File tree Expand file tree Collapse file tree 1 file changed +2
-2
lines changed Expand file tree Collapse file tree 1 file changed +2
-2
lines changed Original file line number Diff line number Diff line change @@ -456,7 +456,7 @@ Project: jackson-databind
456
456
(reported by henryptung@github)
457
457
#1807 : Jackson-databind caches plain map deserializer and use it even map has `@JsonDeserializer`
458
458
(reported by lexas2509@github)
459
- #1855 : Blacklist for more serialization gadgets (dbcp/tomcat, spring)
459
+ #1855 : Blacklist for more serialization gadgets (dbcp/tomcat, spring / CVE- 2017 - 17485 )
460
460
461
461
2.8.10 (24 -Aug-2017 )
462
462
@@ -472,7 +472,7 @@ Project: jackson-databind
472
472
binary formats (CBOR, Smile)
473
473
#1735 : Missing type checks when using polymorphic type ids
474
474
(reported by Lukas Euler)
475
- #1737 : Block more JDK types from polymorphic deserialization
475
+ #1737 : Block more JDK types from polymorphic deserialization (CVE 2017 - 15095 )
476
476
477
477
2.8.9 (12 -Jun-2017 )
478
478
You can’t perform that action at this time.
0 commit comments