Description
Getahead Direct Web Remoting (DWR) before 1.1.3 allows attackers to cause a denial of service (infinite loop) via unknown vectors related to "crafted input."
Remediation
References
http://getahead.ltd.uk/dwr/changelog
Related Vulnerabilities
CVE-2020-7706 Vulnerability in npm package connie-lang
CVE-2019-17563 Vulnerability in maven package org.apache.tomcat.embed:tomcat-embed-core
CVE-2023-48240 Vulnerability in maven package org.xwiki.platform:xwiki-platform-diff-xml
CVE-2023-26149 Vulnerability in maven package org.webjars.npm:quill-mention