CVE-2021-44716 affecting package prometheus-process-exporter for versions less than 0.8.2-1
Details
net/http in Go before 1.16.12 and 1.17.x before 1.17.5 allows uncontrolled memory consumption in the header canonicalization cache via HTTP/2 requests.