github.com/sirupsen/logrus is vulnerable to Denial of Service (DoS)
55
Medium Risk
Affected versions of the package are vulnerable to Denial of Service (DoS). When more than 64KB of data is logged in a single entry without newlines, the log writer function may hang indefinitely, preventing the system from processing further log entries and potentially causing a denial of service.
You are affected if you are using a version that falls within the vulnerable range.
github.com/sirupsen/logrus is vulnerable to Denial of Service (DoS) in versions 1.8.3 - 1.9.2.
Upgrade the github.com/sirupsen/logrus library to the patch version.
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant