Skip to content

Conversation

Tom-Willemsen
Copy link
Contributor

Updates jackson-core from 2.8.1 to 2.8.6

Among other things, this patches against the security vulnerability in jackson-core discussed here: FasterXML/jackson-core#322.

I don't think fast-serialization was directly vulnerable from the attack above, but this should appease automatic vulnerability scanners in dependant projects using maven,

@RuedigerMoeller RuedigerMoeller merged commit 4fbd80a into RuedigerMoeller:master Mar 9, 2017
@RuedigerMoeller
Copy link
Owner

thanks

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants