UltraJSON (aka ujson) through 5.1.0 has a stack-based buffer overflow in Buffer_AppendIndentUnchecked (called from encode). Exploitation can, for example, use a large amount of indentation.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| ujson(PyPI) | 1.34 | 5.2.0 | N/A |
CVSS Metrics