Medium severity5.9NVD Advisory· Published Jul 19, 2023· Updated Jun 17, 2026
CVE-2023-3782
CVE-2023-3782
Description
DoS of the OkHttp client when using a BrotliInterceptor and surfing to a malicious web server, or when an attacker can perform MitM to inject a Brotli zip-bomb into an HTTP response
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:squareup:okhttp-brotli:*:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
2- research.jfrog.com/vulnerabilities/okhttp-client-brotli-dos/nvdExploitThird Party Advisory
- github.com/square/okhttp/issues/7738nvdIssue TrackingVendor Advisory
News mentions
0No linked articles in our index yet.