Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Toptotu

#35514of 53,624
7.5Total CVSS
Vulnerabilities · 1
PT-2021-3184
7.5
2021-01-05
Gjson · Gjson · CVE-2020-36066
**Name of the Vulnerable Software and Affected Versions** GJSON versions prior to 1.6.5 **Description** The issue is related to an uncontrolled resource consumption in the GJSON library, which can be exploited by a remote attacker using a specially crafted JSON request to cause a denial of service. A maliciously crafted JSON input can lead to a denial of service attack. **Recommendations** For versions prior to 1.6.5, update to version 1.6.5 or later to resolve the issue. As a temporary workaround, consider restricting the use of the GJSON library until a patch is available. Avoid using the GJSON library with untrusted JSON inputs until the issue is resolved.