Description
Getahead Direct Web Remoting (DWR) before 1.1.3 allows attackers to cause a denial of service (infinite loop) via unknown vectors related to "crafted input."
Remediation
References
http://getahead.ltd.uk/dwr/changelog
Related Vulnerabilities
CVE-2021-22696 Vulnerability in maven package org.apache.cxf:cxf-rt-rs-security-oauth2
CVE-2023-40027 Vulnerability in npm package @keystone-6/core
CVE-2021-46708 Vulnerability in maven package org.webjars.npm:swagger-ui
CVE-2022-22965 Vulnerability in maven package org.springframework.boot:spring-boot-starter-web