OSV 1.4.0 · github-reviewed · 修改于 2026-08-26 22:59
发布时间
2026-06-16 05:30
GitHub 审查时间
2026-08-26 22:59
NVD 发布时间
2026-06-16 04:16
源文件
advisories/github-reviewed/2026/06/GHSA-26m2-9g2q-v45q/GHSA-26m2-9g2q-v45q.json
In Spring Cloud Sleuth, it is possible for a user to provide specially crafted calls that may cause a denial-of-service (DoS) condition. The application is vulnerable when it uses a vulnerable version of org.springframework.cloud:spring-cloud-sleuth-instrumentation and Spring TX instrumentation is not disabled.
Affected versions: Spring Cloud Sleuth 3.1.0 through 3.1.13.