CVE-2023-5072 Information

Description

Denial of Service in JSON-Java versions up to and including 20230618.  A bug in the parser means that an input string of modest size can lead to indefinite amounts of memory being used. 

Reference

https://github.com/stleary/JSON-java/issues/771 https://github.com/stleary/JSON-java/issues/758

Share on: