Security: smithy-lang/smithy-rs
Security Advisories
View information about security vulnerabilities from this repository's maintainers.
-
Allocation of resources without limits in the default aws-smithy-http-server serve() path allows unauthenticated Slowloris denial of serviceGHSA-jvxp-qmx7-gjpx published
Jul 23, 2026 by landonxjamesHigh -
Uncontrolled recursion in smithy-rs generated JSON, CBOR, and XML deserializers allows unauthenticated remote denial of service via recursive shapesGHSA-4f2p-7j38-4xrg published
Jul 21, 2026 by landonxjamesHigh