GHSA-c9gm-7rfj-8w5h
Dashboard / Vulnerabilities / GHSA-c9gm-7rfj-8w5h
GHSA-c9gm-7rfj-8w5h
Summary: Duplicate Advisory: ReDoS via crafted JSON input in GJSON
Details: ## Duplicate Advisory This advisory has been withdrawn because it is a duplicate of GHSA-ppj4-34rq-v8j9. This link is maintained to preserve external references. ## Original Description GJSON <= 1.9.2 allows attackers to cause a redos via crafted JSON input.
References: https://nvd.nist.gov/vuln/detail/CVE-2021-42248, https://github.com/tidwall/gjson/issues/236, https://github.com/tidwall/gjson/issues/237, https://github.com/tidwall/gjson/commit/590010fdac311cc8990ef5c97448d4fec8f29944, https://github.com/tidwall/gjson/commit/77a57fda87dca6d0d7d4627d512a630f89a91c96, https://github.com/tidwall/gjson, https://pkg.go.dev/vuln/GO-2021-0265
Affected packages
Package
Name: github.com/tidwall/gjson
Purl: pkg:golang/github.com/tidwall/gjson
Affected ranges
Type: SEMVER
Events:
