VYPR

PyPI package

simplejson

pkg:pypi/simplejson

Vulnerabilities (1)

  • CVE-2014-4616MedAug 24, 2017
    affected < 2.6.1fixed 2.6.1

    Array index error in the scanstring function in the _json module in Python 2.7 through 3.5 and simplejson before 2.6.1 allows context-dependent attackers to read arbitrary process memory via a negative index value in the idx argument to the raw_decode function.