| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| org.wildfly:wildfly-domain-http | maven | <= 24.0.0.Final |
The vulnerability stems from Wildfly's management interface implementation not enforcing connection limits or timeouts. While exact function names aren't provided in the advisory, the core issue exists in the HTTP management listener configuration where:
KEV Misses 88% of Exploited CVEs- Get the report