Description
A stack overflow in the XML.toJSONObject component of hutool-json v5.8.10 allows attackers to cause a Denial of Service (DoS) via crafted JSON or XML data.
Remediation
References
https://github.com/dromara/hutool/issues/2748
https://github.com/stleary/JSON-java/issues/708
Related Vulnerabilities
CVE-2023-38509 Vulnerability in maven package org.xwiki.platform:xwiki-platform-livetable-ui
CVE-2022-1243 Vulnerability in maven package org.webjars.npm:urijs
CVE-2023-50449 Vulnerability in maven package com.jfinal:jfinal
CVE-2022-36919 Vulnerability in maven package org.jenkins-ci.plugins:coverity
CVE-2022-45207 Vulnerability in maven package org.jeecgframework.boot:jeecg-module-system