Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Nitay Meiron

Pesquisador deJFrog Security Research Team
#37510de 53,638
7.5CVSS total
Vulnerabilidades · 1
PT-2023-7074
7.5
2023-03-16
Jettison · Jettison · CVE-2023-1436
**Name of the Vulnerable Software and Affected Versions** Jettison (affected versions not specified) **Description** The issue is related to an infinite recursion triggered in Jettison when constructing a JSONArray from a Collection that contains a self-reference in one of its elements. This leads to a StackOverflowError exception being thrown. The vulnerability may allow a remote attacker to cause a denial of service. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.