The transitive vulnerable dependency 'maven:org.springframework.boot:spring-boot-autoconfigure:2.5.10' has a CVE identifier of CVE-2023-20883. This vulnerability is related to an Uncontrolled Resource Consumption issue, which means that an attacker can exploit it to consume excessive resources, leading to denial of service or performance degradation.

The severity of this vulnerability is yet to be determined, as it is pending CVSS (Common Vulnerability Scoring System) allocation. CVSS is a standardized method used to assess the severity of vulnerabilities based on various factors such as impact, exploitability, and scope.

Please note that the information provided is powered by Checkmarx, a software security company. It is advisable to keep track of the official CVE database and follow the recommendations provided by the software vendor to mitigate this vulnerability.

Spring Boot Autoconfigure 2.5.10 Vulnerability: CVE-2023-20883 - Uncontrolled Resource Consumption

原文地址: http://www.cveoy.top/t/topic/fOGO 著作权归作者所有。请勿转载和采集!

免费AI点我,无需注册和登录