CVE-2019-10093: Uncontrolled Resource Consumption
(updated )
In Apache Tika, a carefully crafted 2003ml
or 2006ml
file could consume all available SAXParsers
in the pool and lead to very long hangs.
References
Detect and mitigate CVE-2019-10093 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →