Known vulnerabilities in jackson-databind - page 4

Vendor: FasterXML
Software CPE: cpe:2.3:a:fasterxml:jackson-databind:*:*:*:*:*:*:*:*
Total vulnerabilities: 75
Public exploits: 13
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting jackson-databind jackson-databind is affected by 75 known vulnerabilities: 48 high, 22 medium, 5 low Critical High Medium Low

Vulnerabilities (75)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU21136 - Exposure of sensitive information to an unauthorized actor
CVE-2019-16335
CWE-200 Medium
No
No
2.6.7.3, 2.9.9.3 16.09.2019 SB2019091616
SB2019100716
SB2019102422
and 21 more
#VU21135 - Exposure of sensitive information to an unauthorized actor
CVE-2019-14540
CWE-200 Medium
Available
No
2.6.7.3, 2.9.9.3 16.09.2019 SB2019091616
SB2019100716
SB2019102422
and 23 more
#VU19937 - Exposure of sensitive information to an unauthorized actor
CVE-2019-14439
CWE-200 Medium
No
No
2.9.9.2 06.08.2019 SB2019073015
SB2019100716
SB2019102422
and 16 more
#VU18961 - Exposure of sensitive information to an unauthorized actor
CVE-2019-12814
CWE-200 Medium
No
No
2.7.9.6, 2.8.11.4, 2.9.9.1 02.07.2019 SB2019062606
SB2019092703
SB2019100116
and 25 more
#VU17781 - Improper input validation
CVE-2018-19362
CWE-20 High
No
No
2.9.8 19.02.2019 SB2018121501
SB2019052407
SB2019091718
and 38 more
#VU17780 - Improper input validation
CVE-2018-19360
CWE-20 High
No
No
2.9.8 19.02.2019 SB2018121501
SB2019052407
SB2019091718
and 22 more
#VU17779 - Improper input validation
CVE-2018-19361
CWE-20 High
No
No
2.9.8 19.02.2019 SB2018121501
SB2019052407
SB2019091718
and 23 more
#VU17778 - Improper input validation
CVE-2018-14719
CWE-20 High
No
No
2.9.7 19.02.2019 SB2018121501
SB2019052407
SB2019091718
and 22 more
#VU17777 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2018-14720
CWE-611 Low
No
No
2.9.7 19.02.2019 SB2018121501
SB2019052407
SB2019092703
and 21 more
#VU17776 - Server-Side Request Forgery (SSRF)
CVE-2018-14721
CWE-918 Low
No
No
2.9.7 19.02.2019 SB2018121501
SB2019052407
SB2019092703
and 23 more
#VU16786 - Improper input validation
CVE-2018-1000873
CWE-20 Low
No
No
2.9.8 04.01.2019 SB2018122016
SB2023022124
SB2021022238
and 5 more
#VU11268 - Deserialization of Untrusted Data
CVE-2018-7489
CWE-502 High
No
No
- 26.03.2018 SB2018021604
SB2018041910
SB2018050306
and 27 more
#VU10610 - Deserialization of Untrusted Data
CVE-2018-5968
CWE-502 High
No
No
- 16.02.2018 SB2018021604
SB2018021605
SB2018051725
and 13 more
#VU10257 - Deserialization of Untrusted Data
CVE-2017-17485
CWE-502 High
No
No
- 26.01.2018 SB2017121218
SB2018021605
SB2018051725
and 23 more
#VU9607 - Improper input validation
CVE-2017-15095
CWE-20 High
No
No
2.8.10, 2.9.1 08.12.2017 SB2017121101
SB2017111609
SB2018051424
and 27 more


Showing elements 61 - 80 out of 75