Janl maintains a narrowly scoped vulnerability footprint centered on the jsonpointer library, a specialized component for navigating JSON data structures. The observed weakness class, type confusion during resource access, reflects the parsing and type-handling demands of a JSON-manipulation utility. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Janl over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-23807CRITICAL This affects the package jsonpointer before 5.0.0. A type confusion vulnerability can lead to a bypass of a previous Prototype Pollution fix when the pointer components are arrays. | Nov 3, 2021 | 9.8 | 30 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Janl.
Media articles that mention a CVE ID that affects a product developed by Janl — matched by CVE ID, not by vendor name.