Security Advisory

CVE-2023-3782

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-07-19 20:57:16
Last updated 2024-10-28 15:09:37
Assigner JFROG
State PUBLISHED

Description

DoS of the OkHttp client when using a BrotliInterceptor and surfing to a malicious web server, or when an attacker can perform MitM to inject a Brotli zip-bomb into an HTTP response