CVE-2021-20190
A flaw was found in jackson-databind before 2.9.10.7. FasterXML mishandles the interaction between serialization gadgets
A flaw was found in jackson-databind before 2.9.10.7. FasterXML mishandles the interaction between serialization gadgets and typing. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
HIGH · CVSS 8.1
EPSS 0.00502
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0