Improper resource allocation In github.com/forceu/gokapi

Description

Gokapi vulnerable to DoS in E2E Metadata Parser

Summary

An API endpoint accepts unbounded request bodies without any size limit. An authenticated user can cause an OOM kill and complete service disruption for all users.

Impact

Any authenticated user can crash the Gokapi server by sending concurrent large payloads.

Mitigation

Update Impact

Minimal update. May introduce new vulnerabilities or breaking changes.

Ecosystem
Package
Affected version
Patched versions
FLAT-O0IB3 – Vulnerability | Fluid Attacks Database