docker.io/apache/gravitino-playground:hive-0.1.15 linux/amd64

docker.io/apache/gravitino-playground:hive-0.1.15 - Trivy安全扫描结果 扫描时间: 2026-06-24 20:29
全部漏洞信息
低危漏洞:103 中危漏洞:709 高危漏洞:1206 严重漏洞:581

系统OS: ubuntu 16.04 扫描引擎: Trivy 扫描时间: 2026-06-24 20:29

docker.io/apache/gravitino-playground:hive-0.1.15 (ubuntu 16.04) (ubuntu)
低危漏洞:0 中危漏洞:0 高危漏洞:0 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
Java (jar)
低危漏洞:103 中危漏洞:709 高危漏洞:1206 严重漏洞:581
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
com.fasterxml.jackson.core:jackson-databind CVE-2017-15095 严重 2.2.3 2.8.11, 2.9.4, 2.6.7.3, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-7525)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-15095

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:07

com.fasterxml.jackson.core:jackson-databind CVE-2017-17485 严重 2.2.3 2.9.4, 2.8.11, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-15095)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-17485

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-01-10 18:29 修改: 2026-06-17 01:10

com.fasterxml.jackson.core:jackson-databind CVE-2017-7525 严重 2.2.3 2.6.7.1, 2.7.9.1, 2.8.9 jackson-databind: Deserialization vulnerability via readValue method of ObjectMapper

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7525

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:24

com.fasterxml.jackson.core:jackson-databind CVE-2018-11307 严重 2.2.3 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: Potential information exfiltration with default typing, serialization gadget from MyBatis

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11307

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-07-09 16:15 修改: 2026-06-17 01:35

com.fasterxml.jackson.core:jackson-databind CVE-2018-14718 严重 2.2.3 2.9.7, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: arbitrary code execution in slf4j-ext class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14718

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14719 严重 2.2.3 2.9.7, 2.8.11.3, 2.7.9.5 jackson-databind: arbitrary code execution in blaze-ds-opt and blaze-ds-core classes

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14719

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-19362 严重 2.2.3 2.9.8, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: improper polymorphic deserialization in jboss-common-core class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-19362

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:49

com.fasterxml.jackson.core:jackson-databind CVE-2018-7489 严重 2.2.3 2.8.11.1, 2.9.5, 2.7.9.3, 2.6.7.5 jackson-databind: incomplete fix for CVE-2017-7525 permits unsafe serialization via c3p0 libraries

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-7489

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-02-26 15:29 修改: 2026-06-17 02:03

com.fasterxml.jackson.core:jackson-databind CVE-2019-14379 严重 2.2.3 2.9.9.2, 2.8.11.4, 2.7.9.6 jackson-databind: default typing mishandling leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14379

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-07-29 12:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14540 严重 2.2.3 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariConfig

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14540

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-16335 严重 2.2.3 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16335

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:22

com.fasterxml.jackson.core:jackson-databind CVE-2019-16942 严重 2.2.3 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.commons.dbcp.datasources.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16942

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16943 严重 2.2.3 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.p6spy.engine.spy.P6DataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16943

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17267 严重 2.2.3 2.9.10, 2.8.11.5 jackson-databind: Serialization gadgets in classes of the ehcache package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17267

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-07 00:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17531 严重 2.2.3 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.log4j.receivers.db.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17531

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-12 21:15 修改: 2026-06-17 02:24

com.fasterxml.jackson.core:jackson-databind CVE-2019-20330 严重 2.2.3 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.2 jackson-databind: lacks certain net.sf.ehcache blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20330

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-01-03 04:15 修改: 2026-06-17 02:30

com.fasterxml.jackson.core:jackson-databind CVE-2020-8840 严重 2.2.3 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.3 jackson-databind: Lacks certain xbean-reflect/JNDI blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8840

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-02-10 21:56 修改: 2026-06-17 03:27

com.fasterxml.jackson.core:jackson-databind CVE-2020-9547 严重 2.2.3 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in ibatis-sqlmap

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9547

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9548 严重 2.2.3 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in anteros-core

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9548

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2017-15095 严重 2.4.0 2.8.11, 2.9.4, 2.6.7.3, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-7525)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-15095

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:07

com.fasterxml.jackson.core:jackson-databind CVE-2017-15095 严重 2.4.0 2.8.11, 2.9.4, 2.6.7.3, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-7525)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-15095

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:07

com.fasterxml.jackson.core:jackson-databind CVE-2017-15095 严重 2.4.0 2.8.11, 2.9.4, 2.6.7.3, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-7525)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-15095

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:07

com.fasterxml.jackson.core:jackson-databind CVE-2017-15095 严重 2.4.0 2.8.11, 2.9.4, 2.6.7.3, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-7525)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-15095

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:07

com.fasterxml.jackson.core:jackson-databind CVE-2017-15095 严重 2.4.0 2.8.11, 2.9.4, 2.6.7.3, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-7525)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-15095

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:07

com.fasterxml.jackson.core:jackson-databind CVE-2017-15095 严重 2.4.0 2.8.11, 2.9.4, 2.6.7.3, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-7525)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-15095

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:07

com.fasterxml.jackson.core:jackson-databind CVE-2017-15095 严重 2.4.0 2.8.11, 2.9.4, 2.6.7.3, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-7525)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-15095

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:07

com.fasterxml.jackson.core:jackson-databind CVE-2017-15095 严重 2.4.0 2.8.11, 2.9.4, 2.6.7.3, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-7525)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-15095

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:07

com.fasterxml.jackson.core:jackson-databind CVE-2017-15095 严重 2.4.0 2.8.11, 2.9.4, 2.6.7.3, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-7525)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-15095

