Skip to content

Question regarding CVE-2023-5072 #811

@velitchko-valkov

Description

@velitchko-valkov

Hey!
We just got a report that our version of Json in Java - 20131018 , has a new CVE threat.
We were wondering, is it compatible to port the changes which fix the CVE to its code and re-compile?

eamonnmcmanus@c8a9e15#diff-ef151e65679a81ad727c5af36a8d84dd867146a5da1dede68b4c37f4866ab57b

eamonnmcmanus@661114c#diff-ef151e65679a81ad727c5af36a8d84dd867146a5da1dede68b4c37f4866ab57b

Would you consider that safe for this older version? For various reasons we cannot update to the newest one.
Thanks!
Velitchko

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions