neuland / pug4j

a pug implementation written in Java (formerly known as jade)
MIT License
61 stars 12 forks source link

Upgrade Jackson from 2.13.4 to 2.14.0 #16

Closed julianladisch closed 1 year ago

julianladisch commented 2 years ago

Full change list: https://github.com/FasterXML/jackson/wiki/Jackson-Release-2.14#full-change-list It contains a security fix: Fixing Denial of Service (DoS) vulnerability when the non-default UNWRAP_SINGLE_VALUE_ARRAYS feature is enabled: https://nvd.nist.gov/vuln/detail/CVE-2022-42003