Description
XML external entity (XXE) vulnerability in XmlMapper in the Data format extension for Jackson (aka jackson-dataformat-xml) allows attackers to have unspecified impact via unknown vectors.
Remediation
References
http://lists.fedoraproject.org/pipermail/package-announce/2016-May/184561.html
Related Vulnerabilities
CVE-2016-10750 Vulnerability in maven package com.hazelcast:hazelcast-spring
CVE-2013-7285 Vulnerability in maven package org.jbehave:jbehave-core
CVE-2022-24697 Vulnerability in maven package org.apache.kylin:kylin-spark-engine
CVE-2020-36618 Vulnerability in npm package whois
CVE-2015-8861 Vulnerability in maven package org.webjars:handlebars