This page lists publicly disclosed CVE vulnerabilities affecting ijl orjson (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2025-67221 | The orjson.dumps function in orjson thru 3.11.4 does not limit recursion for deeply nested JSON documents. | [email protected] | 7.5 | 0.55% | 2026-01-22 | 2026-06-17 |
| CVE-2024-27454 | orjson.loads in orjson before 3.9.15 does not limit recursion for deeply nested JSON documents. | [email protected] | 7.5 | 1.19% | 2024-02-26 | 2026-06-17 |