Home / Vulnerability Database / Java : Unsafe JSON deserialization (Jackson)
Java

Java : Unsafe JSON deserialization (Jackson)

Overview

Java code that deserializes JSON strings from untrusted sources can be vulnerable to a variety of attacks, including remote command execution (RCE), denial of service (DoS) and others.

MEDIUM

DerScanner Severity Score

Do you want to fix Java : Unsafe JSON deserialization (Jackson) in your application?

See also

Java

Java : Race condition

Java

Java : Text4Shell Vulnerability

Java

Java : JNI usage