GHSA-w6pv-c757-6rgr
GitHub Security Advisory
apollo_upload_server has Denial of Service vulnerability
✓ GitHub Reviewed
MODERATE
Has CVE
Advisory Details
A Denial Of Service vulnerability in the apollo_upload_server Ruby gem in GitLab CE/EE version 11.11 and above allows an attacker to deny access to all users via specially crafted requests to the apollo_upload_server middleware.
Affected Packages
RubyGems
apollo_upload_server
Affected versions:
0
(fixed in 2.1.0)
Related CVEs
Key Information
5.0
/10
Dataset
Last updated: August 4, 2025 6:39 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.