Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:39955
HistoryMar 25, 2023 - 1:50 a.m.

Denial Of Service (DoS)

2023-03-2501:50:32
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
17
denial of service
dos
vulnerability
application crash
stackoverflowerror
jsonarray

0.001 Low

EPSS

Percentile

32.6%

org.codehaus.jettison:jettison is vulnerable to Denial of Service (DoS). The vulnerability is due to an infinite loop when constructing a JSONArray from a Collection that contains a self-reference in one of its elements which leads to a StackOverflowError exception, resulting in an application crash.