CVE-2023-42277: Hutool

Critical severity, CVSS 9.8. EPSS: 0.9% chance of exploitation in the next 30 days.

hutool v5.8.21 was discovered to contain a buffer overflow via the component jsonObject.putByPath.

Affected products

  • Hutool Hutool: version 5.8.21 only

Published 2023-09-08. Last modified 2026-06-17.