CVE-2024-8028 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

A vulnerability in danswer-ai/danswer v0.3.94 allows an attacker to cause a Denial of Service (DoS) by uploading a file with a malformed multipart boundary. By…
High CVSS: 7.5

CVE-2024-8028

A vulnerability in danswer-ai/danswer v0.3.94 allows an attacker to cause a Denial of Service (DoS) by uploading a file with a malformed multipart boundary. By appending a large number of characters to the end of the multipart boundary, the server continuously processes each character, rendering the application inaccessible. This issue can be exploited by sending a single crafted request, affecting all users on the server.
Vendor
-
Product
-
CWE
CWE-770
Yayın Tarihi
2025-03-20 10:15:39
Güncelleme
2025-10-15 13:15:53
Source Identifier
security@huntr.dev
KEV Date Added
-

Kategoriler

Referanslar