<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 02:44:21 +0000</lastBuildDate>
    <item>
      <title>bdu:2023-05397</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2023-05397</link>
      <description>bdu:2023-05397</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2023-05397</guid>
    </item>
    <item>
      <title>certfr-2023-avi-0428 — De multiples vulnérabilités ont été découvertes dans les produits &lt;span
class="textit"&gt;Splunk&lt;/span&gt;. Certaines d'entre…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0428</link>
      <description>certfr-2023-avi-0428</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0428</guid>
    </item>
    <item>
      <title>Withdrawn: CLEANSTART-2026-CU18187 — Security fixes in stargate 1.0.90-r4</title>
      <link>https://cve.radiocsirt.org/vuln/cleanstart-2026-cu18187</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; CleanStart: stargate&lt;/p&gt;
&lt;p&gt;Package stargate version 1.0.90-r4 fixes 87 vulnerabilities: ghsa-76h9-2vwh-w278, ghsa-pqr6-cmr2-h8hf, ghsa-fjpj-2g6w-x25r, ghsa-qcwq-55hx-v3vh, ghsa-55g7-9cwv-5qfv...&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; CleanStart: stargate&lt;/p&gt;
&lt;p&gt;Package stargate version 1.0.90-r4 fixes 87 vulnerabilities: ghsa-76h9-2vwh-w278, ghsa-pqr6-cmr2-h8hf, ghsa-fjpj-2g6w-x25r, ghsa-qcwq-55hx-v3vh, ghsa-55g7-9cwv-5qfv...&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cleanstart-2026-cu18187</guid>
    </item>
    <item>
      <title>EUVD-2026-219502</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-219502</link>
      <description>EUVD-2026-219502</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-219502</guid>
    </item>
    <item>
      <title>fkie_cve-2023-1370</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-1370</link>
      <description>&lt;p&gt;[Json-smart](https://netplex.github.io/json-smart/) is a performance focused, JSON processor lib.&lt;/p&gt;
&lt;p&gt;When reaching a ‘[‘ or ‘{‘ character in the JSON input, the code parses an array or an object respectively.&lt;/p&gt;
&lt;p&gt;It was discovered that the code does not have any limit to the nesting of such arrays or objects. Since the parsing of nested arrays and objects is done recursively, nesting too many of them can cause a stack exhaustion (stack overflow) and crash the software.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;[Json-smart](https://netplex.github.io/json-smart/) is a performance focused, JSON processor lib.&lt;/p&gt;
&lt;p&gt;When reaching a ‘[‘ or ‘{‘ character in the JSON input, the code parses an array or an object respectively.&lt;/p&gt;
&lt;p&gt;It was discovered that the code does not have any limit to the nesting of such arrays or objects. Since the parsing of nested arrays and objects is done recursively, nesting too many of them can cause a stack exhaustion (stack overflow) and crash the software.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-1370</guid>
    </item>
    <item>
      <title>GHSA-493p-pfq6-5258 — json-smart Uncontrolled Recursion vulnerability</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-493p-pfq6-5258</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: net.minidev:json-smart&lt;/p&gt;
&lt;p&gt;### Impact
Affected versions of [net.minidev:json-smart](https://github.com/netplex/json-smart-v1) are vulnerable to Denial of Service (DoS) due to a StackOverflowError when parsing a deeply nested JSON array or object.&lt;/p&gt;
&lt;p&gt;When reaching a ‘[‘ or ‘{‘ character in the JSON input, the code parses an array or an object respectively. It was discovered that the 3PP does not have any limit to the nesting of such arrays or objects. Since the parsing of nested arrays and objects is done recursively, nesting too many of them can cause stack exhaustion (stack overflow) and crash the software.&lt;/p&gt;
&lt;p&gt;### Patches
This vulnerability was fixed in json-smart version 2.4.9, but the maintainer recommends upgrading to 2.4.10, due to a remaining bug.&lt;/p&gt;
&lt;p&gt;### Workarounds
N/A&lt;/p&gt;
&lt;p&gt;### References
- https://www.cve.org/CVERecord?id=CVE-2023-1370
- https://nvd.nist.gov/vuln/detail/CVE-2023-1370
- https://security.snyk.io/vuln/SNYK-JAVA-NETMINIDEV-3369748&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: net.minidev:json-smart&lt;/p&gt;
&lt;p&gt;### Impact
Affected versions of [net.minidev:json-smart](https://github.com/netplex/json-smart-v1) are vulnerable to Denial of Service (DoS) due to a StackOverflowError when parsing a deeply nested JSON array or object.&lt;/p&gt;
&lt;p&gt;When reaching a ‘[‘ or ‘{‘ character in the JSON input, the code parses an array or an object respectively. It was discovered that the 3PP does not have any limit to the nesting of such arrays or objects. Since the parsing of nested arrays and objects is done recursively, nesting too many of them can cause stack exhaustion (stack overflow) and crash the software.&lt;/p&gt;
