FlawAtlas
Search the atlas
CVE-2020-10705 High

CVE-2020-10705

A flaw was discovered in Undertow in versions before Undertow 2.1.1.Final where certain requests to the "Expect: 100-continue" header may cause an out of memory error. This flaw may potentially lead to a denial of service.

Exploit probability 1.2%
Published June 10, 2020
Required by Not available
Last source change July 8, 2026

02 / AFFECTED SOFTWARE

Affected packages

Unknown Unknown

138 explicit affected versions

Maven io.undertow:undertow-core

260 explicit affected versions

04 / EVIDENCE

Source records

Open Source Vulnerabilities CVE-2020-10705

A flaw was discovered in Undertow in versions before Undertow 2.1.1.Final where certain requests to the "Expect: 100-continue" header may cause an out of memory error. This flaw may potentially lead to a denial of service.

View original source
Open Source Vulnerabilities GHSA-g4cp-h53p-v3v8

A flaw was discovered in Undertow in versions before Undertow 2.1.1.Final where certain requests to the "Expect: 100-continue" header may cause an out of memory error. This flaw may potentially lead to a denial of service.

View original source

05 / REFERENCES

Further evidence