CVE-2022-21698HIGHCVSS 7.5fixed in golang-github-prometheus-client-golang 1.11.1-1 (bookworm)2022
CVE-2022-21698 [HIGH] CVE-2022-21698: golang-github-prometheus-client-golang - client_golang is the instrumentation library for Go applications in Prometheus, ...
client_golang is the instrumentation library for Go applications in Prometheus, and the promhttp package in client_golang provides tooling around HTTP servers and clients. In client_golang prior to version 1.11.1, HTTP server is susceptible to a Denial of Service through unbounded cardinality, and potential memory exhaustion, when hand
debian