Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-779h-3r69-4f5p: json-io vulnerable to stack exhaustion

An issue was discovered json-io thru 4.14.0 allows attackers to cause a denial of service or other unspecified impacts via crafted object that have deeply nested structures.

ghsa
#dos#js#git

json-io vulnerable to stack exhaustion

Low severity GitHub Reviewed Published Jun 14, 2023 to the GitHub Advisory Database • Updated Jun 14, 2023

Related news

CVE-2023-34610: Stack overflow error caused by json-io parsing of untrusted JSON String · Issue #169 · jdereg/json-io

An issue was discovered json-io thru 4.14.0 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies.