Lightbend Spray spray-json through 1.3.4 allows remote attackers to cause a denial of service (resource consumption) because of Algorithmic Complexity during the parsing of many JSON object fields (with keys that have the same hash code).
The product does not properly control the allocation and maintenance of a limited resource.
Link | Tags |
---|---|
https://github.com/spray/spray-json/issues/277 | third party advisory exploit |