Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Zander Huang

#33755of 53,633
7.8Total CVSS
Vulnerabilities · 1
PT-2022-6898
7.8
2022-12-13
Unknown · Hutool-Json · CVE-2022-45690
**Name of the Vulnerable Software and Affected Versions** hutool-json version 5.8.10 **Description** The issue is related to a stack overflow in the `org.json.JSONTokener.nextValue` component of the hutool-json library, which can be exploited to cause a Denial of Service (DoS) via crafted JSON or XML data. This can allow a remote attacker to cause a service disruption. **Recommendations** For hutool-json version 5.8.10, consider updating to a newer version that addresses this issue, as the current version is affected by a stack overflow vulnerability in the `org.json.JSONTokener.nextValue` component. At the moment, there is no information about a newer version that contains a fix for this vulnerability.