Lucene search

K
redhatcveRedhat.comRH:CVE-2018-11307
HistoryJul 18, 2021 - 12:22 a.m.

CVE-2018-11307

2021-07-1800:22:25
redhat.com
access.redhat.com
15

0.011 Low

EPSS

Percentile

84.2%

A vulnerability was discovered in jackson-databind where it would permit deserialization of a malicious object using MyBatis classes when using DefaultTyping. An attacker could use this flaw to achieve content exfiltration and possibly conduct further attacks.