A stack overflow in the XML.toJSONObject component of hutool-json v5.8.10 allows attackers to cause a Denial of Service (DoS) via crafted JSON or XML data.
History

Fri, 19 Sep 2025 19:00:00 +0000

Type Values Removed Values Added
First Time appeared Stleary
Stleary json-java
CPEs cpe:2.3:a:json-java_project:json-java:*:*:*:*:*:*:*:* cpe:2.3:a:stleary:json-java:*:*:*:*:*:*:*:*
Vendors & Products Json-java Project
Json-java Project json-java
Stleary
Stleary json-java

Tue, 22 Apr 2025 03:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2022-12-13T00:00:00.000Z

Updated: 2025-04-22T03:10:13.246Z

Reserved: 2022-11-21T00:00:00.000Z

Link: CVE-2022-45688

cve-icon Vulnrichment

Updated: 2024-08-03T14:17:04.006Z

cve-icon NVD

Status : Modified

Published: 2022-12-13T15:15:11.267

Modified: 2025-09-19T18:54:20.100

Link: CVE-2022-45688

cve-icon Redhat

No data.