CVE-2022-25897

Publication date

2022-09-08 05:05:12

Family

snyk

State

PUBLISHED

Description

The package org.eclipse.milo:sdk-server before 0.6.8 are vulnerable to Denial of Service (DoS) when bypassing the limitations for excessive memory consumption by sending multiple CloseSession requests with the deleteSubscription parameter equal to False.