Skip to content

CVE-2023-1370 related to json-smart package

High
ptrthomas published GHSA-5x5q-8cgm-2hjq Mar 31, 2023

Package

No package listed

Affected versions

1.3.1

Patched versions

1.4.0

Description

Summary

The CVE
image

How to fix it

Very simple, just upgrade json-path package to 2.8.0 (from 2.7.0) inside karate-core pom.xml ;)

Severity

High

CVE ID

CVE-2023-1370

Weaknesses

No CWEs

Credits