Description
XML external entity (XXE) vulnerability in XmlMapper in the Data format extension for Jackson (aka jackson-dataformat-xml) allows attackers to have unspecified impact via unknown vectors.
Remediation
References
http://lists.fedoraproject.org/pipermail/package-announce/2016-May/184561.html
Related Vulnerabilities
CVE-2017-18077 Vulnerability in maven package org.webjars.npm:brace-expansion
CVE-2020-1912 Vulnerability in npm package hermes-engine
CVE-2020-26296 Vulnerability in maven package org.webjars.npm:vega
CVE-2018-12536 Vulnerability in maven package org.eclipse.jetty:jetty-util
CVE-2015-8103 Vulnerability in maven package org.jenkins-ci.main:jenkins-core