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:07

com.fasterxml.jackson.core:jackson-databind CVE-2017-15095 严重 2.4.0 2.8.11, 2.9.4, 2.6.7.3, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-7525)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-15095

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:07

com.fasterxml.jackson.core:jackson-databind CVE-2017-15095 严重 2.4.0 2.8.11, 2.9.4, 2.6.7.3, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-7525)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-15095

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:07

com.fasterxml.jackson.core:jackson-databind CVE-2017-15095 严重 2.4.0 2.8.11, 2.9.4, 2.6.7.3, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-7525)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-15095

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:07

com.fasterxml.jackson.core:jackson-databind CVE-2017-15095 严重 2.4.0 2.8.11, 2.9.4, 2.6.7.3, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-7525)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-15095

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:07

com.fasterxml.jackson.core:jackson-databind CVE-2017-17485 严重 2.4.0 2.9.4, 2.8.11, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-15095)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-17485

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-01-10 18:29 修改: 2026-06-17 01:10

com.fasterxml.jackson.core:jackson-databind CVE-2017-17485 严重 2.4.0 2.9.4, 2.8.11, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-15095)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-17485

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-01-10 18:29 修改: 2026-06-17 01:10

com.fasterxml.jackson.core:jackson-databind CVE-2017-17485 严重 2.4.0 2.9.4, 2.8.11, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-15095)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-17485

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-01-10 18:29 修改: 2026-06-17 01:10

com.fasterxml.jackson.core:jackson-databind CVE-2017-17485 严重 2.4.0 2.9.4, 2.8.11, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-15095)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-17485

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-01-10 18:29 修改: 2026-06-17 01:10

com.fasterxml.jackson.core:jackson-databind CVE-2017-17485 严重 2.4.0 2.9.4, 2.8.11, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-15095)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-17485

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-01-10 18:29 修改: 2026-06-17 01:10

com.fasterxml.jackson.core:jackson-databind CVE-2017-17485 严重 2.4.0 2.9.4, 2.8.11, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-15095)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-17485

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-01-10 18:29 修改: 2026-06-17 01:10

com.fasterxml.jackson.core:jackson-databind CVE-2017-17485 严重 2.4.0 2.9.4, 2.8.11, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-15095)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-17485

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-01-10 18:29 修改: 2026-06-17 01:10

com.fasterxml.jackson.core:jackson-databind CVE-2017-17485 严重 2.4.0 2.9.4, 2.8.11, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-15095)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-17485

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2018-01-10 18:29 修改: 2026-06-17 01:10

com.fasterxml.jackson.core:jackson-databind CVE-2017-17485 严重 2.4.0 2.9.4, 2.8.11, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-15095)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-17485

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2018-01-10 18:29 修改: 2026-06-17 01:10

com.fasterxml.jackson.core:jackson-databind CVE-2017-17485 严重 2.4.0 2.9.4, 2.8.11, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-15095)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-17485

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2018-01-10 18:29 修改: 2026-06-17 01:10

com.fasterxml.jackson.core:jackson-databind CVE-2017-17485 严重 2.4.0 2.9.4, 2.8.11, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-15095)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-17485

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2018-01-10 18:29 修改: 2026-06-17 01:10

com.fasterxml.jackson.core:jackson-databind CVE-2017-17485 严重 2.4.0 2.9.4, 2.8.11, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-15095)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-17485

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2018-01-10 18:29 修改: 2026-06-17 01:10

com.fasterxml.jackson.core:jackson-databind CVE-2017-17485 严重 2.4.0 2.9.4, 2.8.11, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-15095)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-17485

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2018-01-10 18:29 修改: 2026-06-17 01:10

com.fasterxml.jackson.core:jackson-databind CVE-2017-7525 严重 2.4.0 2.6.7.1, 2.7.9.1, 2.8.9 jackson-databind: Deserialization vulnerability via readValue method of ObjectMapper

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7525

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:24

com.fasterxml.jackson.core:jackson-databind CVE-2017-7525 严重 2.4.0 2.6.7.1, 2.7.9.1, 2.8.9 jackson-databind: Deserialization vulnerability via readValue method of ObjectMapper

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7525

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:24

com.fasterxml.jackson.core:jackson-databind CVE-2017-7525 严重 2.4.0 2.6.7.1, 2.7.9.1, 2.8.9 jackson-databind: Deserialization vulnerability via readValue method of ObjectMapper

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7525

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:24

com.fasterxml.jackson.core:jackson-databind CVE-2017-7525 严重 2.4.0 2.6.7.1, 2.7.9.1, 2.8.9 jackson-databind: Deserialization vulnerability via readValue method of ObjectMapper

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7525

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:24

com.fasterxml.jackson.core:jackson-databind CVE-2017-7525 严重 2.4.0 2.6.7.1, 2.7.9.1, 2.8.9 jackson-databind: Deserialization vulnerability via readValue method of ObjectMapper

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7525

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:24

com.fasterxml.jackson.core:jackson-databind CVE-2017-7525 严重 2.4.0 2.6.7.1, 2.7.9.1, 2.8.9 jackson-databind: Deserialization vulnerability via readValue method of ObjectMapper

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7525

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:24

com.fasterxml.jackson.core:jackson-databind CVE-2017-7525 严重 2.4.0 2.6.7.1, 2.7.9.1, 2.8.9 jackson-databind: Deserialization vulnerability via readValue method of ObjectMapper

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7525

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:24

com.fasterxml.jackson.core:jackson-databind CVE-2017-7525 严重 2.4.0 2.6.7.1, 2.7.9.1, 2.8.9 jackson-databind: Deserialization vulnerability via readValue method of ObjectMapper

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7525

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:24

com.fasterxml.jackson.core:jackson-databind CVE-2017-7525 严重 2.4.0 2.6.7.1, 2.7.9.1, 2.8.9 jackson-databind: Deserialization vulnerability via readValue method of ObjectMapper

