CVE-2023-52075

ReVanced API proxies requests needed to feed the ReVanced Manager and website with data. Up to and including commit 71f81f7f20cd26fd707335bca9838fa3e7df20d2, ReVanced API lacks error caching causing rate limit to be triggered thus increasing server load. This causes a denial of service for all users using the API. It is recommended to implement proper error caching.
Configurations

Configuration 1 (hide)

cpe:2.3:a:revanced:revanced:*:*:*:*:*:*:*:*

History

04 Jan 2024, 16:16

Type Values Removed Values Added
References () https://github.com/ReVanced/revanced-api/security/advisories/GHSA-852x-grxp-8p3q - () https://github.com/ReVanced/revanced-api/security/advisories/GHSA-852x-grxp-8p3q - Vendor Advisory
Summary
  • (es) Las solicitudes de proxy de API de ReVanced son necesarias para alimentar con datos al ReVanced Manage y al sitio web. Hasta el commit 71f81f7f20cd26fd707335bca9838fa3e7df20d2 incluida, la API ReVanced carece de almacenamiento en caché de errores, lo que provoca que se active el límite de velocidad, lo que aumenta la carga del servidor. Esto provoca una denegación de servicio para todos los usuarios que utilizan la API. Se recomienda implementar un almacenamiento en caché de errores adecuado.
First Time Revanced
Revanced revanced
CPE cpe:2.3:a:revanced:revanced:*:*:*:*:*:*:*:*

27 Dec 2023, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-12-27 20:15

Updated : 2024-01-04 16:16


NVD link : CVE-2023-52075

Mitre link : CVE-2023-52075

CVE.ORG link : CVE-2023-52075


JSON object : View

Products Affected

revanced

  • revanced
CWE
CWE-755

Improper Handling of Exceptional Conditions