Uploaded image for project: 'Jenkins'
  1. Jenkins
  2. JENKINS-70677

Jackson2-api affected by CVE-2022-40152

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Not A Defect
    • Icon: Minor Minor
    • jackson2-api-plugin
    • None

      The latest bump of jackson2-api was to 2.13.4.20221013-295.v8e29ea_354141.
      This version is currently affected by the CVE https://nvd.nist.gov/vuln/detail/CVE-2022-40152, which is related with Woodstox. 

      Recent versions of that component are not affected by the CVE.

            Unassigned Unassigned
            sandraantunes Sandra Antunes
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

              Created:
              Updated:
              Resolved: