Known vulnerabilities in jackson-databind 2.9.5 - page 2

Vendor: FasterXML
Version: 2.9.5
Software CPE: cpe:2.3:a:fasterxml:jackson-databind:*:*:*:*:*:*:*:*
Total vulnerabilities: 58
Public exploits: 13
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting jackson-databind version 2.9.5 jackson-databind 2.9.5 is affected by 58 vulnerabilities: 42 high, 12 medium, 4 low Critical High Medium Low

Vulnerabilities (58)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU69512 - Deserialization of Untrusted Data
CVE-2020-10650
CWE-502 High
No
No
2.6.7.4, 2.9.10.4 23.11.2022 SB2020030909
SB2022112310
SB2023012310
and 12 more
#VU29131 - Deserialization of Untrusted Data
CVE-2020-14061
CWE-502 High
No
No
2.9.10.5 18.06.2020 SB2020061806
SB2020070320
SB2020073033
and 15 more
#VU29130 - Deserialization of Untrusted Data
CVE-2020-14062
CWE-502 High
No
No
2.9.10.5 18.06.2020 SB2020061806
SB2020070320
SB2020073033
and 14 more
#VU29129 - Deserialization of Untrusted Data
CVE-2020-14060
CWE-502 High
No
No
2.9.10.5 18.06.2020 SB2020061806
SB2020070320
SB2020073033
and 15 more
#VU27032 - Deserialization of Untrusted Data
CVE-2020-11620
CWE-502 High
No
No
2.9.10.4 20.04.2020 SB2020030909
SB2020052628
SB2020073033
and 15 more
#VU27031 - Deserialization of Untrusted Data
CVE-2020-11619
CWE-502 High
No
No
2.9.10.4 20.04.2020 SB2020030909
SB2020052628
SB2020073033
and 15 more
#VU26494 - Deserialization of Untrusted Data
CVE-2020-10673
CWE-502 High
Public exploit available
No
2.9.10.4 01.04.2020 SB2020030909
SB2020073033
SB2022060909
and 17 more
#VU26493 - Deserialization of Untrusted Data
CVE-2020-10672
CWE-502 High
No
No
2.9.10.4 01.04.2020 SB2020030909
SB2020073033
SB2022060909
and 16 more
#VU26492 - Deserialization of Untrusted Data
CVE-2020-10969
CWE-502 High
No
No
2.9.10.4 01.04.2020 SB2020030909
SB2020042318
SB2020073033
and 14 more
#VU26491 - Deserialization of Untrusted Data
CVE-2020-10968
CWE-502 High
No
No
2.9.10.4 01.04.2020 SB2020030909
SB2020042318
SB2020073033
and 15 more
#VU26490 - Deserialization of Untrusted Data
CVE-2020-11113
CWE-502 High
Public exploit available
No
2.9.10.4 01.04.2020 SB2020030909
SB2020042318
SB2020073033
and 16 more
#VU26489 - Deserialization of Untrusted Data
CVE-2020-11112
CWE-502 High
No
No
2.9.10.4 01.04.2020 SB2020030909
SB2020042318
SB2020073033
and 16 more
#VU26488 - Deserialization of Untrusted Data
CVE-2020-11111
CWE-502 High
No
No
2.9.10.4 31.03.2020 SB2020030909
SB2020042318
SB2020073033
and 16 more
#VU25834 - Deserialization of Untrusted Data
CVE-2019-14893
CWE-502 High
No
No
2.8.11.5, 2.9.10, 2.10.0 09.03.2020 SB2020030911
SB2020031901
SB2022060909
and 15 more
#VU25833 - Deserialization of Untrusted Data
CVE-2019-14892
CWE-502 High
No
No
2.6.7.3, 2.8.11.5, 2.9.10 09.03.2020 SB2020030911
SB2020031901
SB2022060909
and 16 more
#VU25832 - Deserialization of Untrusted Data
CVE-2020-9548
CWE-502 High
Public exploit available
No
2.7.9.7, 2.8.11.6, 2.9.10.4 09.03.2020 SB2020030909
SB2020073033
SB2022060909
and 14 more
#VU25831 - Deserialization of Untrusted Data
CVE-2020-9547
CWE-502 High
Public exploit available
No
2.7.9.7, 2.8.11.6, 2.9.10.4 09.03.2020 SB2020030909
SB2020073033
SB2022060909
and 13 more
#VU25830 - Deserialization of Untrusted Data
CVE-2020-9546
CWE-502 High
No
No
2.7.9.7, 2.8.11.6, 2.9.10.4 09.03.2020 SB2020030909
SB2020071523
SB2020071620
and 31 more
#VU25469 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-8840
CWE-94 Medium
Public exploit available
No
2.8.11.5, 2.9.10.3 19.02.2020 SB2020021921
SB2020022615
SB2020061106
and 18 more
#VU24272 - Improper Access Control
CVE-2019-20330
CWE-284 Low
No
No
2.10.2 14.01.2020 SB2020010309
SB2020032709
SB2020042101
and 18 more


Showing elements 21 - 40 out of 58