VYPR
Medium severity6.5NVD Advisory· Published Oct 16, 2017· Updated May 13, 2026

CVE-2016-8734

CVE-2016-8734

Description

Apache Subversion's mod_dontdothat module and HTTP clients 1.4.0 through 1.8.16, and 1.9.0 through 1.9.4 are vulnerable to a denial-of-service attack caused by exponential XML entity expansion. The attack can cause the targeted process to consume an excessive amount of CPU resources or memory.

Affected products

1
  • Apache Software Foundation/Apache Subversionv5
    Range: 1.4.0 to 1.8.16

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

6

News mentions

0

No linked articles in our index yet.