Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

FasterXML — Vulnerabilities & Security Advisories 28

Browse all 28 CVE security advisories affecting FasterXML. AI-powered Chinese analysis, POCs, and references for each vulnerability.

FasterXML develops the Jackson JSON processing library, widely used for data binding and parsing in Java applications. Historically, vulnerabilities have primarily centered on remote code execution (RCE) and cross-site scripting (XSS) due to insecure deserialization and input validation flaws. The library's extensive adoption makes it a high-value target. Notable security characteristics include its modular architecture, though complex configurations can introduce risks. While no major public incidents have been widely documented, the 6 CVEs on record highlight persistent concerns around memory corruption and improper handling of untrusted input, necessitating careful implementation and regular updates.

Found 1 results / 28 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2026-77310 jackson-databind: Eager DNS resolution (SSRF) still present in InetAddress deserialization (Incomplete fix for CVE-2026-54514) — com.fasterxml.jackson.core:jackson-databind CWE-918 5.3 Medium 2026-08-24

This page lists every published CVE security advisory associated with FasterXML. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.