Lightbend · Spray-Json · CVE-2018-18854
**Name of the Vulnerable Software and Affected Versions**
Lightbend Spray spray-json versions 1.3.4 and earlier
**Description**
The issue allows remote attackers to cause a denial of service due to Algorithmic Complexity during the parsing of many JSON object fields with keys that have the same hash code, leading to resource consumption.
**Recommendations**
For versions 1.3.4 and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.