-
Notifications
You must be signed in to change notification settings - Fork 2.8k
Open
Description
While working on agents project, I identified a Denial of Service (DoS) vulnerability in the Marshmallow package. The issue affects the Schema.load(data, many=True) method, where processing moderately sized inputs can result in excessive CPU consumption. This behavior may lead to application slowdowns or service disruption, especially in API environments that accept bulk input.
Metadata
Metadata
Assignees
Labels
No labels