Buffer leak on incoming WebSocket PONG message(s) in Undertow before 2.0.40 and 2.2.10 can lead to memory exhaustion and allow a denial of service.
{
"github_reviewed": true,
"cwe_ids": [
"CWE-400",
"CWE-401"
],
"github_reviewed_at": "2022-07-15T21:07:20Z",
"nvd_published_at": "2022-08-23T16:15:00Z",
"severity": "HIGH"
}