Description
FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction between serialization gadgets and typing, related to javax.swing.JEditorPane.
Remediation
References
Related Vulnerabilities
Joomla! Core 2.5.x Cross-Site Scripting (2.5.0 - 2.5.9)
Pagination by BestWebSoft Cross-Site Scripting (1.0.6)
Oracle Database Server CVE-2011-0848 Vulnerability (CVE-2011-0848)
Drupal Other Vulnerability (CVE-2015-3232)
Moodle Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2023-28333)