jmespath.rb (aka JMESPath for Ruby) before 1.6.1 uses JSON.load in a situation where JSON.parse is preferable.
References
Configurations
History
No history.
Information
Published : 2022-06-06 22:15
Updated : 2023-11-07 03:47
NVD link : CVE-2022-32511
Mitre link : CVE-2022-32511
CVE.ORG link : CVE-2022-32511
JSON object : View
Products Affected
jmespath_project
- jmespath
fedoraproject
- fedora
CWE