Security Advisory

CVE-2023-5236

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-12-18 13:43:08
Last updated 2025-11-21 05:57:06
Assigner redhat
State PUBLISHED

Description

A flaw was found in Infinispan, which does not detect circular object references when unmarshalling. An authenticated attacker with sufficient permissions could insert a maliciously constructed object into the cache and use it to cause out of memory errors and achieve a denial of service.