Newtonsoft.Json before version... CVE-2024-21907

- AV AC AU C I A
发布: 2024-01-03
修订: 2024-09-06

Newtonsoft.Json before version 13.0.1 is affected by a mishandling of exceptional conditions vulnerability. Crafted data that is passed to the JsonConvert.DeserializeObject method may trigger a StackOverflow exception resulting in denial of service. Depending on the usage of the library, an unauthenticated and remote attacker may be able to cause the denial of service condition.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息