CVE-2024-4027: Red Hat Build Of Apicurio Registry 2

High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.

A flaw was found in Undertow. Servlets using a method that calls HttpServletRequestImpl.getParameterNames() can cause an OutOfMemoryError when the client sends a request with large parameter names. This issue can be exploited by an unauthorized user to cause a remote denial-of-service (DoS) attack.

Affected products

  • Red Hat Red Hat Build Of Apicurio Registry 2
  • Red Hat Red Hat Build Of Quarkus
  • Red Hat Red Hat Data Grid 8
  • Red Hat Red Hat Fuse 7
  • Red Hat Red Hat Integration Camel K 1
  • Red Hat Red Hat JBoss Enterprise Application Platform 7
  • Red Hat Red Hat JBoss Enterprise Application Platform 8
  • Red Hat Red Hat JBoss Enterprise Application Platform Expansion Pack
  • Red Hat Red Hat Process Automation 7
  • Red Hat Red Hat Single Sign-On 7

Published 2026-01-30. Last modified 2026-09-01.