Apache James server
cpe:2.3:a:apache:james_server:*:*:*:*:*:*:*
- >= 3.8.0, <= 3.8.1
- <= 3.7.5
A denial-of-service vulnerability has been identified in Apache James Server JMAP HTML to plain text conversion implementation, affecting versions 3.8.0 prior to 3.8.2 and 3.7.0 prior to 3.7.6. This vulnerability is caused by unbounded memory consumption, which can lead to service disruption.
Exploitation of this vulnerability causes unbounded memory consumption, leading to a denial-of-service condition where the server becomes unresponsive or unavailable.
Users are advised to upgrade to Apache James Server versions 3.7.6 or 3.8.2, both of which address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.