FasterXML
65 exploits
Active since Jan 2018
jackson-databind 2.0.0-2.9.10.7 - Deserialization of Untrusted Data via SharedPoolDataSource
CVSS 8.1
jackson-databind 2.9.0-2.9.10.7 - Deserialization of Untrusted Data via JNDIConnectionPool
CVSS 8.1
jackson-databind 2.0.0-2.9.10.7 - Deserialization of Untrusted Data
CVSS 8.1
jackson-databind 2.7.0-2.7.9.6 - Deserialization of Untrusted Data via HikariConfig Gadget
CVSS 9.8
jackson-dataformats-binary < 2.11.4 - Denial of Service via Unchecked Byte Buffer Allocation
CVSS 7.5
jackson-databind 2.0.0-2.9.10.7 - Deserialization of Untrusted Data
CVSS 8.1
jackson-databind 2.0.0-2.9.10.7 - Deserialization of Untrusted Data
CVSS 8.1
Netapp Cloud Backup < 21.1.2 - Insecure Deserialization
CVSS 8.1
jackson-databind 2.9.0-2.9.10.3 - Deserialization of Untrusted Data via spring-aop MethodLocatingFactoryBean
CVSS 8.1
jackson-databind 2.9.0-2.9.10.4 - Deserialization of Untrusted Data via org.jsecurity.realm.jndi.JndiRealmFactory
CVSS 8.1
FasterXML jackson-databind <2.9.10.6 - RCE
CVSS 8.1
Netapp Snapcenter < 2.7.9.7 - Insecure Deserialization
CVSS 9.8
jackson-modules-java8 < 2.9.8 - Denial of Service via Large Nanoseconds Field in Time Value
CVSS 6.5
FasterXML jackson-databind <2.8.11, 2.9.x<2.9.3 - RCE
CVSS 8.1
FasterXML jackson-databind <2.7.9.4-2.8.11.2-2.9.6 - Code Injection
CVSS 7.5