Security Advisory

CVE-2024-34079

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-05-10 19:05:49
Last updated 2024-08-02 02:42:59
Assigner GitHub_M
State PUBLISHED

Description

octo-sts is a GitHub App that acts like a Security Token Service (STS) for the Github API. This vulnerability can spike the resource utilization of the STS service, and combined with a significant traffic volume could potentially lead to a denial of service. This vulnerability is fixed in 0.1.0