&lt;p&gt;### Patches
This vulnerability was fixed in json-smart version 2.4.9, but the maintainer recommends upgrading to 2.4.10, due to a remaining bug.&lt;/p&gt;
&lt;p&gt;### Workarounds
N/A&lt;/p&gt;
&lt;p&gt;### References
- https://www.cve.org/CVERecord?id=CVE-2023-1370
- https://nvd.nist.gov/vuln/detail/CVE-2023-1370
- https://security.snyk.io/vuln/SNYK-JAVA-NETMINIDEV-3369748&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-493p-pfq6-5258</guid>
    </item>
    <item>
      <title>gsd-2023-1370</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-1370</link>
      <description>gsd-2023-1370</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-1370</guid>
    </item>
    <item>
      <title>OESA-2023-1203 — json-smart security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2023-1203</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: json-smart&lt;/p&gt;
&lt;p&gt;Json-smart is a performance focused, JSON processor lib.&#13;
&#13;
Security Fix(es):&#13;
&#13;
[Json-smart](https://netplex.github.io/json-smart/) is a performance focused, JSON processor lib. When reaching a ‘[‘ or ‘{‘ character in the JSON input, the code parses an array or an object respectively. It was discovered that the code does not have any limit to the nesting of such arrays or objects. Since the parsing of nested arrays and objects is done recursively, nesting too many of them can cause a stack exhaustion (stack overflow) and crash the software.(CVE-2023-1370)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: json-smart&lt;/p&gt;
&lt;p&gt;Json-smart is a performance focused, JSON processor lib.&#13;
&#13;
Security Fix(es):&#13;
&#13;
[Json-smart](https://netplex.github.io/json-smart/) is a performance focused, JSON processor lib. When reaching a ‘[‘ or ‘{‘ character in the JSON input, the code parses an array or an object respectively. It was discovered that the code does not have any limit to the nesting of such arrays or objects. Since the parsing of nested arrays and objects is done recursively, nesting too many of them can cause a stack exhaustion (stack overflow) and crash the software.(CVE-2023-1370)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2023-1203</guid>
    </item>
    <item>
      <title>RHSA-2023:2099 — Red Hat Security Advisory: Red Hat Integration Camel for Spring Boot 3.18.3 Patch 1 security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2023:2099</link>
      <description>&lt;p&gt;json-smart: Uncontrolled Resource Consumption vulnerability in json-smart (Resource Exhaustion) springframework: Spring Expression DoS Vulnerability&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;json-smart: Uncontrolled Resource Consumption vulnerability in json-smart (Resource Exhaustion) springframework: Spring Expression DoS Vulnerability&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2023:2099</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2023-1370</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-1370</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:18.04:LTS: json-smart, Ubuntu:20.04:LTS: json-smart, Ubuntu:22.04:LTS: json-smart&lt;/p&gt;
&lt;p&gt;[Json-smart](https://netplex.github.io/json-smart/) is a performance focused, JSON processor lib. When reaching a ‘[‘ or ‘{‘ character in the JSON input, the code parses an array or an object respectively. It was discovered that the code does not have any limit to the nesting of such arrays or objects. Since the parsing of nested arrays and objects is done recursively, nesting too many of them can cause a stack exhaustion (stack overflow) and crash the software.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:18.04:LTS: json-smart, Ubuntu:20.04:LTS: json-smart, Ubuntu:22.04:LTS: json-smart&lt;/p&gt;
&lt;p&gt;[Json-smart](https://netplex.github.io/json-smart/) is a performance focused, JSON processor lib. When reaching a ‘[‘ or ‘{‘ character in the JSON input, the code parses an array or an object respectively. It was discovered that the code does not have any limit to the nesting of such arrays or objects. Since the parsing of nested arrays and objects is done recursively, nesting too many of them can cause a stack exhaustion (stack overflow) and crash the software.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-1370</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-1022 — Oracle Communications Applications: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1022</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Oracle Communications Applications ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Oracle Communications Applications ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1022</guid>
    </item>
  </channel>
</rss>
