DaveGamble kayıtları
davegamble üreticisine ait 14 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %85,7
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-125 Out-of-bounds Read4
- CWE-476 NULL Pointer Dereference3
- CWE-407 Inefficient Algorithmic Complexity1
- CWE-415 Double Free1
- CWE-416 Use After Free1
- CWE-674 Uncontrolled Recursion1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
14 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2019-11835İstismar yok | cJSON before 1.7.11 allows out-of-bounds access, related to multiline comments.davegamble · cjson · CWE-125 | Kritik9,8 | — | %2,6 | 9 May 2019 |
40Planlayın | CVE-2019-11834İstismar yok | cJSON before 1.7.11 allows out-of-bounds access, related to \x00 in a string literal.davegamble · cjson · CWE-125 | Kritik9,8 | — | %2,5 | 9 May 2019 |
40Planlayın | CVE-2016-10749İstismar yok | parse_string in cJSON.c in cJSON before 2016-10-02 has a buffer over-read, as demonstrated by a string that begins with a " character and endavegamble · cjson · CWE-125 | Kritik9,8 | — | %2,5 | 29 Nis 2019 |
40Planlayın | CVE-2018-1000217İstismar yok | Dave Gamble cJSON version 1.7.3 and earlier contains a CWE-416: Use After Free vulnerability in cJSON library that can result in Possible crdavegamble · cjson · CWE-416 | Kritik9,8 | — | %1,8 | 20 Ağu 2018 |
39İzleyin | CVE-2025-57052Kavram kanıtı | cJSON 1.5.0 through 1.7.18 allows out-of-bounds access via the decode_array_index_from_pointer function in cJSON_Utils.c, allowing remote atdavegamble · cjson · CWE-125 | Kritik9,8 | — | %0,7 | 3 Eyl 2025 |
35İzleyin | CVE-2018-1000216İstismar yok | Dave Gamble cJSON version 1.7.2 and earlier contains a CWE-415: Double Free vulnerability in cJSON library that can result in Possible crashdavegamble · cjson · CWE-415 | Yüksek8,8 | — | %1,5 | 20 Ağu 2018 |
34İzleyin | CVE-2026-67215İstismar yok | cJSON JSON Patch copy/add Uncontrolled Recursion Stack Exhaustiondavegamble · cjson · CWE-674 | Yüksek8,7 | — | %0,7 | 29 Tem 2026 |
32İzleyin | CVE-2026-67216İstismar yok | cJSON cJSON_Compare Exponential Complexity Denial of Servicedavegamble · cjson · CWE-407 | Yüksek8,2 | — | %0,6 | 29 Tem 2026 |
31İzleyin | CVE-2019-1010239İstismar yok | DaveGamble/cJSON cJSON 1.7.8 is affected by: Improper Check for Unusual or Exceptional Conditions.davegamble · cjson · CWE-476 | Yüksek7,5 | — | %2,4 | 19 Tem 2019 |
31İzleyin | CVE-2018-1000215İstismar yok | Dave Gamble cJSON version 1.7.6 and earlier contains a CWE-772 vulnerability in cJSON library that can result in Denial of Service (DoS).davegamble · cjson · CWE-772 | Yüksek7,5 | — | %1,7 | 20 Ağu 2018 |
30İzleyin | CVE-2023-50471İstismar yok | cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_InsertItemInArray at cJSON.c.davegamble · cjson · CWE-476 | Yüksek7,5 | — | %1,5 | 14 Ara 2023 |
30İzleyin | CVE-2023-50472İstismar yok | cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_SetValuestring at cJSON.c.davegamble · cjson · CWE-476 | Yüksek7,5 | — | %1,0 | 14 Ara 2023 |
27İzleyin | CVE-2026-67217İstismar yok | cJSON JSON Patch Non-Atomic Application Destroys Data Before Validationdavegamble · cjson · CWE-696 | Orta6,9 | — | %0,4 | 29 Tem 2026 |
20İzleyin | CVE-2026-16554İstismar yok | Integer Overflow Leading to Heap Buffer Overflow in cJSONdavegamble · cjson · CWE-190 | Orta5,1 | — | %0,3 | 27 Tem 2026 |
- CVE-2019-1183540Planlayın
cJSON before 1.7.11 allows out-of-bounds access, related to multiline comments.
KritikCVSS 9,8İstismar yokEPSS %3davegamble · cjson9 May 2019
- CVE-2019-1183440Planlayın
cJSON before 1.7.11 allows out-of-bounds access, related to \x00 in a string literal.
KritikCVSS 9,8İstismar yokEPSS %3davegamble · cjson9 May 2019
- CVE-2016-1074940Planlayın
parse_string in cJSON.c in cJSON before 2016-10-02 has a buffer over-read, as demonstrated by a string that begins with a " character and en
KritikCVSS 9,8İstismar yokEPSS %2davegamble · cjson29 Nis 2019
- CVE-2018-100021740Planlayın
Dave Gamble cJSON version 1.7.3 and earlier contains a CWE-416: Use After Free vulnerability in cJSON library that can result in Possible cr
KritikCVSS 9,8İstismar yokEPSS %2davegamble · cjson20 Ağu 2018
- CVE-2025-5705239İzleyin
cJSON 1.5.0 through 1.7.18 allows out-of-bounds access via the decode_array_index_from_pointer function in cJSON_Utils.c, allowing remote at
KritikCVSS 9,8Kavram kanıtıEPSS %1davegamble · cjson3 Eyl 2025
- CVE-2018-100021635İzleyin
Dave Gamble cJSON version 1.7.2 and earlier contains a CWE-415: Double Free vulnerability in cJSON library that can result in Possible crash
YüksekCVSS 8,8İstismar yokEPSS %1davegamble · cjson20 Ağu 2018
- CVE-2026-6721534İzleyin
cJSON JSON Patch copy/add Uncontrolled Recursion Stack Exhaustion
YüksekCVSS 8,7İstismar yokEPSS %1davegamble · cjson29 Tem 2026
- CVE-2026-6721632İzleyin
cJSON cJSON_Compare Exponential Complexity Denial of Service
YüksekCVSS 8,2İstismar yokEPSS %1davegamble · cjson29 Tem 2026
- CVE-2019-101023931İzleyin
DaveGamble/cJSON cJSON 1.7.8 is affected by: Improper Check for Unusual or Exceptional Conditions.
YüksekCVSS 7,5İstismar yokEPSS %2davegamble · cjson19 Tem 2019
- CVE-2018-100021531İzleyin
Dave Gamble cJSON version 1.7.6 and earlier contains a CWE-772 vulnerability in cJSON library that can result in Denial of Service (DoS).
YüksekCVSS 7,5İstismar yokEPSS %2davegamble · cjson20 Ağu 2018
- CVE-2023-5047130İzleyin
cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_InsertItemInArray at cJSON.c.
YüksekCVSS 7,5İstismar yokEPSS %2davegamble · cjson14 Ara 2023
- CVE-2023-5047230İzleyin
cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_SetValuestring at cJSON.c.
YüksekCVSS 7,5İstismar yokEPSS %1davegamble · cjson14 Ara 2023
- CVE-2026-6721727İzleyin
cJSON JSON Patch Non-Atomic Application Destroys Data Before Validation
OrtaCVSS 6,9İstismar yokEPSS %0davegamble · cjson29 Tem 2026
- CVE-2026-1655420İzleyin
Integer Overflow Leading to Heap Buffer Overflow in cJSON
OrtaCVSS 5,1İstismar yokEPSS %0davegamble · cjson27 Tem 2026