ZeroHour

Vulnerabilities

3 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2026-32285
The Delete function fails to properly validate offsets when processing malformed JSON input.

The Delete function fails to properly validate offsets when processing malformed JSON input. This can lead to a negative slice index and a runtime panic, allowing a denial of service attack.

NVD description · AI analysis pending
7.5<1% PoC
  • jsonparser project jsonparser
CVE-2020-35381
jsonparser 1.0.0 allows attackers to cause a denial of service (panic:

jsonparser 1.0.0 allows attackers to cause a denial of service (panic: runtime error: slice bounds out of range) via a GET call.

NVD description · AI analysis pending
7.52% PoC
  • jsonparser project jsonparser
  • jsonparser project fedora
CVE-2020-10675
The Library API in buger jsonparser through 2019-12-04 allows attackers to cause a denial of service (infinite loop) via a Delete call.

The Library API in buger jsonparser through 2019-12-04 allows attackers to cause a denial of service (infinite loop) via a Delete call.

NVD description · AI analysis pending
7.53% PoC
  • jsonparser project jsonparser
  • jsonparser project fedora