CVE-2022-25024 Information

Description

The json2xml package through 3.12.0 for Python allows an error in typecode decoding enabling a remote attack that can lead to an exception causing a denial of service.

Reference

https://packaging.python.org/en/latest/guides/analyzing-pypi-package-downloads/ https://github.com/vinitkumar/json2xml/pull/107/files https://github.com/vinitkumar/json2xml/pull/107 https://github.com/vinitkumar/json2xml/issues/106

Share on: