GMS-2019-40: Denial of Service in mem
(updated )
Versions of mem
are vulnerable to Denial of Service (DoS). The package fails to remove old values from the cache even after a value passes its maxAge
property. This may allow attackers to exhaust the system’s memory if they are able to abuse the application logging.
References
Detect and mitigate GMS-2019-40 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →