CVE-2023-2798 Information
May 26, 2023
cve
Description
Those using HtmlUnit to browse untrusted webpages may be vulnerable to Denial of service attacks (DoS). If HtmlUnit is running on user supplied web pages an attacker may supply content that causes HtmlUnit to crash by a stack overflow. This effect may support a denial of service attack.This issue affects htmlunit before 2.70.0.
Reference
https://github.com/HtmlUnit/htmlunit/commit/940dc7fd https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=54613
Share on: