Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Nitay Meiron

Researcher fromJFrog Security Research Team
#37613of 53,633
7.5Total CVSS
Vulnerabilities · 1
PT-2023-7074
7.5
2023-03-16
Jettison · Jettison · CVE-2023-1436
**Name of the Vulnerable Software and Affected Versions** Jettison (affected versions not specified) **Description** The issue is related to an infinite recursion triggered in Jettison when constructing a JSONArray from a Collection that contains a self-reference in one of its elements. This leads to a StackOverflowError exception being thrown. The vulnerability may allow a remote attacker to cause a denial of service. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.