CVE-2022-23837
EUVD-2022-063421.01.2022, 21:15
In api.rb in Sidekiq before 5.2.10 and 6.4.0, there is no limit on the number of days when requesting stats for the graph. This overloads the system, affecting the Web UI, and makes it unavailable to users.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| contribsys | sidekiq | 𝑥 < 5.2.10 |
| contribsys | sidekiq | 6.0.0 ≤ 𝑥 < 6.4.0 |
| debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
References