json2xml@3.12.0 vulnerabilities

Simple Python Library to convert JSON to XML

  • latest version

    5.0.5

  • latest non vulnerable version

  • first published

    11 years ago

  • latest version published

    3 months ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the json2xml package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • M
    Uncaught Exception

    json2xml is a Simple Python Library to convert JSON to XML

    Affected versions of this package are vulnerable to Uncaught Exception via the json2xml.Json2xml() constructor when corrupted data is passed into it, resulting in a UnicodeDecodeError leading to a crash of the running program.

    How to fix Uncaught Exception?

    Upgrade json2xml to version 3.14.0 or higher.

    [,3.14.0)
    • M
    Insecure Randomness

    json2xml is a Simple Python Library to convert JSON to XML

    Affected versions of this package are vulnerable to Insecure Randomness not using a secure way for generating Random Integers.

    How to fix Insecure Randomness?

    Upgrade json2xml to version 3.20.0 or higher.

    [,3.20.0)