1 comment

[ 5.0 ms ] story [ 14.7 ms ] thread
Applications that use jsoup to parse user-supplied HTML or XML inputs may be vulnerable to DoS attacks. Fuzz tests conducted with the JVM fuzzer "Jazzer", through OSS-Fuzz, uncovered 8 critical bugs and 11 further vulnerabilities.