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7525

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:24

com.fasterxml.jackson.core:jackson-databind CVE-2017-7525 严重 2.4.0 2.6.7.1, 2.7.9.1, 2.8.9 jackson-databind: Deserialization vulnerability via readValue method of ObjectMapper

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7525

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:24

com.fasterxml.jackson.core:jackson-databind CVE-2017-7525 严重 2.4.0 2.6.7.1, 2.7.9.1, 2.8.9 jackson-databind: Deserialization vulnerability via readValue method of ObjectMapper

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7525

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:24

com.fasterxml.jackson.core:jackson-databind CVE-2017-7525 严重 2.4.0 2.6.7.1, 2.7.9.1, 2.8.9 jackson-databind: Deserialization vulnerability via readValue method of ObjectMapper

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7525

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:24

com.fasterxml.jackson.core:jackson-databind CVE-2017-7525 严重 2.4.0 2.6.7.1, 2.7.9.1, 2.8.9 jackson-databind: Deserialization vulnerability via readValue method of ObjectMapper

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7525

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:24

com.fasterxml.jackson.core:jackson-databind CVE-2018-11307 严重 2.4.0 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: Potential information exfiltration with default typing, serialization gadget from MyBatis

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11307

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-07-09 16:15 修改: 2026-06-17 01:35

com.fasterxml.jackson.core:jackson-databind CVE-2018-11307 严重 2.4.0 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: Potential information exfiltration with default typing, serialization gadget from MyBatis

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11307

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-07-09 16:15 修改: 2026-06-17 01:35

com.fasterxml.jackson.core:jackson-databind CVE-2018-11307 严重 2.4.0 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: Potential information exfiltration with default typing, serialization gadget from MyBatis

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11307

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-07-09 16:15 修改: 2026-06-17 01:35

com.fasterxml.jackson.core:jackson-databind CVE-2018-11307 严重 2.4.0 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: Potential information exfiltration with default typing, serialization gadget from MyBatis

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11307

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-07-09 16:15 修改: 2026-06-17 01:35

com.fasterxml.jackson.core:jackson-databind CVE-2018-11307 严重 2.4.0 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: Potential information exfiltration with default typing, serialization gadget from MyBatis

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11307

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-07-09 16:15 修改: 2026-06-17 01:35

com.fasterxml.jackson.core:jackson-databind CVE-2018-11307 严重 2.4.0 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: Potential information exfiltration with default typing, serialization gadget from MyBatis

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11307

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-07-09 16:15 修改: 2026-06-17 01:35

com.fasterxml.jackson.core:jackson-databind CVE-2018-11307 严重 2.4.0 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: Potential information exfiltration with default typing, serialization gadget from MyBatis

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11307

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-07-09 16:15 修改: 2026-06-17 01:35

com.fasterxml.jackson.core:jackson-databind CVE-2018-11307 严重 2.4.0 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: Potential information exfiltration with default typing, serialization gadget from MyBatis

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11307

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-07-09 16:15 修改: 2026-06-17 01:35

com.fasterxml.jackson.core:jackson-databind CVE-2018-11307 严重 2.4.0 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: Potential information exfiltration with default typing, serialization gadget from MyBatis

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11307

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-07-09 16:15 修改: 2026-06-17 01:35

com.fasterxml.jackson.core:jackson-databind CVE-2018-11307 严重 2.4.0 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: Potential information exfiltration with default typing, serialization gadget from MyBatis

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11307

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-07-09 16:15 修改: 2026-06-17 01:35

com.fasterxml.jackson.core:jackson-databind CVE-2018-11307 严重 2.4.0 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: Potential information exfiltration with default typing, serialization gadget from MyBatis

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11307

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-07-09 16:15 修改: 2026-06-17 01:35

com.fasterxml.jackson.core:jackson-databind CVE-2018-11307 严重 2.4.0 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: Potential information exfiltration with default typing, serialization gadget from MyBatis

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11307

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2019-07-09 16:15 修改: 2026-06-17 01:35

com.fasterxml.jackson.core:jackson-databind CVE-2018-11307 严重 2.4.0 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: Potential information exfiltration with default typing, serialization gadget from MyBatis

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11307

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2019-07-09 16:15 修改: 2026-06-17 01:35

com.fasterxml.jackson.core:jackson-databind CVE-2018-14718 严重 2.4.0 2.9.7, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: arbitrary code execution in slf4j-ext class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14718

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14718 严重 2.4.0 2.9.7, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: arbitrary code execution in slf4j-ext class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14718

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14718 严重 2.4.0 2.9.7, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: arbitrary code execution in slf4j-ext class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14718

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14718 严重 2.4.0 2.9.7, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: arbitrary code execution in slf4j-ext class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14718

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14718 严重 2.4.0 2.9.7, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: arbitrary code execution in slf4j-ext class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14718

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14718 严重 2.4.0 2.9.7, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: arbitrary code execution in slf4j-ext class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14718

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14718 严重 2.4.0 2.9.7, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: arbitrary code execution in slf4j-ext class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14718

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14718 严重 2.4.0 2.9.7, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: arbitrary code execution in slf4j-ext class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14718

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14718 严重 2.4.0 2.9.7, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: arbitrary code execution in slf4j-ext class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14718

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14718 严重 2.4.0 2.9.7, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: arbitrary code execution in slf4j-ext class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14718

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14718 严重 2.4.0 2.9.7, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: arbitrary code execution in slf4j-ext class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14718

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14718 严重 2.4.0 2.9.7, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: arbitrary code execution in slf4j-ext class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14718

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14718 严重 2.4.0 2.9.7, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: arbitrary code execution in slf4j-ext class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14718

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14719 严重 2.4.0 2.9.7, 2.8.11.3, 2.7.9.5 jackson-databind: arbitrary code execution in blaze-ds-opt and blaze-ds-core classes

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14719

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14719 严重 2.4.0 2.9.7, 2.8.11.3, 2.7.9.5 jackson-databind: arbitrary code execution in blaze-ds-opt and blaze-ds-core classes

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14719

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14719 严重 2.4.0 2.9.7, 2.8.11.3, 2.7.9.5 jackson-databind: arbitrary code execution in blaze-ds-opt and blaze-ds-core classes

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14719

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14719 严重 2.4.0 2.9.7, 2.8.11.3, 2.7.9.5 jackson-databind: arbitrary code execution in blaze-ds-opt and blaze-ds-core classes

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14719

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14719 严重 2.4.0 2.9.7, 2.8.11.3, 2.7.9.5 jackson-databind: arbitrary code execution in blaze-ds-opt and blaze-ds-core classes

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14719

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14719 严重 2.4.0 2.9.7, 2.8.11.3, 2.7.9.5 jackson-databind: arbitrary code execution in blaze-ds-opt and blaze-ds-core classes

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14719

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14719 严重 2.4.0 2.9.7, 2.8.11.3, 2.7.9.5 jackson-databind: arbitrary code execution in blaze-ds-opt and blaze-ds-core classes

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14719

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14719 严重 2.4.0 2.9.7, 2.8.11.3, 2.7.9.5 jackson-databind: arbitrary code execution in blaze-ds-opt and blaze-ds-core classes

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14719

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14719 严重 2.4.0 2.9.7, 2.8.11.3, 2.7.9.5 jackson-databind: arbitrary code execution in blaze-ds-opt and blaze-ds-core classes

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14719

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14719 严重 2.4.0 2.9.7, 2.8.11.3, 2.7.9.5 jackson-databind: arbitrary code execution in blaze-ds-opt and blaze-ds-core classes

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14719

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14719 严重 2.4.0 2.9.7, 2.8.11.3, 2.7.9.5 jackson-databind: arbitrary code execution in blaze-ds-opt and blaze-ds-core classes

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14719

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14719 严重 2.4.0 2.9.7, 2.8.11.3, 2.7.9.5 jackson-databind: arbitrary code execution in blaze-ds-opt and blaze-ds-core classes

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14719

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14719 严重 2.4.0 2.9.7, 2.8.11.3, 2.7.9.5 jackson-databind: arbitrary code execution in blaze-ds-opt and blaze-ds-core classes

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14719

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-19362 严重 2.4.0 2.9.8, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: improper polymorphic deserialization in jboss-common-core class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-19362

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:49

com.fasterxml.jackson.core:jackson-databind CVE-2018-19362 严重 2.4.0 2.9.8, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: improper polymorphic deserialization in jboss-common-core class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-19362

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:49

com.fasterxml.jackson.core:jackson-databind CVE-2018-19362 严重 2.4.0 2.9.8, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: improper polymorphic deserialization in jboss-common-core class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-19362

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:49

com.fasterxml.jackson.core:jackson-databind CVE-2018-19362 严重 2.4.0 2.9.8, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: improper polymorphic deserialization in jboss-common-core class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-19362

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:49

com.fasterxml.jackson.core:jackson-databind CVE-2018-19362 严重 2.4.0 2.9.8, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: improper polymorphic deserialization in jboss-common-core class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-19362

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:49

com.fasterxml.jackson.core:jackson-databind CVE-2018-19362 严重 2.4.0 2.9.8, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: improper polymorphic deserialization in jboss-common-core class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-19362

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:49

com.fasterxml.jackson.core:jackson-databind CVE-2018-19362 严重 2.4.0 2.9.8, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: improper polymorphic deserialization in jboss-common-core class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-19362

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:49

com.fasterxml.jackson.core:jackson-databind CVE-2018-19362 严重 2.4.0 2.9.8, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: improper polymorphic deserialization in jboss-common-core class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-19362

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:49

com.fasterxml.jackson.core:jackson-databind CVE-2018-19362 严重 2.4.0 2.9.8, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: improper polymorphic deserialization in jboss-common-core class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-19362

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:49

com.fasterxml.jackson.core:jackson-databind CVE-2018-19362 严重 2.4.0 2.9.8, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: improper polymorphic deserialization in jboss-common-core class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-19362

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:49

com.fasterxml.jackson.core:jackson-databind CVE-2018-19362 严重 2.4.0 2.9.8, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: improper polymorphic deserialization in jboss-common-core class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-19362

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:49

com.fasterxml.jackson.core:jackson-databind CVE-2018-19362 严重 2.4.0 2.9.8, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: improper polymorphic deserialization in jboss-common-core class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-19362

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:49

com.fasterxml.jackson.core:jackson-databind CVE-2018-19362 严重 2.4.0 2.9.8, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: improper polymorphic deserialization in jboss-common-core class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-19362

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:49

com.fasterxml.jackson.core:jackson-databind CVE-2018-7489 严重 2.4.0 2.8.11.1, 2.9.5, 2.7.9.3, 2.6.7.5 jackson-databind: incomplete fix for CVE-2017-7525 permits unsafe serialization via c3p0 libraries

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-7489

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-02-26 15:29 修改: 2026-06-17 02:03

com.fasterxml.jackson.core:jackson-databind CVE-2018-7489 严重 2.4.0 2.8.11.1, 2.9.5, 2.7.9.3, 2.6.7.5 jackson-databind: incomplete fix for CVE-2017-7525 permits unsafe serialization via c3p0 libraries

