Junglewise Threat Intelligence

CVE-2021-29433: PYSEC-2021-24 - ### Impact Missing input validation of some parameters on the endpoints used to confirm third-party identifiers could cause excessive use of

CVE-2021-29433 · Severity: low · CVSS 3.1 · Published 2021-04-15

Technologies: matrix-sydent (PyPI). Vendors: PyPI.

Executive brief

### Impact Missing input validation of some parameters on the endpoints used to confirm third-party identifiers could cause excessive use of disk space and memory leading to resource exhaustion. ### Patches Fixed by 3175fd3. ### Workarounds There are no known workarounds. ### References n/a ### For more information If you have any questions or comments about this advisory, email us at security@matrix.org.

Affected products

  • PyPI matrix-sydent

Related threats