GJSON <= 1.9.2 allows attackers to cause a redos via crafted JSON input.
References
| Link | Resource |
|---|---|
| https://github.com/tidwall/gjson/issues/237 | Exploit Issue Tracking Patch Third Party Advisory |
Configurations
Information
Published : 2022-05-24 15:15
Updated : 2023-08-08 14:22
NVD link : CVE-2021-42248
Mitre link : CVE-2021-42248
JSON object : View
Products Affected
gjson_project
- gjson
CWE
CWE-1333
Inefficient Regular Expression Complexity
