Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:35620
HistoryMay 20, 2022 - 4:37 a.m.

Denial Of Service (DoS)

2022-05-2004:37:54
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
21

0.001 Low

EPSS

Percentile

37.9%

gopkg.in/yaml.v3 is vulnerable to denial of service. The vulnerability exists when the deserializing input data through the unmarshal function of yaml.go, allowing an attacker to crash the application by providing invalid YAML data.