Home
HIGH: 8.9 CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:HDefault status
unaffected
Any version
affected
Description
Incorrect JSON input stringification in Google's Tensorflow serving versions up to 2.18.0 allows for potentially unbounded recursion leading to server crash.
Problem types
Product status
Any version
Credits
Ori Hollander of the JFrog Vulnerability Research Team
References
github.com/...ommit/6cb013167d13f2ed3930aabb86dbc2c8c53f5adf