Flexjson is a compact Java serialization library with a narrow product scope, presenting a focused attack surface centered on object deserialization and data transformation logic. The observed vulnerability pattern reflects memory-safety and bounds-checking concerns typical of serialization handlers, with out-of-bounds write conditions representing the primary structural weakness; current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Flexjson Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-34609HIGH An issue was discovered flexjson thru 3.3 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies. | Jun 14, 2023 | 7.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Flexjson Project.
Media articles that mention a CVE ID that affects a product developed by Flexjson Project — matched by CVE ID, not by vendor name.