What the vulnerability does
01Description
Uncontrolled Resource Consumption vulnerability in David Artiss Code Embed.This issue affects Code Embed: from n/a through 2.3.6.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
What the vulnerability does
Uncontrolled Resource Consumption vulnerability in David Artiss Code Embed.This issue affects Code Embed: from n/a through 2.3.6.
Explanation of Vulnerability in Simple Terms
Code Embed through version 2.3.6 does not properly limit resource consumption when processing embedded content. An authenticated user with low privileges can trigger excessive resource usage, causing the site to become slow or unresponsive. No code execution or data breach occurs, but availability is impacted.
What an attacker can do
Make the site slow or unresponsive by consuming excessive server resources.
Potential impact on your site
Site performance degradation or temporary unavailability during or after an attack.
Conditions required to exploit
Attacker must have a low-privilege authenticated account; no user interaction required.
Key dates
External resources
Related vulnerabilities