Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2022-23837

Опубликовано: 21 янв. 2022
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5
CVSS3: 7.5

Описание

In api.rb in Sidekiq before 5.2.10 and 6.4.0, there is no limit on the number of days when requesting stats for the graph. This overloads the system, affecting the Web UI, and makes it unavailable to users.

РелизСтатусПримечание
bionic

ignored

end of standard support, was needs-triage
devel

not-affected

7.3.2+dfsg-1
esm-apps/bionic

released

5.0.4+dfsg-2ubuntu0.1~esm1
esm-apps/focal

released

5.2.7+dfsg-1ubuntu0.1~esm1
esm-apps/jammy

released

6.3.1+dfsg-1ubuntu0.1~esm1
esm-apps/noble

not-affected

6.5.12+dfsg-1
esm-apps/xenial

needed

focal

ignored

end of standard support, was needs-triage
impish

ignored

end of life
jammy

needed

Показывать по

EPSS

Процентиль: 69%
0.006
Низкий

5 Medium

CVSS2

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
redhat
около 4 лет назад

In api.rb in Sidekiq before 5.2.10 and 6.4.0, there is no limit on the number of days when requesting stats for the graph. This overloads the system, affecting the Web UI, and makes it unavailable to users.

CVSS3: 7.5
nvd
около 4 лет назад

In api.rb in Sidekiq before 5.2.10 and 6.4.0, there is no limit on the number of days when requesting stats for the graph. This overloads the system, affecting the Web UI, and makes it unavailable to users.

CVSS3: 7.5
debian
около 4 лет назад

In api.rb in Sidekiq before 5.2.10 and 6.4.0, there is no limit on the ...

CVSS3: 7.5
github
около 4 лет назад

Denial of service in sidekiq

EPSS

Процентиль: 69%
0.006
Низкий

5 Medium

CVSS2

7.5 High

CVSS3