Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r6j9-8759-g62w

Опубликовано: 04 фев. 2020
Источник: github
Github: Прошло ревью
CVSS3: 7.5

Описание

Improper Restriction of XML External Entity Reference in jackson-mapper-asl

A flaw was found in org.codehaus.jackson:jackson-mapper-asl:1.9.x libraries. XML external entity vulnerabilities similar to CVE-2016-3720 also affects codehaus jackson-mapper-asl libraries but in different classes.

Ссылки

Пакеты

Наименование

org.codehaus.jackson:jackson-mapper-asl

maven
Затронутые версииВерсия исправления

<= 1.9.13

Отсутствует

EPSS

Процентиль: 68%
0.00563
Низкий

7.5 High

CVSS3

Дефекты

CWE-611

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 6 лет назад

A flaw was found in org.codehaus.jackson:jackson-mapper-asl:1.9.x libraries. XML external entity vulnerabilities similar CVE-2016-3720 also affects codehaus jackson-mapper-asl libraries but in different classes.

CVSS3: 5.9
redhat
около 6 лет назад

A flaw was found in org.codehaus.jackson:jackson-mapper-asl:1.9.x libraries. XML external entity vulnerabilities similar CVE-2016-3720 also affects codehaus jackson-mapper-asl libraries but in different classes.

CVSS3: 7.5
nvd
около 6 лет назад

A flaw was found in org.codehaus.jackson:jackson-mapper-asl:1.9.x libraries. XML external entity vulnerabilities similar CVE-2016-3720 also affects codehaus jackson-mapper-asl libraries but in different classes.

CVSS3: 7.5
debian
около 6 лет назад

A flaw was found in org.codehaus.jackson:jackson-mapper-asl:1.9.x libr ...

CVSS3: 5.9
fstec
около 6 лет назад

Уязвимость компонента org.codehaus.jackson библиотеки jackson-mapper-asl, позволяющая нарушителю оказать воздействие на целостность данных

EPSS

Процентиль: 68%
0.00563
Низкий

7.5 High

CVSS3

Дефекты

CWE-611