CVE-2022-45688
json stack overflow vulnerability
Description
A stack overflow in the XML.toJSONObject component of hutool-json v5.8.10 and org.json:json before version 20230227 allows attackers to cause a Denial of Service (DoS) via crafted JSON or XML data.
Base CVSS
7.5
EPSS Score
0.91%
Introduced Version
0,4.0.0,5.3.1,5.7.11,20160807,20160810,20170516,20171018,20180130,20180813,20190722,20200518,20201115,20210307,20211205,20220320,20220924,20080701,20090211,20131018,20140107,20141113,20150729,20151123,20160212,chargebee-1.0
Fix Available
5.8.25,20230227
Available Patches
Package
CVEs Fixed
Lines of Code Changed