github.com/ethereum/go-ethereum is vulnerable to Uncontrolled Resource Consumption
48
Medium Risk
Affected versions of this package are vulnerable to a Denial of Service (DoS) via a deeply nested GraphQL query. An attacker could exploit this vulnerability by crafting and sending a malicious query with excessive nesting levels, which would consume disproportionate amounts of CPU and memory resources during parsing and execution. It could lead to service degradation or a complete outage, as the existing timeout mechanism might not trigger quickly enough to prevent resource exhaustion.
You are affected if you are using a version that falls within the vulnerable range.
github.com/ethereum/go-ethereum is vulnerable to Uncontrolled Resource Consumption in versions 1.9.0 - 1.16.2.
Upgrade the github.com/ethereum/go-ethereum library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant