Uncontrolled Resource Consumption in Apache DolphinScheduler
High severity
GitHub Reviewed
Published
Mar 31, 2022
to the GitHub Advisory Database
•
Updated Jul 12, 2023
Description
Published by the National Vulnerability Database
Mar 30, 2022
Published to the GitHub Advisory Database
Mar 31, 2022
Reviewed
Apr 1, 2022
Last updated
Jul 12, 2023
Apache DolphinScheduler user registration is vulnerable to Regular express Denial of Service (ReDoS) attacks. Apache DolphinScheduler users should upgrade to version 2.0.5 or higher.
References