Description
XML external entity (XXE) vulnerability in XmlMapper in the Data format extension for Jackson (aka jackson-dataformat-xml) allows attackers to have unspecified impact via unknown vectors.
Remediation
References
http://lists.fedoraproject.org/pipermail/package-announce/2016-May/184561.html
Related Vulnerabilities
CVE-2018-1000123 Vulnerability in npm package cordova-plugin-ios-keychain
CVE-2017-16008 Vulnerability in npm package i18next
CVE-2020-11079 Vulnerability in npm package dns-sync
CVE-2017-12617 Vulnerability in maven package org.apache.tomcat:tomcat-util
CVE-2022-36364 Vulnerability in maven package org.apache.calcite.avatica:avatica-core