Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Wangcong15

#36046of 53,632
7.5Total CVSS
Vulnerabilities · 1
PT-2020-12279
7.5
2020-03-19
Buger · Buger Jsonparser · CVE-2020-10675
**Name of the Vulnerable Software and Affected Versions** buger jsonparser versions through 2019-12-04 **Description** The issue allows attackers to cause a denial of service (infinite loop) via a Delete call. This can occur when parsing malformed JSON that contains opening brackets but not closing brackets, potentially leading to an infinite loop if operating on untrusted user input. **Recommendations** For versions through 2019-12-04, as a temporary workaround, consider restricting the use of the Delete call in the Library API until a patch is available. Avoid parsing untrusted user input to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.