spring-cloud-sleuth-instrumentation is vulnerable to Uncontrolled Resource Consumption
80
High Risk
Spring Cloud Sleuth contains a denial-of-service vulnerability in its Spring TX instrumentation. Applications using vulnerable versions of spring-cloud-sleuth-instrumentation with Spring TX instrumentation enabled may be susceptible to specially crafted requests that trigger excessive resource consumption, potentially causing service degradation or application unavailability.
You are affected if you are using a version that falls within the vulnerable range and if Spring TX instrumentation is not disabled.
spring-cloud-sleuth-instrumentation is vulnerable to Uncontrolled Resource Consumption in versions 3.1.0 - 3.1.13.
Upgrade the org.springframework.cloud:spring-cloud-sleuth-instrumentation library to a patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant