A flaw was found in org.codehaus.jackson:jackson-mapper-asl:1.9.x libraries. XML external entity vulnerabilities similar CVE-2016-3720 also affects codehaus jackson-mapper-asl libraries but in different classes.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Information
Published : 2019-11-18 09:15
Updated : 2023-02-12 15:33
NVD link : CVE-2019-10172
Mitre link : CVE-2019-10172
JSON object : View
CWE
CWE-611
Improper Restriction of XML External Entity Reference
Products Affected
redhat
- jboss_enterprise_application_platform
- jboss_fuse
fasterxml
- jackson-mapper-asl
debian
- debian_linux
apache
- spark