GHSA-q9xm-f36c-xm3q
MODERATECVE-2026-53781Summarize before 0.17.0 contains a resource exhaustion vulnerability that allows remote attackers to cause disk exhaustion by serving media responses that bypass the enforced size limit through missing or misreported Content-Length headers, chunked transfer encoding, or failed HEAD requests. Attackers who control a podcast feed or media URL can stream an unbounded response to local storage via the
- Affected
- < 0.17.0
- Fixed in
- 0.17.0
- Weakness
- CWE-770
- Published
- 2026-06-11
- Source
- github