Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-pwr2-4v36-6qpr: orjson does not limit recursion for deeply nested JSON documents

orjson.loads in orjson before 3.9.15 does not limit recursion for deeply nested JSON documents.

ghsa
#js#git

orjson does not limit recursion for deeply nested JSON documents

High severity GitHub Reviewed Published Feb 26, 2024 to the GitHub Advisory Database • Updated Feb 26, 2024

ghsa: Latest News

GHSA-vh5j-5fhq-9xwg: Taylor has race condition in /get-patch that allows purchase token replay