#VU96018 Input validation error in Pivotal Spring Framework - CVE-2024-38809
Published: August 14, 2024 / Updated: December 4, 2024
Pivotal Spring Framework
Pivotal
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to insufficient validation of user-supplied input when parsing ETags from "If-Match" or "If-None-Match" request headers. A remote attacker can send a specially crafted HTTP request to the application and perform a denial of service (DoS) attack.