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-7489

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-02-26 15:29 修改: 2026-06-17 02:03

com.fasterxml.jackson.core:jackson-databind CVE-2018-7489 严重 2.4.0 2.8.11.1, 2.9.5, 2.7.9.3, 2.6.7.5 jackson-databind: incomplete fix for CVE-2017-7525 permits unsafe serialization via c3p0 libraries

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-7489

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-02-26 15:29 修改: 2026-06-17 02:03

com.fasterxml.jackson.core:jackson-databind CVE-2018-7489 严重 2.4.0 2.8.11.1, 2.9.5, 2.7.9.3, 2.6.7.5 jackson-databind: incomplete fix for CVE-2017-7525 permits unsafe serialization via c3p0 libraries

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-7489

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-02-26 15:29 修改: 2026-06-17 02:03

com.fasterxml.jackson.core:jackson-databind CVE-2018-7489 严重 2.4.0 2.8.11.1, 2.9.5, 2.7.9.3, 2.6.7.5 jackson-databind: incomplete fix for CVE-2017-7525 permits unsafe serialization via c3p0 libraries

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-7489

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-02-26 15:29 修改: 2026-06-17 02:03

com.fasterxml.jackson.core:jackson-databind CVE-2018-7489 严重 2.4.0 2.8.11.1, 2.9.5, 2.7.9.3, 2.6.7.5 jackson-databind: incomplete fix for CVE-2017-7525 permits unsafe serialization via c3p0 libraries

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-7489

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-02-26 15:29 修改: 2026-06-17 02:03

com.fasterxml.jackson.core:jackson-databind CVE-2018-7489 严重 2.4.0 2.8.11.1, 2.9.5, 2.7.9.3, 2.6.7.5 jackson-databind: incomplete fix for CVE-2017-7525 permits unsafe serialization via c3p0 libraries

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-7489

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-02-26 15:29 修改: 2026-06-17 02:03

com.fasterxml.jackson.core:jackson-databind CVE-2018-7489 严重 2.4.0 2.8.11.1, 2.9.5, 2.7.9.3, 2.6.7.5 jackson-databind: incomplete fix for CVE-2017-7525 permits unsafe serialization via c3p0 libraries

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-7489

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2018-02-26 15:29 修改: 2026-06-17 02:03

com.fasterxml.jackson.core:jackson-databind CVE-2018-7489 严重 2.4.0 2.8.11.1, 2.9.5, 2.7.9.3, 2.6.7.5 jackson-databind: incomplete fix for CVE-2017-7525 permits unsafe serialization via c3p0 libraries

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-7489

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2018-02-26 15:29 修改: 2026-06-17 02:03

com.fasterxml.jackson.core:jackson-databind CVE-2018-7489 严重 2.4.0 2.8.11.1, 2.9.5, 2.7.9.3, 2.6.7.5 jackson-databind: incomplete fix for CVE-2017-7525 permits unsafe serialization via c3p0 libraries

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-7489

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2018-02-26 15:29 修改: 2026-06-17 02:03

com.fasterxml.jackson.core:jackson-databind CVE-2018-7489 严重 2.4.0 2.8.11.1, 2.9.5, 2.7.9.3, 2.6.7.5 jackson-databind: incomplete fix for CVE-2017-7525 permits unsafe serialization via c3p0 libraries

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-7489

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2018-02-26 15:29 修改: 2026-06-17 02:03

com.fasterxml.jackson.core:jackson-databind CVE-2018-7489 严重 2.4.0 2.8.11.1, 2.9.5, 2.7.9.3, 2.6.7.5 jackson-databind: incomplete fix for CVE-2017-7525 permits unsafe serialization via c3p0 libraries

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-7489

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2018-02-26 15:29 修改: 2026-06-17 02:03

com.fasterxml.jackson.core:jackson-databind CVE-2018-7489 严重 2.4.0 2.8.11.1, 2.9.5, 2.7.9.3, 2.6.7.5 jackson-databind: incomplete fix for CVE-2017-7525 permits unsafe serialization via c3p0 libraries

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-7489

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2018-02-26 15:29 修改: 2026-06-17 02:03

com.fasterxml.jackson.core:jackson-databind CVE-2019-14379 严重 2.4.0 2.9.9.2, 2.8.11.4, 2.7.9.6 jackson-databind: default typing mishandling leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14379

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-07-29 12:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14379 严重 2.4.0 2.9.9.2, 2.8.11.4, 2.7.9.6 jackson-databind: default typing mishandling leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14379

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-07-29 12:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14379 严重 2.4.0 2.9.9.2, 2.8.11.4, 2.7.9.6 jackson-databind: default typing mishandling leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14379

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-07-29 12:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14379 严重 2.4.0 2.9.9.2, 2.8.11.4, 2.7.9.6 jackson-databind: default typing mishandling leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14379

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-07-29 12:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14379 严重 2.4.0 2.9.9.2, 2.8.11.4, 2.7.9.6 jackson-databind: default typing mishandling leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14379

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-07-29 12:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14379 严重 2.4.0 2.9.9.2, 2.8.11.4, 2.7.9.6 jackson-databind: default typing mishandling leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14379

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-07-29 12:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14379 严重 2.4.0 2.9.9.2, 2.8.11.4, 2.7.9.6 jackson-databind: default typing mishandling leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14379

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-07-29 12:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14379 严重 2.4.0 2.9.9.2, 2.8.11.4, 2.7.9.6 jackson-databind: default typing mishandling leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14379

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-07-29 12:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14379 严重 2.4.0 2.9.9.2, 2.8.11.4, 2.7.9.6 jackson-databind: default typing mishandling leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14379

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-07-29 12:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14379 严重 2.4.0 2.9.9.2, 2.8.11.4, 2.7.9.6 jackson-databind: default typing mishandling leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14379

