mbknor-jackson-jsonSchema icon indicating copy to clipboard operation
mbknor-jackson-jsonSchema copied to clipboard

CVE dependancies security breaches (Kotlin, jackson databind)

Open leccyril opened this issue 2 years ago • 0 comments

We are using your great lib, but unfortunately there is 2 breaches, one CVE is directly available on mavenrepository website about jackson databind version

image

and the other is about kotlin version, currently you import version 1.3.5 but we are now in 1.6

image

could you fix the issues ?

https://nvd.nist.gov/vuln/detail/CVE-2020-29582

leccyril avatar Jan 25 '22 10:01 leccyril