CVE-2024-0241
diaconou encodedid::rails
encoded_id-rails versions before 1.0.0.beta2 are affected by an uncontrolled resource consumption vulnerability. A remote and unauthenticated attacker might cause a denial of service condition by sending an HTTP request with an extremely long "id" parameter.
- CVSS
- 7.5
- EPSS
- 1.11% 62.8% percentile
- CISA KEV
- Not listed
- Published
- 2024.01.05