ZeroHour

CVE-2022-23837

PoC
CVSS 3.1
7.5 high
EPSS
5%p92
Published
()
Modified
Description

In api.rb in Sidekiq before 5.2.10 and 6.4.0, there is no limit on the number of days when requesting stats for the graph. This overloads the system, affecting the Web UI, and makes it unavailable to users.

Vendors
contribsysdebian
Products
sidekiq, debian linux
Weakness
CWE-770
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.