Red Hat Inc Wildfly vulnerabilities
2 known vulnerabilities affecting red_hat_inc/wildfly.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2016-9589P3HIGHCVSS 7.5v11.0.0.Beta12018-03-12
CVE-2016-9589 [HIGH] CWE-400 CVE-2016-9589: Undertow in Red Hat wildfly before version 11.0.0.Beta1 is vulnerable to a resource exhaustion resul
Undertow in Red Hat wildfly before version 11.0.0.Beta1 is vulnerable to a resource exhaustion resulting in a denial of service. Undertow keeps a cache of seen HTTP headers in persistent connections. It was found that this cache can easily exploited to fill memory with garbage, up to "max-headers" (default 200) * "max-header-size" (default 1MB) per acti
nvd
CVE-2018-1047P4MEDIUMCVSS 5.5v9.x2018-01-24
CVE-2018-1047 [MEDIUM] CWE-20 CVE-2018-1047: A flaw was found in Wildfly 9.x. A path traversal vulnerability through the org.wildfly.extension.un
A flaw was found in Wildfly 9.x. A path traversal vulnerability through the org.wildfly.extension.undertow.deployment.ServletResourceManager.getResource method could lead to information disclosure of arbitrary local files.
nvd