CVE-2022-27892
Palantir Gotham included an endpoint that would log arbitrary sized payloads.
Palantir Gotham versions prior to 3.22.11.2 included an unauthenticated endpoint that would have allowed an attacker to exhaust the memory of the Gotham dispatch service.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Affected products
Palantir · GothamWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →