CVE-2023-6481
Logback is vulnerable to an attacker mounting a Denial-Of-Service attack by sending poisoned data
Description
A serialization vulnerability in logback receiver component part of logback version 1.4.13, 1.3.13 and 1.2.12 allows an attacker to mount a Denial-Of-Service attack by sending poisoned data.
Base CVSS
7.5
EPSS Score
0.23%
Introduced Version
1.2.0
Fix Available
1.2.13,1.3.14,1.4.14
Available Patches
Package
CVEs Fixed
Lines of Code Changed