An issue was discovered in Zammad before 4.1.1. An attacker with valid agent credentials may send a series of crafted requests that cause an endless loop and thus cause denial of service.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2021-42084.json"