Loading HuntDB...

fasterxml

2 Products 15 CVEs

CVE Severity Distribution (All Time)

Critical
0
High
12
Medium
1
Low
0

Timeline Overview

Last 30 Days 0 CVEs
Last 6 Months 0 CVEs
Last Year 0 CVEs

Recent CVEs

View all
CVE-2023-3894 MEDIUM 2 years, 1 month ago

Those using jackson-dataformats-text to parse TOML data may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user suppli…

CVE-2020-36179 HIGH 4 years, 8 months ago

FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.common…

CVE-2020-36180 HIGH 4 years, 8 months ago

FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbc…

CVE-2020-36182 HIGH 4 years, 8 months ago

FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp…

CVE-2020-36184 HIGH 4 years, 8 months ago

FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp…

CVE-2020-36181 HIGH 4 years, 8 months ago

FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp…

CVE-2020-11111 HIGH 5 years, 5 months ago

FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction between serialization gadgets and typing, related to org.apache.activemq.* …

CVE-2020-11112 HIGH 5 years, 5 months ago

FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.pro…

CVE-2020-11113 HIGH 5 years, 5 months ago

FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction between serialization gadgets and typing, related to org.apache.openjpa.ee.…

CVE-2020-10968 HIGH 5 years, 5 months ago

FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction between serialization gadgets and typing, related to org.aoju.bus.proxy.pro…