All 23 CVE vulnerabilities found in jq, with AI-generated Chinese analysis, references, and POCs.
This page aggregates known security vulnerabilities for the JSON processing utility jq, categorized under common weakness enumeration and associated with the jq software product. The collection encompasses various flaw types, including buffer overflows, use-after-free errors, and improper input validation issues, covering security advisories and patches released from its early public versions through the most recent stable releases. Users can utilize this resource to track the vendor’s or community’s response to specific issues over time, gain a deeper understanding of recurring weakness classes within command-line JSON tools, and look up the detailed vulnerability history of jq to assess risk exposure for their specific deployment environment. The data is organized to facilitate cross-referencing between different weakness types and release cycles, allowing security professionals to identify trends in defect introduction and resolution. By consolidating this information, the page provides a clear view of the product’s security posture without requiring manual searching across multiple external repositories. All entries are derived from verified public disclosures and official patch notes, ensuring accuracy and reliability for downstream risk assessment workflows. This centralized view helps teams prioritize updates and mitigate potential exploitation vectors effectively.
Vendor: jqlang
All 23 known CVE vulnerabilities affecting jq with full Chinese analysis, references, and POCs where available.