helm.sh/helm/v3 is vulnerable to denial of service. The vulnerability exists because the ValidateAgainstSingleSchema
function of jsonschema.go
does not properly handle schema validation, allowing an attacker to cause an application crash through null pointer dereference by providing a malicious schema file.
CPE | Name | Operator | Version |
---|---|---|---|
helm.sh/helm/v3 | le | v3.10.2 | |
helm.sh/helm/v3 | le | v3.10.2 |