github.com/buger/jsonparser
THE fastest alternative JSON parser for Go that does not require schema
Activity
- Latest release
- 1mo ago
- Total releases
- 12
- Cadence
- ~daily
- Last 12 months
- 9
Reach
- Stars
- 5.6k
Details
- First release
- May 10, 2020
| Version | Released | |
|---|---|---|
v1.6.1
patch
|
v1.6.1
patch
|
|
v1.6.0
minor
|
v1.6.0
minor
|
|
v1.5.1
patch
|
v1.5.1
patch
|
|
v1.5.0
minor
|
v1.5.0
minor
|
|
v1.4.0
minor
|
v1.4.0
minor
|
|
v1.3.1
patch
|
v1.3.1
patch
|
|
v1.3.0
minor
|
v1.3.0
minor
|
|
v1.2.0
minor
|
v1.2.0
minor
|
|
v1.1.2
patch
|
v1.1.2
patch
|
|
v1.1.1
patch
1 CVE
CVE-2026-32285
GHSA-6g7g-w4f8-9c9x
GO-2026-4514
Mar 18, 2026
github.com/buger/jsonparser has a denial of service vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
The Delete function fails to properly validate offsets when processing malformed JSON input. This can lead to a negative slice index and a runtime panic, allowing a denial of service attack. Fixed in
1.1.2
References
Updated Sep 10, 2026 · Source: OSV.dev |
v1.1.1
patch
|
|
v1.1.0
minor
2 CVEs
CVE-2026-32285
GHSA-6g7g-w4f8-9c9x
GO-2026-4514
Mar 18, 2026
github.com/buger/jsonparser has a denial of service vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
The Delete function fails to properly validate offsets when processing malformed JSON input. This can lead to a negative slice index and a runtime panic, allowing a denial of service attack. Fixed in
1.1.2
References
Updated Sep 10, 2026 · Source: OSV.dev
CVE-2020-35381
GHSA-8vrw-m3j9-j27c
GO-2021-0057
May 25, 2022
Denial of Service in jsonparser
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
jsonparser before 1.1.1 allows attackers to cause a denial of service via a GET call. Fixed in
1.1.1
References
Updated May 20, 2024 · Source: OSV.dev |
v1.1.0
minor
|
|
v1.0.0
initial
2 CVEs
CVE-2026-32285
GHSA-6g7g-w4f8-9c9x
GO-2026-4514
Mar 18, 2026
github.com/buger/jsonparser has a denial of service vulnerability
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
The Delete function fails to properly validate offsets when processing malformed JSON input. This can lead to a negative slice index and a runtime panic, allowing a denial of service attack. Fixed in
1.1.2
References
Updated Sep 10, 2026 · Source: OSV.dev
CVE-2020-35381
GHSA-8vrw-m3j9-j27c
GO-2021-0057
May 25, 2022
Denial of Service in jsonparser
7.5
/ 10
High
Network
Low
None
None
Unchanged
None
None
High
jsonparser before 1.1.1 allows attackers to cause a denial of service via a GET call. Fixed in
1.1.1
References
Updated May 20, 2024 · Source: OSV.dev |
v1.0.0
initial
|