CVE-2025-53636 Information

Description

Open OnDemand is an open-source HPC portal. Users can flood logs by interacting with the shell app and generating many errors. Users who flood logs can create very large log files causing a Denial of Service (DoS) to the ondemand system. This vulnerability is fixed in 3.1.14 and 4.0.6.

Reference

https://github.com/OSC/ondemand/commit/40800d68cd019c5f1c48b2deafebba6dff4abee2 https://github.com/OSC/ondemand/commit/96f29b995e1add7562516614e4dc8d961987e8b4 https://github.com/OSC/ondemand/security/advisories/GHSA-x5xv-fw37-v524

CNNVD-202507-1694 (Published: 2025-07-11)

Share on: