FasterXML
65 exploits
Active since Jan 2018
Netapp Snapcenter < 2.7.9.7 - Insecure Deserialization
CVSS 9.8
jackson-databind 2.7.0-2.7.9.6 - Deserialization of Untrusted Data via javax.swing.JEditorPane
CVSS 8.8
FasterXML jackson-databind <2.9.10 - Info Disclosure
CVSS 9.8
jackson-databind 2.0.0-2.9.10 - Remote Code Execution via Polymorphic Typing with Log4j JNDI
CVSS 9.8
FasterXML Jackson-Databind <2.9.10.4 - Code Injection
CVSS 8.8
FasterXML jackson-databind <2.9.10 - Info Disclosure
CVSS 9.8
FasterXML jackson-databind <2.9.9.1 - Deserialization
CVSS 5.9
FasterXML jackson-databind <2.9.9.2 - Info Disclosure
CVSS 7.5
jackson-databind < 2.9.9.2 - Remote Code Execution via Default Typing with Ehcache
CVSS 9.8
FasterXML jackson-databind < 2.9.10 - Deserialization of Untrusted Data via EhcacheJtaTransactionManagerLookup
CVSS 9.8
jackson-databind 2.0.0-2.9.9 - Unauthenticated Arbitrary File Read via JDOM Polymorphic Typing
CVSS 5.9
FasterXML jackson-databind < 2.9.10 - Remote Code Execution via Xalan JNDI Gadget Deserialization
CVSS 9.8
jackson-databind <2.8.10, 2.9.1 - Code Injection
CVSS 9.8
jackson-databind < 2.6.7.3, 2.9.0-2.9.3 - Unauthenticated Remote Code Execution via Malicious JSON Input
CVSS 9.8
jackson-modules-java8 < 2.9.8 - Denial of Service via Large Nanoseconds Field in Time Value
CVSS 6.5
jackson-databind 2.0.0-2.9.5 - Deserialization of Untrusted Data via iBatis Gadget Class
CVSS 9.8
FasterXML jackson-databind <2.7.9.4, 2.8.11.2, 2.9.6 - Code Injection
CVSS 7.5
FasterXML jackson-databind <2.7.9.4-2.8.11.2-2.9.6 - Code Injection
CVSS 7.5
FasterXML jackson-databind <2.9.8 - Code Injection
CVSS 9.8
FasterXML jackson-databind <2.9.8 - Deserialization
CVSS 9.8
FasterXML jackson-databind <2.9.8 - Use After Free
CVSS 9.8
FasterXML jackson-databind <2.8.11, 2.9.x<2.9.3 - RCE
CVSS 8.1
jackson-databind < 2.7.9.3, 2.8.0-2.8.11.1, < 2.9.5 - Remote Code Execution via Deserialization Bypass
CVSS 9.8
FasterXML jackson-databind <2.9.9 - Code Injection
CVSS 7.5
FasterXML jackson-databind <2.9.10.4 - Code Injection
CVSS 8.8