GHSA-q6g2-g7f3-rr83
An infinite recursion is triggered in Jettison when constructing a JSONArray from a Collection that contains a self-reference in one of its elements. This leads to a StackOverflowError exception being thrown.
Package Versions Affected
Automatically patch vulnerabilities without upgrading
CVSS Version



Related Resources
References
https://nvd.nist.gov/vuln/detail/CVE-2023-1436, https://github.com/jettison-json/jettison/issues/60, https://github.com/jettison-json/jettison/pull/62, https://github.com/jettison-json/jettison, https://github.com/jettison-json/jettison/releases/tag/jettison-1.5.4, https://research.jfrog.com/vulnerabilities/jettison-json-array-dos-xray-427911
