gRPC Erlang Package Vulnerable to Remote Code Execution
The gRPC Erlang package is vulnerable to remote code execution with attacker-controlled gRPC payloads. Any unauthenticated peer that can reach a gRPC endpoint with `Content-Type: application/grpc+erlpack` can crash the entire BEAM node or achieve remote code execution inside the server process. Affected versions include `grpc` ≥ 0.4.0.