CVE-2024-10846
23.01.2025, 16:15
The compose-go library component in versions v2.10-v2.4.0 allows an authorized user who sends malicious YAML payloads to cause the compose-go to consume excessive amount of Memory and CPU cycles while parsing YAML, such as used by Docker Compose from versions v2.27.0 to v2.29.7 includedEnginsight
Awaiting analysis
This vulnerability is currently awaiting analysis.
Common Weakness Enumeration