You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
{{ message }}
This repository was archived by the owner on Jul 5, 2023. It is now read-only.
A vulnerability was discovered in the indexOf function of JSONParserByteArray in JSON Smart versions 1.3 and 2.4 which causes a denial of service (DOS) via a crafted web request.
Severity
Medium
Recommendation
Upgrade to version net.minidev:json-smart:1.3.3,2.4.5
com.nimbusds:oauth2-oidc-sdk v9.4depends onnet.minidev » json-smart v1.3.3,2.4.2which introduces below mentioned vulnerability.azure-activedirectory-library-for-java/pom.xml
Lines 70 to 74 in 72dd774
Vulnerability details
CVE-2021-31684
A vulnerability was discovered in the indexOf function of JSONParserByteArray in JSON Smart versions 1.3 and 2.4 which causes a denial of service (DOS) via a crafted web request.
Severity
Medium
Recommendation
Upgrade to version net.minidev:json-smart:1.3.3,2.4.5
For ADAL: Upgrade to com.nimbusds:oauth2-oidc-sdk v9.5+