Description
XML external entity (XXE) vulnerability in XmlMapper in the Data format extension for Jackson (aka jackson-dataformat-xml) allows attackers to have unspecified impact via unknown vectors.
Remediation
References
http://lists.fedoraproject.org/pipermail/package-announce/2016-May/184561.html
Related Vulnerabilities
CVE-2022-1440 Vulnerability in npm package git-interface
CVE-2019-15488 Vulnerability in maven package org.igniterealtime.openfire:xmppserver
CVE-2016-10633 Vulnerability in npm package dwebp-bin
CVE-2018-1000862 Vulnerability in maven package org.jenkins-ci.main:jenkins-core
CVE-2023-37958 Vulnerability in maven package org.jenkins-ci.plugins:sumologic-publisher