[ https://issues.apache.org/jira/browse/JOHNZON-397?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]
Jean-Louis Monteiro resolved JOHNZON-397. ----------------------------------------- Resolution: Fixed > Prevent inefficient internal conversion from BigDecimal to BigInteger at > ultra-large scale > ------------------------------------------------------------------------------------------ > > Key: JOHNZON-397 > URL: https://issues.apache.org/jira/browse/JOHNZON-397 > Project: Johnzon > Issue Type: Bug > Reporter: Jean-Louis Monteiro > Priority: Major > Fix For: 2.0.0, 1.2.21 > > Time Spent: 0.5h > Remaining Estimate: 0h > > The conversion from BigDecimal#toBigInteger() can be very very slow and puts > a user at risk (DoS). We ought to have some decent limit (configurable) to > protect users. -- This message was sent by Atlassian Jira (v8.20.10#820010)