Description
A vulnerability was found in RESTEasy, where RootNode incorrectly caches routes. This issue results in hash flooding, leading to slower requests with higher CPU time spent searching and adding the entry. This flaw allows an attacker to cause a denial of service.
Remediation
References
https://bugzilla.redhat.com/show_bug.cgi?id=1855826
https://security.netapp.com/advisory/ntap-20210713-0001/
Related Vulnerabilities
CVE-2020-2285 Vulnerability in maven package org.jenkins-ci.plugins:liquibase-runner
CVE-2020-6454 Vulnerability in npm package electron
CVE-2021-23413 Vulnerability in npm package jszip
CVE-2022-22965 Vulnerability in maven package org.springframework.boot:spring-boot-starter-webflux
CVE-2021-26073 Vulnerability in npm package atlassian-connect-express