Site icon API Security Blog

Denial Of Service (DoS)

spring-messaging is vulnerable to denial of service. The vulnerability exists because the `handleMessageInternal` function of `SimpleBrokerMessageHandler.java` does not properly handle to ignore the invalid `STOMP` frames, allowing an attacker to cause an application crash through the WebSocket endpoint.Read More

Exit mobile version