Tag
medium
advisory
Erlang/OTP Information Disclosure Vulnerability
2 rules 1 TTPA remote, authenticated attacker can exploit an unspecified vulnerability in Erlang/OTP to disclose sensitive information.
Erlang/OTP
information-disclosure
vulnerability
erlang
2r
1t
high
advisory
Bandit WebSocket permessage-deflate unbounded inflate leads to DoS
3 rules 6 TTPsBandit versions 0.5.8 before 1.11.0 are vulnerable to denial of service when permessage-deflate is enabled, allowing an unauthenticated client to exhaust the BEAM's memory with a single, small, compressed WebSocket frame due to unbounded decompression.
bandit
websocket
denial-of-service
erlang
3r
6t