Lucene search

K
osvGoogleOSV:CVE-2019-14439
HistoryJul 30, 2019 - 11:15 a.m.

CVE-2019-14439

2019-07-3011:15:11
Google
osv.dev
11

6.6 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

45.8%

A Polymorphic Typing issue was discovered in FasterXML jackson-databind 2.x before 2.9.9.2. This occurs when Default Typing is enabled (either globally or for a specific property) for an externally exposed JSON endpoint and the service has the logback jar in the classpath.

References