Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-7272


In Eclipse Parsson before 1.0.4 and 1.1.3, a document with a large depth of nested objects can allow an attacker to cause a Java stack overflow exception and denial of service. Eclipse Parsson allows processing (e.g. parse, generate, transform and query) JSON documents.


Published

2024-07-17T15:15:10.457

Last Modified

2025-02-06T18:07:45.847

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 8.6 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-787
  • Type: Primary
    CWE-787

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application eclipse parsson < 1.0.4 Yes
Application eclipse parsson < 1.1.3 Yes

References