Davegamble

Cjson

16 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 2.52%
  • Veröffentlicht 09.05.2019 05:29:02
  • Zuletzt bearbeitet 22.07.2025 18:17:45

cJSON before 1.7.11 allows out-of-bounds access, related to \x00 in a string literal.

Exploit
  • EPSS 2.56%
  • Veröffentlicht 09.05.2019 05:29:02
  • Zuletzt bearbeitet 22.07.2025 18:17:45

cJSON before 1.7.11 allows out-of-bounds access, related to multiline comments.

Exploit
  • EPSS 2.47%
  • Veröffentlicht 29.04.2019 14:29:00
  • Zuletzt bearbeitet 22.07.2025 18:17:45

parse_string in cJSON.c in cJSON before 2016-10-02 has a buffer over-read, as demonstrated by a string that begins with a " character and ends with a \ character.

  • EPSS 1.68%
  • Veröffentlicht 20.08.2018 20:29:00
  • Zuletzt bearbeitet 22.07.2025 18:17:45

Dave Gamble cJSON version 1.7.6 and earlier contains a CWE-772 vulnerability in cJSON library that can result in Denial of Service (DoS). This attack appear to be exploitable via If the attacker can force the data to be printed and the system is in l...

Exploit
  • EPSS 1.47%
  • Veröffentlicht 20.08.2018 20:29:00
  • Zuletzt bearbeitet 22.07.2025 18:17:45

Dave Gamble cJSON version 1.7.2 and earlier contains a CWE-415: Double Free vulnerability in cJSON library that can result in Possible crash or RCE. This attack appear to be exploitable via Attacker must be able to force victim to print JSON data, de...

Exploit
  • EPSS 1.75%
  • Veröffentlicht 20.08.2018 20:29:00
  • Zuletzt bearbeitet 22.07.2025 18:17:45

Dave Gamble cJSON version 1.7.3 and earlier contains a CWE-416: Use After Free vulnerability in cJSON library that can result in Possible crash, corruption of data or even RCE. This attack appear to be exploitable via Depends on how application uses ...