

not-affected

6.5.12+dfsg-1
esm-apps/resolute

not-affected

7.3.2+dfsg-1
esm-apps/xenial

ignored

end of ESM support, was needed
focal

ignored

end of standard support, was needs-triage

Показывать по

EPSS

Процентиль: 92%
0.05258
Низкий

5 Medium

CVSS2

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
redhat
больше 4 лет назад

In api.rb in Sidekiq before 5.2.10 and 6.4.0, there is no limit on the number of days when requesting stats for the graph. This overloads the system, affecting the Web UI, and makes it unavailable to users.

CVSS3: 7.5
nvd
больше 4 лет назад

In api.rb in Sidekiq before 5.2.10 and 6.4.0, there is no limit on the number of days when requesting stats for the graph. This overloads the system, affecting the Web UI, and makes it unavailable to users.

CVSS3: 7.5
debian
больше 4 лет назад

In api.rb in Sidekiq before 5.2.10 and 6.4.0, there is no limit on the ...

CVSS3: 7.5
github
больше 4 лет назад

Denial of service in sidekiq

EPSS

Процентиль: 92%
0.05258
Низкий

5 Medium

CVSS2

7.5 High

CVSS3

Уязвимость CVE-2022-23837