The package org.yaml:snakeyaml from 0 and before 1.31 are vulnerable to Denial of Service (DoS) due missing to nested depth limitation for collections.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: snyk
Published: 2022-08-30T05:05:11.588462Z
Updated: 2024-09-16T21:57:41.551Z
Reserved: 2022-02-24T00:00:00
Link: CVE-2022-25857
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-08-30T05:15:07.667
Modified: 2024-03-15T11:15:07.750
Link: CVE-2022-25857
Redhat