Denial of Service Vulnerability in Quivr File Upload Feature by Stangirard
CVE-2024-9229
7.5HIGH
What is CVE-2024-9229?
The vulnerability in the file upload feature of Quivr allows unauthenticated attackers to exploit excessive resource consumption. By appending characters to the end of a multipart boundary in an HTTP request, these attackers can cause the server to enter an indefinite processing cycle for each character. This results in service unavailability, impacting all users accessing the platform.
Affected Version(s)
stangirard/quivr <= unspecified