com.fasterxml.jackson.core/jackson-databind
Overview
Canonical component data stored by Polaris.
2.9.3
maven
library
1
No license information
2
Not linked
pkg:maven/com.fasterxml.jackson.core/[email protected]?type=jar
Maintenance
Derived from available component and registry data
Medium
3162 days
Minor update available
Yes
Lifecycle
Source: endoflife.date
Registry
Source: deps.dev
maven
2.18.9
12/9/2017
18
69
Known Vulnerabilities
Source: OSV.dev
GHSA-27xj-rqx5-2255
jackson-databind mishandles the interaction between serialization gadgets and typing
GHSA-288c-cq4h-88gq
XML External Entity (XXE) Injection in Jackson Databind
GHSA-4gq5-ch57-c2mg
Arbitrary Code Execution in jackson-databind
GHSA-4w82-r329-3q67
Deserialization of Untrusted Data in jackson-databind
GHSA-57j2-w4cx-62h2
Deeply nested json in jackson-databind
GHSA-58pp-9c76-5625
jackson-databind mishandles the interaction between serialization gadgets and typing
GHSA-5949-rw7g-wx7w
Deserialization of untrusted data in jackson-databind
GHSA-5jmj-h7xm-6q6v
jackson-databind has case-insensitive deserialization bypasses per-property @JsonIgnoreProperties
GHSA-5p34-5m6p-p58g
jackson-databind mishandles the interaction between serialization gadgets and typing
GHSA-5r5r-6hpj-8gg9
Serialization gadget exploit in jackson-databind
GHSA-5ww9-j83m-q7qx
Information exposure in FasterXML jackson-databind
GHSA-645p-88qh-w398
Arbitrary Code Execution in jackson-databind
GHSA-6fpp-rgj9-8rwc
Deserialization of untrusted data in FasterXML jackson-databind
GHSA-6wqp-v4v6-c87c
Deserialization of Untrusted Data
GHSA-758m-v56v-grj4
jackson-databind mishandles the interaction between serialization gadgets and typing
GHSA-85cw-hj65-qqv9
Polymorphic Typing issue in FasterXML jackson-databind
GHSA-89qr-369f-5m5x
Unsafe Deserialization in jackson-databind
GHSA-8c4j-34r4-xr8g
Unsafe Deserialization in jackson-databind
GHSA-8w26-6f25-cm9x
Unsafe Deserialization in jackson-databind
GHSA-95cm-88f5-f2c7
jackson-databind mishandles the interaction between serialization gadgets and typing
GHSA-9gph-22xh-8x98
Unsafe Deserialization in jackson-databind
GHSA-9m6f-7xcq-8vf8
Unsafe Deserialization in jackson-databind
GHSA-9mxf-g3x6-wv74
Server-Side Request Forgery (SSRF) in jackson-databind
GHSA-9vvp-fxw6-jcxr
jackson-databind mishandles the interaction between serialization gadgets and typing
GHSA-c265-37vj-cwcc
Deserialization of untrusted data in Jackson Databind
GHSA-c2q3-4qrh-fm48
Deserialization of untrusted data in Jackson Databind
GHSA-c8hm-7hpq-7jhg
com.fasterxml.jackson.core:jackson-databind vulnerable to Deserialization of Untrusted Data
GHSA-cf6r-3wgc-h863
Polymorphic deserialization of malicious object in jackson-databind
GHSA-cggj-fvv3-cqwv
FasterXML jackson-databind allows unauthenticated remote code execution
GHSA-cjjf-94ff-43w7
jackson-databind Deserialization of Untrusted Data vulnerability
GHSA-cmfg-87vq-g5g4
Deserialization of untrusted data in FasterXML jackson-databind
GHSA-cvm9-fjm9-3572
Unsafe Deserialization in jackson-databind
GHSA-f3j5-rmmp-3fc5
Improper Input Validation in jackson-databind
GHSA-f9hv-mg5h-xcw9
Deserialization of Untrusted Data in jackson-databind due to polymorphic deserialization
GHSA-f9xh-2qgp-cq57
Unsafe Deserialization in jackson-databind
GHSA-fmmc-742q-jg75
jackson-databind polymorphic typing issue
GHSA-fqwf-pjwf-7vqv
jackson-databind mishandles the interaction between serialization gadgets and typing
GHSA-gjmw-vf9h-g25v
jackson-databind polymorphic typing issue
GHSA-gwp4-hfv6-p7hw
Deserialization of untrusted data in FasterXML jackson-databind
GHSA-gww7-p5w4-wrfv
Deserialization of Untrusted Data in jackson-databind
GHSA-h3cw-g4mq-c5x2
Code Injection in jackson-databind
GHSA-h4rc-386g-6m85
jackson-databind mishandles the interaction between serialization gadgets and typing
GHSA-h592-38cm-4ggp
jackson-databind vulnerable to deserialization flaw leading to unauthenticated remote code execution
GHSA-h822-r4r5-v8jg
Polymorphic Typing issue in FasterXML jackson-databind
GHSA-hgj6-7826-r7m5
jackson-databind: InetSocketAddress deserialization triggers eager DNS resolution (SSRF)
GHSA-j823-4qch-3rgm
Deserialization of untrusted data in Jackson Databind
GHSA-jjjh-jjxp-wpff
Uncontrolled Resource Consumption in Jackson-databind
GHSA-m6x4-97wx-4q27
Unsafe Deserialization in jackson-databind
GHSA-mc6h-4qgp-37qh
Deserialization of untrusted data in Jackson Databind
GHSA-mph4-vhrx-mv67
Deserialization of Untrusted Data in FasterXML jackson-databind
GHSA-mx7p-6679-8g3q
Polymorphic Typing in FasterXML jackson-databind
GHSA-mx9v-gmh4-mgqw
Deserialization of Untrusted Data in jackson-databind
GHSA-p43x-xfjf-5jhr
jackson-databind mishandles the interaction between serialization gadgets and typing
GHSA-q93h-jc49-78gg
jackson-databind mishandles the interaction between serialization gadgets and typing
GHSA-qjw2-hr98-qgfh
Unsafe Deserialization in jackson-databind
GHSA-qmqc-x3r4-6v39
Polymorphic deserialization of malicious object in jackson-databind
GHSA-qr7j-h6gg-jmgc
Deserialization of Untrusted Data in jackson-databind
GHSA-r3gr-cxrf-hg25
Serialization gadgets exploit in jackson-databind
GHSA-r695-7vr9-jgc2
Unsafe Deserialization in jackson-databind
GHSA-rf6r-2c4q-2vwg
jackson-databind mishandles the interaction between serialization gadgets and typing
GHSA-rfx6-vp9g-rh7v
jackson-databind vulnerable to remote code execution due to incorrect deserialization and blocklist bypass
GHSA-rgv9-q543-rqg4
Uncontrolled Resource Consumption in FasterXML jackson-databind
GHSA-rpr3-cw39-3pxh
jackson-databind vulnerable to unsafe deserialization
GHSA-v3xw-c963-f5hc
jackson-databind mishandles the interaction between serialization gadgets and typing
GHSA-v585-23hc-c647
Unsafe Deserialization in jackson-databind
GHSA-vfqx-33qm-g869
Unsafe Deserialization in jackson-databind
GHSA-w3f4-3q6j-rh82
Deserialization of Untrusted Data in jackson-databind
GHSA-wh8g-3j2c-rqj5
Serialization gadgets exploit in jackson-databind
GHSA-x2w5-5m2g-7h5m
XML External Entity Reference (XXE) in jackson-databind
Security
Source: OpenSSF Scorecard
Systems (1)
Dependencies
2 direct dependencies