Description
In Play Framework 2.6.0 through 2.8.2, data amplification can occur when an application accepts multipart/form-data JSON input.
Remediation
References
https://www.playframework.com/security/vulnerability
https://www.playframework.com/security/vulnerability/CVE-2020-26882-JsonParseDataAmplification
Related Vulnerabilities
CVE-2017-15703 Vulnerability in maven package org.apache.nifi:nifi-framework-cluster-protocol
CVE-2018-1272 Vulnerability in maven package org.springframework:spring-core
CVE-2022-36897 Vulnerability in maven package com.compuware.jenkins:compuware-xpediter-code-coverage
CVE-2023-45819 Vulnerability in npm package tinymce
CVE-2016-5007 Vulnerability in maven package org.springframework:spring-webmvc