4.5.6
11 years ago
1 years ago
Known vulnerabilities in the com.upokecenter:cbor package. This does not include vulnerabilities belonging to this package’s dependencies.
Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.
Fix for free| Vulnerability | Vulnerable Version |
|---|---|
com.upokecenter:cbor is a Java implementation of Concise Binary Object Representation. Affected versions of this package are vulnerable to Denial of Service (DoS) via an inefficient algorithm when a maliciously crafted input is passed to WorkaroundAn input that decodes to a single CBOR object is not capable of containing a CBOR map if:
How to fix Denial of Service (DoS)? Upgrade | [4.0.0,4.5.2) |