Lucene search

K
redhatcveRedhat.comRH:CVE-2020-25649
HistoryOct 13, 2020 - 8:16 p.m.

CVE-2020-25649

2020-10-1320:16:54
redhat.com
access.redhat.com
45
fasterxml jackson databind
xml external entity attacks
data integrity

EPSS

0.003

Percentile

68.4%

A flaw was found in FasterXML Jackson Databind, where it did not have entity expansion secured properly. This flaw allows vulnerability to XML external entity (XXE) attacks. The highest threat from this vulnerability is data integrity.

Mitigation

There is currently no known mitigation for this flaw.