Websweeper 4.0 does not limit the length of certain HTTP headers, which allows remote attackers to cause a denial of service (memory exhaustion) via an extremely large HTTP Referrer: header.
| Software | From | Fixed in |
|---|---|---|
| baltimore_technologies / websweeper | 4.0 | 4.0.x |