📦 Grpc

by Grpc

🔍 What is Grpc?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-11407

HIGH CVSS 7.5 Nov 26, 2024

This CVE describes a data corruption vulnerability in gRPC-C++ servers when transmit zero copy is enabled. The corruption occurs before network transmission, causing RPC requests to fail with incorrec...

CVE-2023-44487

HIGH CVSS 7.5 Oct 10, 2023

CVE-2023-44487 is an HTTP/2 protocol vulnerability that allows attackers to cause denial of service by rapidly resetting streams, consuming server resources. This affects any system using HTTP/2, incl...

CVE-2023-4785

HIGH CVSS 7.5 Sep 13, 2023

This vulnerability in gRPC's TCP server on POSIX-compatible platforms allows attackers to cause denial of service by flooding the server with connection attempts. Affected implementations include gRPC...

CVE-2023-1428

HIGH CVSS 7.5 Jun 9, 2023

This vulnerability in gRPC's C++ implementation causes an abort() call when specific malformed HTTP/2 headers are sent, leading to denial of service. Any system using vulnerable gRPC versions with HTT...

CVE-2024-7246

MEDIUM CVSS 5.3 Aug 6, 2024

This CVE describes a gRPC vulnerability where a malicious client can poison the HPACK compression table between an HTTP/2 proxy and backend server. This causes other clients to experience failed reque...