Description
An issue in Renato v0.17.0 allows attackers to cause a Denial of Service (DoS) via a crafted payload injected into the Search parameter.
Remediation
References
http://raneto.com/
https://cwe.mitre.org/data/definitions/703.html
https://github.com/gilbitron/Raneto/releases
https://gainsec.com/2022/08/04/cve-2022-35142-cve-2022-35143-cve-2022-35144/
Related Vulnerabilities
CVE-2020-2297 Vulnerability in maven package com.hoiio.jenkins:sms
CVE-2016-10553 Vulnerability in npm package sequelize
CVE-2020-23849 Vulnerability in npm package jsoneditor
CVE-2016-9606 Vulnerability in maven package org.jboss.resteasy:resteasy-yaml-provider
CVE-2023-37259 Vulnerability in npm package matrix-react-sdk