json-path v2.8.0 was discovered to contain a stack overflow via the Criteria.parse() method.
References
| Link | Resource |
|---|---|
| https://github.com/json-path/JsonPath/issues/973 | Exploit Issue Tracking Third Party Advisory |
| https://github.com/json-path/JsonPath/issues/973 | Exploit Issue Tracking Third Party Advisory |
Configurations
History
12 Sep 2025, 18:45
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:json-path:jayway_jsonpath:*:*:*:*:*:*:*:* |
21 Nov 2024, 08:37
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://github.com/json-path/JsonPath/issues/973 - Exploit, Issue Tracking, Third Party Advisory |
11 Jan 2024, 20:01
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | NVD-CWE-Other | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.3 |
09 Jan 2024, 15:27
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
| CPE | cpe:2.3:a:json-path:jayway_jsonpath:2.8.0:*:*:*:*:*:*:* | |
| First Time |
Json-path
Json-path jayway Jsonpath |
|
| References | () https://github.com/json-path/JsonPath/issues/973 - Exploit, Issue Tracking, Third Party Advisory | |
| CWE | CWE-787 |
27 Dec 2023, 21:37
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2023-12-27 21:15
Updated : 2025-09-12 18:45
NVD link : CVE-2023-51074
Mitre link : CVE-2023-51074
CVE.ORG link : CVE-2023-51074
JSON object : View
Products Affected
json-path
- jayway_jsonpath
CWE
