Year Archive: 2020

EUVD Vulnerabilities (2020)

Browse security threats, CVE catalog items, and software security flaws mapped under the EUVD sequence for the year 2020.

CRITICAL (9.8) CVSS 3.1 Source: mitre

FasterXML jackson-databind 2.x before 2.9.10.4 mishandles the interaction between serialization gadgets and typing, related to br.com.anteros.dbcp.AnterosDBCPConfig (aka anteros-core).

Aliases:
CVE-2020-9548 GHSA-p43x-xfjf-5jhr
Published: 2020-03-02 View Complete Profile →
CRITICAL (9.8) CVSS 3.1 Source: mitre

FasterXML jackson-databind 2.x before 2.9.10.2 lacks certain net.sf.ehcache blocking.

Aliases:
GHSA-gww7-p5w4-wrfv CVE-2019-20330
Published: 2020-01-03 View Complete Profile →