Advisories for Golang/Github.com/Clidey/Whodb/Core package

2024

WhoDB Allows Unbounded Memory Consumption in Authentication Middleware Can Lead to Denial of Service

A Denial of Service (DoS) vulnerability in the authentication middleware allows any client to cause memory exhaustion by sending large request bodies. The server reads the entire request body into memory without size limits, creating multiple copies during processing, which can lead to Out of Memory conditions. Affects all versions up to the latest one (v0.43.0).