CVE-2021-23900

Description

OWASP json-sanitizer before 1.2.2 can output invalid JSON or throw an undeclared exception for crafted input. This may lead to denial of service if the application is not prepared to handle these situations.

Risk Information

Base Score
7.5
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
0.408

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2021-23899,CVE-2021-23900 are fixed in Mike-Samuel-json-sanitizer 1.2.2Windows
Vulnerabilities CVE-2021-23899,CVE-2021-23900 are fixed in Mike-Samuel-json-sanitizer for Linux 1.2.2Linux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234