Closed
Description
IT seems there is open CVE against the project since 2/6/2025:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-57699
Description
A security issue was found in Netplex Json-smart 2.5.0 through 2.5.1. When loading a specially crafted JSON input, containing a large number of ’{’, a stack exhaustion can be trigger, which could allow an attacker to cause a Denial of Service (DoS). This issue exists because of an incomplete fix for CVE-2023-1370.
This causes security fails in build automations.
Metadata
Metadata
Assignees
Labels
No labels