Spring MVC controller methods with an @RequestBody byte[] method parameter are vulnerable to a DoS attack.
https://github.com/funcid/CVE-2024-38828
https://github.com/First-Roman/sprig-mvc-demo-patch
https://github.com/advisories/GHSA-w3c8-7r8f-9jp8
https://spring.io/security/cve-2024-38828