VDB
Sign up
HIGH7.5

GHSA-r6j9-8759-g62w

Improper Restriction of XML External Entity Reference in jackson-mapper-asl

Details

A flaw was found in org.codehaus.jackson:jackson-mapper-asl:1.9.x libraries. XML external entity vulnerabilities similar to CVE-2016-3720 also affects codehaus jackson-mapper-asl libraries but in different classes.

Are you affected?

Enter the version of the package you're using.

Affected packages

Maven/org.codehaus.jackson:jackson-mapper-asl
Introduced in: 0

No fixed version published yet for org.codehaus.jackson:jackson-mapper-asl (maven). Pin to a known-safe version or switch to an alternative.

References