CVE-2024-3651: Internationalized Domain Names in Applications (IDNA) vulnerable to denial of service from specially crafted inputs to idna.encode
A specially crafted argument to the idna.encode()
function could consume significant resources. This may lead to a denial-of-service.
References
Detect and mitigate CVE-2024-3651 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →