akka-http-core is vulnerable to Denial of Service (DoS). A remote attacker is able to crash the application via a specifically crafted user-Agent
header with deeply nested comments directed through vulnerable parser
component.
packetstormsecurity.com/files/167018/Akka-HTTP-10.1.14-Denial-Of-Service.html
akka.io/blog/
akka.io/blog/news/2021/11/02/akka-http-10.2.7-released
akka.io/blog/news/2021/11/22/akka-http-10.1.15-released
doc.akka.io/docs/akka-http/current/security/2021-CVE-2021-42697-stack-overflow-parsing-user-agent.html
github.com/akka/akka-http/commit/6fd3c0dc2d9dc979bdc99395f39ec42e733011e4
github.com/akka/akka-http/issues/3918