CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

Search Vulnerabilities

 Software

Searching vulnerabilities affecting “json-c”

6 vulnerabilities found for “json-c”

CVE-2024-38723
MEDIUM6.4

Server-Side Request Forgery (SSRF) vulnerability in Bernhard Kux JSON Content Importer.This issue affects JSON Content Importer: from n/a through 1.5.6.

json-content-importer / json_content_importer
Network
Published Jul 22, 2024
CVE-2023-6268
MEDIUM6.1

The JSON Content Importer WordPress plugin before 1.5.4 does not sanitise and escape the tab parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin

json-content-importer / json_content_importer
Network
Published Dec 26, 2023
CVE-2021-32292
CRITICAL9.8

An issue was discovered in json-c from 20200420 (post 0.14 unreleased code) through 0.15-20200726. A stack-buffer-overflow exists in the auxiliary sample program json_parse which is located in the function parseit.

netapp / active_iq_unified_manager+1
Network
Published Aug 22, 2023
CVE-2023-25485
MEDIUM5.9

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Bernhard Kux JSON Content Importer plugin <= 1.3.15 versions.

json-content-importer / json_content_importer
Network
Published Apr 25, 2023
CVE-2022-41714
MEDIUM5.3

fastest-json-copy version 1.0.1 allows an external attacker to edit or add new properties to an object. This is possible because the application does not correctly validate the incoming JSON keys, thus allowing the '__proto__' property to be edited.

fastest-json-copy_project / fastest-json-copy
Network
Published Nov 3, 2022
CVE-2020-12762
HIGH7.8

json-c through 0.14 has an integer overflow and out-of-bounds write via a large JSON file, as demonstrated by printbuf_memappend.

json-c / json-c+15
Local
Published May 9, 2020