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-07-29 12:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14379 严重 2.4.0 2.9.9.2, 2.8.11.4, 2.7.9.6 jackson-databind: default typing mishandling leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14379

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-07-29 12:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14379 严重 2.4.0 2.9.9.2, 2.8.11.4, 2.7.9.6 jackson-databind: default typing mishandling leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14379

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2019-07-29 12:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14379 严重 2.4.0 2.9.9.2, 2.8.11.4, 2.7.9.6 jackson-databind: default typing mishandling leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14379

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2019-07-29 12:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14540 严重 2.4.0 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariConfig

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14540

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14540 严重 2.4.0 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariConfig

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14540

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14540 严重 2.4.0 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariConfig

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14540

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14540 严重 2.4.0 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariConfig

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14540

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14540 严重 2.4.0 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariConfig

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14540

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14540 严重 2.4.0 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariConfig

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14540

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14540 严重 2.4.0 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariConfig

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14540

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14540 严重 2.4.0 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariConfig

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14540

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14540 严重 2.4.0 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariConfig

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14540

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14540 严重 2.4.0 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariConfig

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14540

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14540 严重 2.4.0 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariConfig

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14540

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14540 严重 2.4.0 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariConfig

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14540

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14540 严重 2.4.0 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariConfig

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14540

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-16335 严重 2.4.0 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16335

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:22

com.fasterxml.jackson.core:jackson-databind CVE-2019-16335 严重 2.4.0 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16335

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:22

com.fasterxml.jackson.core:jackson-databind CVE-2019-16335 严重 2.4.0 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16335

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:22

com.fasterxml.jackson.core:jackson-databind CVE-2019-16335 严重 2.4.0 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16335

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:22

com.fasterxml.jackson.core:jackson-databind CVE-2019-16335 严重 2.4.0 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16335

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:22

com.fasterxml.jackson.core:jackson-databind CVE-2019-16335 严重 2.4.0 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16335

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:22

com.fasterxml.jackson.core:jackson-databind CVE-2019-16335 严重 2.4.0 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16335

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:22

com.fasterxml.jackson.core:jackson-databind CVE-2019-16335 严重 2.4.0 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16335

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:22

com.fasterxml.jackson.core:jackson-databind CVE-2019-16335 严重 2.4.0 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16335

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:22

com.fasterxml.jackson.core:jackson-databind CVE-2019-16335 严重 2.4.0 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16335

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:22

com.fasterxml.jackson.core:jackson-databind CVE-2019-16335 严重 2.4.0 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16335

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:22

com.fasterxml.jackson.core:jackson-databind CVE-2019-16335 严重 2.4.0 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16335

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:22

com.fasterxml.jackson.core:jackson-databind CVE-2019-16335 严重 2.4.0 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16335

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:22

com.fasterxml.jackson.core:jackson-databind CVE-2019-16942 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.commons.dbcp.datasources.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16942

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16942 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.commons.dbcp.datasources.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16942

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16942 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.commons.dbcp.datasources.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16942

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16942 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.commons.dbcp.datasources.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16942

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16942 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.commons.dbcp.datasources.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16942

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16942 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.commons.dbcp.datasources.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16942

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16942 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.commons.dbcp.datasources.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16942

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16942 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.commons.dbcp.datasources.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16942

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16942 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.commons.dbcp.datasources.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16942

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16942 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.commons.dbcp.datasources.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16942

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16942 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.commons.dbcp.datasources.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16942

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16942 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.commons.dbcp.datasources.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16942

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16942 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.commons.dbcp.datasources.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16942

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16943 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.p6spy.engine.spy.P6DataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16943

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16943 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.p6spy.engine.spy.P6DataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16943

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16943 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.p6spy.engine.spy.P6DataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16943

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16943 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.p6spy.engine.spy.P6DataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16943

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16943 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.p6spy.engine.spy.P6DataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16943

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16943 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.p6spy.engine.spy.P6DataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16943

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16943 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.p6spy.engine.spy.P6DataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16943

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16943 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.p6spy.engine.spy.P6DataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16943

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16943 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.p6spy.engine.spy.P6DataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16943

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16943 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.p6spy.engine.spy.P6DataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16943

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16943 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.p6spy.engine.spy.P6DataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16943

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16943 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.p6spy.engine.spy.P6DataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16943

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16943 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.p6spy.engine.spy.P6DataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16943

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17267 严重 2.4.0 2.9.10, 2.8.11.5 jackson-databind: Serialization gadgets in classes of the ehcache package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17267

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-10-07 00:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17267 严重 2.4.0 2.9.10, 2.8.11.5 jackson-databind: Serialization gadgets in classes of the ehcache package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17267

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-10-07 00:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17267 严重 2.4.0 2.9.10, 2.8.11.5 jackson-databind: Serialization gadgets in classes of the ehcache package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17267

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-07 00:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17267 严重 2.4.0 2.9.10, 2.8.11.5 jackson-databind: Serialization gadgets in classes of the ehcache package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17267

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-07 00:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17267 严重 2.4.0 2.9.10, 2.8.11.5 jackson-databind: Serialization gadgets in classes of the ehcache package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17267

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-07 00:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17267 严重 2.4.0 2.9.10, 2.8.11.5 jackson-databind: Serialization gadgets in classes of the ehcache package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17267

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-07 00:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17267 严重 2.4.0 2.9.10, 2.8.11.5 jackson-databind: Serialization gadgets in classes of the ehcache package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17267

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-07 00:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17267 严重 2.4.0 2.9.10, 2.8.11.5 jackson-databind: Serialization gadgets in classes of the ehcache package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17267

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-10-07 00:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17267 严重 2.4.0 2.9.10, 2.8.11.5 jackson-databind: Serialization gadgets in classes of the ehcache package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17267

