cbcvebase.
CVE-2021-42248
published 2021-10-25

CVE-2021-42248: github.com/tidwall/gjson Vulnerable to REDoS attack GJSON is a Go package that provides a fast and simple way to get values from a json document. GJSON before…

high7.5
github.com/tidwall/gjson Vulnerable to REDoS attack GJSON is a Go package that provides a fast and simple way to get values from a json document. GJSON before 1.9.3 allows a ReDoS (regular expression denial of service) attack.

Affected

3 ranges
VendorProductVersion rangeFixed in
github.comtidwall_gjson>= 0 < 1.9.31.9.3
msrcazure_linux_3.0_arm
msrcazure_linux_3.0_x64
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.