flaw was found in Undertow where malformed client requests can trigger server-side stream resets without triggering abuse counters. This issue, referred to as the "MadeYouReset" attack, allows malicious clients to induce excessive server workload by repeatedly causing server-side stream aborts. While not a protocol bug, this highlights a common implementation weakness that can be exploited to cause a denial of service (DoS).
Configuration 1 (hide)
|
05 Mar 2026, 20:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
08 Jan 2026, 23:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
08 Jan 2026, 17:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
11 Dec 2025, 23:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
07 Nov 2025, 22:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
03 Nov 2025, 20:19
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
24 Sep 2025, 14:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Published : 2025-09-02 14:15
Updated : 2026-03-05 20:16
NVD link : CVE-2025-9784
Mitre link : CVE-2025-9784
CVE.ORG link : CVE-2025-9784
JSON object : View