Miggo Logo

CVE-2019-17267:
FasterXML Jackson-Databind Polymorphic Typing Deserialization Vulnerability

9.8

CVSS Score
3.1

Basic Information

EPSS Score
0.79259%
Published
6/15/2020
Updated
9/13/2023
KEV Status
No
Technology
TechnologyJava

Technical Details

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Package NameEcosystemVulnerable VersionsFirst Patched Version
com.fasterxml.jackson.core:jackson-databindmaven>= 2.9.0, < 2.9.102.9.10
com.fasterxml.jackson.core:jackson-databindmaven< 2.8.11.52.8.11.5

Vulnerability Intelligence
Miggo AIMiggo AI

Miggo AIRoot Cause Analysis:
In progress

WAF Protection Rules

WAF Rule

* Polymorp*i* Typin* issu* w*s *is*ov*r** in **st*rXML j**kson-**t**in* ***or* *.*.** *n* *.*.**.*. It is r*l*t** to n*t.s*.*******.*i**rn*t*.*******Jt*Tr*ns**tionM*n***rLookup.

Reasoning

No *n*lysis *v*il**l*