DirectorySecurity Advisories
Sign In
Security Advisories

CGA-6r9p-pq59-pmcp

Published

Last updated

https://images.chainguard.dev/security/CGA-6r9p-pq59-pmcp
Package

gitlab-cng-17.0

Latest Update
Fix not planned
Aliases
  • CVE-2023-26141
  • GHSA-3qc2-v3hp-6cv8

Severity

5.7

Medium

CVSS V3

Summary

sidekiq Denial of Service vulnerability

Description

Versions of the package sidekiq before 7.1.3 and 6.5.10 are vulnerable to Denial of Service (DoS) due to insufficient checks in the dashboard-charts.js file. An attacker can exploit this vulnerability by manipulating the localStorage value which will cause excessive polling requests.

References

Updates


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2024 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard Images