Description
A stack overflow in the XML.toJSONObject component of hutool-json v5.8.10 allows attackers to cause a Denial of Service (DoS) via crafted JSON or XML data.
Remediation
References
https://github.com/dromara/hutool/issues/2748
https://github.com/stleary/JSON-java/issues/708
Related Vulnerabilities
CVE-2020-20739 Vulnerability in npm package libvips
CVE-2023-46122 Vulnerability in maven package org.scala-sbt:io_2.12
CVE-2020-36378 Vulnerability in npm package aaptjs
CVE-2023-4043 Vulnerability in maven package org.eclipse.parsson:project
CVE-2022-36906 Vulnerability in maven package org.jenkins-ci.plugins:openshift-deployer