aeson是Haskell开源的一个用于处理 JSON 数据的快速 Haskell 库。 aeson 存在安全漏洞,该漏洞源于其允许使用不受信任的JSON输入导致远程用户可以通过发送特别制作的JSON数据在底层无序容器库中产生散列冲突,从而导致拒绝服务。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | aeson | Fixed in 2.0.1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-26121 | 3.7 LOW | Fortinet FortiManager和FortiAnalyzer 安全漏洞 |
| CVE-2022-42725 | Warpinator 后置链接漏洞 | |
| CVE-2022-42724 | MISP 信息泄露漏洞 |
No comments yet