CVE-2020-10672

CVE-2020-10672

FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction between serialization gadgets and typing, related to org.apache.aries.transaction.jms.internal.XaPooledConnectionFactory (aka aries.transaction.jms).

Source: CVE-2020-10672

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다