PatchSiren

github.com/buger/jsonparser CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH github.com/buger/jsonparser CVE published 2026-03-26

CVE-2026-32285

CVE-2026-32285 is a denial of service vulnerability in the Delete function of the jsonparser library. The function fails to properly validate offsets when processing malformed JSON input, leading to a negative slice index and a runtime panic. This issue has a CVSS score of 7.5 and is considered HIGH severity. The vulnerability requires verification and remediation to prevent potential denial of service at [truncated]