Jetty PushSessionCacheFilter can be exploited by unauthenticated users to launch remote DoS attacks by exhausting the server’s memory.
2024-10-14T16:15:03.930
2024-11-08T21:29:51.237
Analyzed
CVSSv3.1: 3.1 (LOW)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | eclipse | jetty | < 10.0.18 | Yes |
Application | eclipse | jetty | < 11.0.18 | Yes |
Application | eclipse | jetty | < 12.0.4 | Yes |