Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:6374
HistoryMay 24, 2018 - 6:38 a.m.

Denial Of Service (DoS) Through JMS Deserialization

2018-05-2406:38:04
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
22

EPSS

0.036

Percentile

91.9%

nifi-jms-processors is vulnerable to denial of service (DoS) attacks. The vulnerability exists due to the usage of the vulnerable transitive activemq-client library, affected by CVE-2015-5254, which would cause a DoS attack when malicious JMS content is parsed.