Логотип exploitDog
bind:CVE-2025-0189
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-0189

Количество 2

Количество 2

nvd логотип

CVE-2025-0189

11 месяцев назад

In version 3.25.0 of aimhubio/aim, the tracking server is vulnerable to a denial of service attack. The server overrides the maximum size for websocket messages, allowing very large images to be tracked. This causes the server to become unresponsive to other requests while processing the large image, leading to a denial of service condition.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-j5qj-rg5j-j7c2

11 месяцев назад

Aim Uncontrolled Resource Consumption vulnerability

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-0189

In version 3.25.0 of aimhubio/aim, the tracking server is vulnerable to a denial of service attack. The server overrides the maximum size for websocket messages, allowing very large images to be tracked. This causes the server to become unresponsive to other requests while processing the large image, leading to a denial of service condition.

CVSS3: 7.5
0%
Низкий
11 месяцев назад
github логотип
GHSA-j5qj-rg5j-j7c2

Aim Uncontrolled Resource Consumption vulnerability

CVSS3: 7.5
0%
Низкий
11 месяцев назад

Уязвимостей на страницу