Closed nicoloboschi closed 1 year ago
jackson-databind 2.12.6.1 is vulnerable to CVE-2022-42003
jackson-databind
there's no strong reason to bump to 2.13.x so it's more conservative to remain on 2.12.x
Motivation
jackson-databind
2.12.6.1 is vulnerable to CVE-2022-42003Modifications
there's no strong reason to bump to 2.13.x so it's more conservative to remain on 2.12.x