tidwall/gjson

tidwall/gjson

Releases68
Frequency1 month 2 weeks
Last Release
Stars15.5K
Get JSON values quickly - JSON parser for Go

CVE History

CVEPublishedCVSS v3CVSS v2

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-42836. Reason: This candidate is a duplicate of CVE-2021-42836. Notes: All CVE users should reference CVE-2021-42836 instead of this candidate.

7.5 HIGH5 MEDIUM

GJSON before 1.9.3 allows a ReDoS (regular expression denial of service) attack.

7.5 HIGH5 MEDIUM

GJSON <=v1.6.5 allows attackers to cause a denial of service (panic: runtime error: slice bounds out of range) via a crafted GET call.

7.5 HIGH5 MEDIUM

GJSON <1.6.5 allows attackers to cause a denial of service (remote) via crafted JSON.

7.5 HIGH5 MEDIUM

GJSON before 1.6.4 allows attackers to cause a denial of service via crafted JSON.