fastjson-RCE

JSON parser exploit

This project demonstrates a remote code execution vulnerability in a popular JSON parsing library using a crafted input to exploit the RMI protocol.

fastjson-1.2.47

GitHub

66 stars
0 watching
18 forks
last commit: about 7 years ago

Related projects:

RepositoryDescriptionStars
jas502n/jackson-cve-2020-8840A project that details and demonstrates the impact of a remote code execution vulnerability in a popular Java library used for JSON data binding.73
jas502n/cve-2019-12384A proof-of-concept project demonstrating a Jackson RCE vulnerability in Ruby that allows an attacker to execute arbitrary commands on the system.97
eddelbuettel/rcppsimdjsonA set of C++ bindings for a fast JSON parsing library118
nschaffner/fastjsonA Java library for converting objects to and from JSON with high performance and support for complex objects1
bigsizeme/fastjson-checkA tool for detecting and generating payload vulnerabilities in JSON data369
erikonbike/parse-next-json-valueA parser for extracting valid JSON values from strings with extraneous characters1
recp/jsonA lightweight JSON parsing library that creates a DOM-like data structure24
authorizon/fastapi_websocket_rpcProvides a robust and production-ready bidirectional JSON RPC channel over Websockets.7
python-rapidjson/python-rapidjsonA fast C++ JSON parser and serialization library wrapped in a Python 3 extension.508
rudolph-miller/jonathanA JSON encoder and decoder implemented in Common Lisp.164
kunalsin9h/livejqAn alternative to jq with continuous parsing support and filtering capabilities for handling invalid JSON without crashing.15
dmitrii-eremin/jfesA minimalistic JSON parser for embedded systems70
tktech/pysimdjsonFast JSON parsing for Python, using SIMD instructions when available648
y4er/cve-2020-2883Exploits a remote code execution vulnerability in WebLogic Coherence using Java178
jsonapi-serializer/jsonapi-serializerA fast JSON serialization library for Ruby objects1,410