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-10-07 00:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17267 严重 2.4.0 2.9.10, 2.8.11.5 jackson-databind: Serialization gadgets in classes of the ehcache package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17267

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-10-07 00:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17267 严重 2.4.0 2.9.10, 2.8.11.5 jackson-databind: Serialization gadgets in classes of the ehcache package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17267

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-10-07 00:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17267 严重 2.4.0 2.9.10, 2.8.11.5 jackson-databind: Serialization gadgets in classes of the ehcache package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17267

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2019-10-07 00:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17267 严重 2.4.0 2.9.10, 2.8.11.5 jackson-databind: Serialization gadgets in classes of the ehcache package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17267

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2019-10-07 00:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17531 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.log4j.receivers.db.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17531

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-10-12 21:15 修改: 2026-06-17 02:24

com.fasterxml.jackson.core:jackson-databind CVE-2019-17531 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.log4j.receivers.db.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17531

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-10-12 21:15 修改: 2026-06-17 02:24

com.fasterxml.jackson.core:jackson-databind CVE-2019-17531 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.log4j.receivers.db.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17531

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-12 21:15 修改: 2026-06-17 02:24

com.fasterxml.jackson.core:jackson-databind CVE-2019-17531 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.log4j.receivers.db.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17531

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-12 21:15 修改: 2026-06-17 02:24

com.fasterxml.jackson.core:jackson-databind CVE-2019-17531 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.log4j.receivers.db.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17531

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-12 21:15 修改: 2026-06-17 02:24

com.fasterxml.jackson.core:jackson-databind CVE-2019-17531 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.log4j.receivers.db.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17531

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-12 21:15 修改: 2026-06-17 02:24

com.fasterxml.jackson.core:jackson-databind CVE-2019-17531 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.log4j.receivers.db.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17531

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-12 21:15 修改: 2026-06-17 02:24

com.fasterxml.jackson.core:jackson-databind CVE-2019-17531 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.log4j.receivers.db.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17531

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-10-12 21:15 修改: 2026-06-17 02:24

com.fasterxml.jackson.core:jackson-databind CVE-2019-17531 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.log4j.receivers.db.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17531

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-10-12 21:15 修改: 2026-06-17 02:24

com.fasterxml.jackson.core:jackson-databind CVE-2019-17531 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.log4j.receivers.db.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17531

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-10-12 21:15 修改: 2026-06-17 02:24

com.fasterxml.jackson.core:jackson-databind CVE-2019-17531 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.log4j.receivers.db.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17531

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-10-12 21:15 修改: 2026-06-17 02:24

com.fasterxml.jackson.core:jackson-databind CVE-2019-17531 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.log4j.receivers.db.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17531

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2019-10-12 21:15 修改: 2026-06-17 02:24

com.fasterxml.jackson.core:jackson-databind CVE-2019-17531 严重 2.4.0 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.log4j.receivers.db.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17531

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2019-10-12 21:15 修改: 2026-06-17 02:24

com.fasterxml.jackson.core:jackson-databind CVE-2019-20330 严重 2.4.0 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.2 jackson-databind: lacks certain net.sf.ehcache blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20330

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-01-03 04:15 修改: 2026-06-17 02:30

com.fasterxml.jackson.core:jackson-databind CVE-2019-20330 严重 2.4.0 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.2 jackson-databind: lacks certain net.sf.ehcache blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20330

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-01-03 04:15 修改: 2026-06-17 02:30

com.fasterxml.jackson.core:jackson-databind CVE-2019-20330 严重 2.4.0 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.2 jackson-databind: lacks certain net.sf.ehcache blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20330

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-01-03 04:15 修改: 2026-06-17 02:30

com.fasterxml.jackson.core:jackson-databind CVE-2019-20330 严重 2.4.0 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.2 jackson-databind: lacks certain net.sf.ehcache blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20330

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-01-03 04:15 修改: 2026-06-17 02:30

com.fasterxml.jackson.core:jackson-databind CVE-2019-20330 严重 2.4.0 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.2 jackson-databind: lacks certain net.sf.ehcache blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20330

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-01-03 04:15 修改: 2026-06-17 02:30

com.fasterxml.jackson.core:jackson-databind CVE-2019-20330 严重 2.4.0 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.2 jackson-databind: lacks certain net.sf.ehcache blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20330

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-01-03 04:15 修改: 2026-06-17 02:30

com.fasterxml.jackson.core:jackson-databind CVE-2019-20330 严重 2.4.0 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.2 jackson-databind: lacks certain net.sf.ehcache blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20330

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-01-03 04:15 修改: 2026-06-17 02:30

com.fasterxml.jackson.core:jackson-databind CVE-2019-20330 严重 2.4.0 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.2 jackson-databind: lacks certain net.sf.ehcache blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20330

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-01-03 04:15 修改: 2026-06-17 02:30

com.fasterxml.jackson.core:jackson-databind CVE-2019-20330 严重 2.4.0 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.2 jackson-databind: lacks certain net.sf.ehcache blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20330

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-01-03 04:15 修改: 2026-06-17 02:30

com.fasterxml.jackson.core:jackson-databind CVE-2019-20330 严重 2.4.0 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.2 jackson-databind: lacks certain net.sf.ehcache blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20330

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-01-03 04:15 修改: 2026-06-17 02:30

com.fasterxml.jackson.core:jackson-databind CVE-2019-20330 严重 2.4.0 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.2 jackson-databind: lacks certain net.sf.ehcache blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20330

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-01-03 04:15 修改: 2026-06-17 02:30

com.fasterxml.jackson.core:jackson-databind CVE-2019-20330 严重 2.4.0 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.2 jackson-databind: lacks certain net.sf.ehcache blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20330

