Hacker News new | ask | show | jobs
Google Bans JSONView – Extension Contains a Serious Security Vulnerability (jsonview.com)
24 points by mboroi 3514 days ago
7 comments

Info about this issue including a test case: https://github.com/gildas-lormeau/JSONView-for-Chrome/issues...

I started using "JSON Formatter" instead ( https://chrome.google.com/webstore/detail/json-formatter/bcj... ) and it seems to work fine.

I'd really like to know more information about the vulnerability but can't seem to find anything online.
mjamin opened a bug on GitHub, perhaps we'll get an update from Ben or a contributor. https://github.com/bhollis/jsonview/issues/135
This git repo is the repo of the firefox extension. I opened the same ticket for the chrome version https://github.com/gildas-lormeau/JSONView-for-Chrome/issues...
Nice! Seems you managed to get some traction in the proper place.
But it's still available on chrome web store https://chrome.google.com/webstore/detail/jsonview/nckmconeh...
It seems this version by Ark may have been a copy, in their description they point to the "original", https://chrome.google.com/webstore/detail/jsonview/chklaanhf..., which directs to the version claimed to have a security vulnerability and appears to have been pulled.
I attempted to load something and realized the extension I had just previously been using stopped working. [screenshot of the disabled extension](http://imgur.com/jBmnwf4)
The link from Ben Hollis's site, https://jsonview.com/, to the Alternative/Unofficial JSONView for Chrome 404's.
Annoying...doesn't seem to be working on firefox either... for the time being, use this as a work around http://codebeautify.org/jsonviewer ...
Do we have more information about this? Is Google correct and should we switch to something else?
The work must go on. I ended up installing JSON Formatter. Appears potentially abandoned though.

source: https://github.com/callumlocke/json-formatter extension: https://chrome.google.com/webstore/detail/json-formatter/bcj...