CVE-2024-47554

Published Oct 3, 2024

Last updated a month ago

Overview

Description
Uncontrolled Resource Consumption vulnerability in Apache Commons IO. The org.apache.commons.io.input.XmlStreamReader class may excessively consume CPU resources when processing maliciously crafted input. This issue affects Apache Commons IO: from 2.0 before 2.14.0. Users are recommended to upgrade to version 2.14.0 or later, which fixes the issue.
Source
security@apache.org
NVD status
Awaiting Analysis

Weaknesses

security@apache.org
CWE-400

Social media

Hype score
Not currently trending