CVE-2023-1436
Jettison vulnerable to infinite recursion
Description
An infinite recursion is triggered in Jettison when constructing a JSONArray from a Collection that contains a self-reference in one of its elements. This leads to a StackOverflowError exception being thrown.
Base CVSS
7.5
EPSS Score
0.02%
Introduced Version
1.0-RC1
Fix Available
1.5.4
Available Patches
Package
CVEs Fixed
Lines of Code Changed