scobal / seyren

An alerting dashboard for Graphite
Other
859 stars 220 forks source link

Jackson databind vulnerability #439

Open ch0an opened 6 years ago

ch0an commented 6 years ago

It appears as though this project uses a pinned version of jackson that is vulnerable to CVE-2017-7525 ( https://github.com/FasterXML/jackson-databind/issues/1723 ). Was curious if there were any plans to upgrade this?