Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

ultrajson — Vulnerabilities & Security Advisories 4

Browse all 4 CVE security advisories affecting ultrajson. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Ultrajson is a high-performance JSON encoder/decoder library primarily used for fast serialization and deserialization in Python applications. Historically, it has been susceptible to remote code execution vulnerabilities due to unsafe evaluation of untrusted input and improper handling of malicious data. Other common issues include cross-site scripting flaws through improper output encoding and privilege escalation via insecure deserialization. The library has faced several critical CVEs, including RCE flaws in versions prior to 4.0, where crafted JSON payloads could allow arbitrary code execution. While newer versions have addressed many concerns, developers should remain vigilant about input validation and use the latest stable releases to mitigate potential risks.

Found 4 results / 4Clear Filters
Top products by ultrajson: ultrajson

This page lists every published CVE security advisory associated with ultrajson. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.