Details
-
Bug
-
Status: Resolved
-
Normal
-
Resolution: Fixed
-
3.11.14, 4.0.7, 4.1-rc1, 5.0-alpha1, 5.0
-
None
-
Security
-
Normal
-
Normal
-
User Report
-
All
-
None
-
Description
As the summary says, jackson-databind 2.13.2.2 which was upgraded for a vulnerability in CASSANDRA-17556 is vulnerable again.
Attachments
Issue Links
- is duplicated by
-
CASSANDRA-20093 jackson-databind2.13.2.2 still exists in apache-cassandra-5.0.2
- Resolved
-
CASSANDRA-18081 CVE's in Cassandra 4.0.7
- Resolved