d
davegamble
Security Risk Profile
49
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 14 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from August 20, 2018 to present
14
Total CVEs
12
Critical+High
0
Exploited
2
Unpatched
Threat Assessment
Avg CVSS
8.3
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
2
Critical/High
Risk Level
49/100
medium
Severity Distribution
Critical
5High
7Medium
2Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
Null Pointer Dereference
3
2
Integer Overflow
1
3
Buffer Overflow
1
4
Out-of-bounds Read
1
5
Use After Free
1
Most Affected Products
1. DaveGamble cJSON14
2. Cjson Project Cjson9
3. cJSON cJSON4
4. ubuntu/cjson3
5. Oracle TimesTen In-Memory Database3
Recent Vulnerabilities
See more →CVE-2026-67217
CVSS 6.9medium
cJSON JSON Patch Non-Atomic Application Destroys Data Before Validation
Jul 29, 2026🔧 No Patch
CVE-2026-67216
CVSS 8.2high
cJSON cJSON_Compare Exponential Complexity Denial of Service
Jul 29, 2026
CVE-2026-67215
CVSS 8.7high
cJSON JSON Patch copy/add Uncontrolled Recursion Stack Exhaustion
Jul 29, 2026🔧 No Patch
CVE-2026-16554
CVSS 5.1medium
Integer Overflow Leading to Heap Buffer Overflow in cJSON
Jul 27, 2026🔧 No Patch
CVE-2025-57052
CVSS 9.8critical
Sep 3, 2025🔧 No Patch
CVE-2023-50472
CVSS 7.5high
Dec 14, 2023
CVE-2023-50471
CVSS 7.5high
Dec 14, 2023
CVE-2019-1010239
CVSS 7.5high
Jul 19, 2019
CVE-2019-11835
CVSS 9.8critical
May 9, 2019
CVE-2019-11834
CVSS 9.8critical
May 9, 2019
Monitor davegamble in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.