Input validation error in Synapse - #VU139987
Published: July 29, 2026
Synapse
Detailed vulnerability description
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to improper input validation in multipart/form-data request handling when processing malicious multipart/form-data requests with a varied-case Content-Type header. A remote attacker can send a specially crafted request to cause a denial of service.
The issue can exhaust all available memory, causing the service to become unresponsive or be terminated.