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2020-01-03 04:15 修改: 2026-06-17 02:30

com.fasterxml.jackson.core:jackson-databind CVE-2019-20330 严重 2.4.0 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.2 jackson-databind: lacks certain net.sf.ehcache blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20330

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2020-01-03 04:15 修改: 2026-06-17 02:30

com.fasterxml.jackson.core:jackson-databind CVE-2020-8840 严重 2.4.0 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.3 jackson-databind: Lacks certain xbean-reflect/JNDI blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8840

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-02-10 21:56 修改: 2026-06-17 03:27

com.fasterxml.jackson.core:jackson-databind CVE-2020-8840 严重 2.4.0 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.3 jackson-databind: Lacks certain xbean-reflect/JNDI blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8840

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-02-10 21:56 修改: 2026-06-17 03:27

com.fasterxml.jackson.core:jackson-databind CVE-2020-8840 严重 2.4.0 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.3 jackson-databind: Lacks certain xbean-reflect/JNDI blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8840

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-02-10 21:56 修改: 2026-06-17 03:27

com.fasterxml.jackson.core:jackson-databind CVE-2020-8840 严重 2.4.0 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.3 jackson-databind: Lacks certain xbean-reflect/JNDI blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8840

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-02-10 21:56 修改: 2026-06-17 03:27

com.fasterxml.jackson.core:jackson-databind CVE-2020-8840 严重 2.4.0 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.3 jackson-databind: Lacks certain xbean-reflect/JNDI blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8840

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-02-10 21:56 修改: 2026-06-17 03:27

com.fasterxml.jackson.core:jackson-databind CVE-2020-8840 严重 2.4.0 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.3 jackson-databind: Lacks certain xbean-reflect/JNDI blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8840

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-02-10 21:56 修改: 2026-06-17 03:27

com.fasterxml.jackson.core:jackson-databind CVE-2020-8840 严重 2.4.0 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.3 jackson-databind: Lacks certain xbean-reflect/JNDI blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8840

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-02-10 21:56 修改: 2026-06-17 03:27

com.fasterxml.jackson.core:jackson-databind CVE-2020-8840 严重 2.4.0 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.3 jackson-databind: Lacks certain xbean-reflect/JNDI blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8840

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-02-10 21:56 修改: 2026-06-17 03:27

com.fasterxml.jackson.core:jackson-databind CVE-2020-8840 严重 2.4.0 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.3 jackson-databind: Lacks certain xbean-reflect/JNDI blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8840

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-02-10 21:56 修改: 2026-06-17 03:27

com.fasterxml.jackson.core:jackson-databind CVE-2020-8840 严重 2.4.0 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.3 jackson-databind: Lacks certain xbean-reflect/JNDI blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8840

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-02-10 21:56 修改: 2026-06-17 03:27

com.fasterxml.jackson.core:jackson-databind CVE-2020-8840 严重 2.4.0 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.3 jackson-databind: Lacks certain xbean-reflect/JNDI blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8840

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-02-10 21:56 修改: 2026-06-17 03:27

com.fasterxml.jackson.core:jackson-databind CVE-2020-8840 严重 2.4.0 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.3 jackson-databind: Lacks certain xbean-reflect/JNDI blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8840

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2020-02-10 21:56 修改: 2026-06-17 03:27

com.fasterxml.jackson.core:jackson-databind CVE-2020-8840 严重 2.4.0 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.3 jackson-databind: Lacks certain xbean-reflect/JNDI blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8840

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2020-02-10 21:56 修改: 2026-06-17 03:27

com.fasterxml.jackson.core:jackson-databind CVE-2020-9547 严重 2.4.0 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in ibatis-sqlmap

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9547

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9547 严重 2.4.0 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in ibatis-sqlmap

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9547

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9547 严重 2.4.0 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in ibatis-sqlmap

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9547

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9547 严重 2.4.0 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in ibatis-sqlmap

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9547

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9547 严重 2.4.0 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in ibatis-sqlmap

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9547

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9547 严重 2.4.0 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in ibatis-sqlmap

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9547

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9547 严重 2.4.0 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in ibatis-sqlmap

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9547

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9547 严重 2.4.0 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in ibatis-sqlmap

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9547

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9547 严重 2.4.0 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in ibatis-sqlmap

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9547

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9547 严重 2.4.0 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in ibatis-sqlmap

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9547

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9547 严重 2.4.0 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in ibatis-sqlmap

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9547

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9547 严重 2.4.0 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in ibatis-sqlmap

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9547

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9547 严重 2.4.0 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in ibatis-sqlmap

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9547

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9548 严重 2.4.0 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in anteros-core

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9548

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9548 严重 2.4.0 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in anteros-core

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9548

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9548 严重 2.4.0 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in anteros-core

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9548

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9548 严重 2.4.0 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in anteros-core

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9548

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9548 严重 2.4.0 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in anteros-core

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9548

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9548 严重 2.4.0 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in anteros-core

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9548

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9548 严重 2.4.0 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in anteros-core

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9548

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9548 严重 2.4.0 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in anteros-core

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9548

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9548 严重 2.4.0 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in anteros-core

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9548

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9548 严重 2.4.0 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in anteros-core

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9548

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9548 严重 2.4.0 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in anteros-core

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9548

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9548 严重 2.4.0 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in anteros-core

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9548

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9548 严重 2.4.0 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in anteros-core

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9548

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2017-15095 严重 2.6.3 2.8.11, 2.9.4, 2.6.7.3, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-7525)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-15095

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:07

com.fasterxml.jackson.core:jackson-databind CVE-2017-15095 严重 2.6.3 2.8.11, 2.9.4, 2.6.7.3, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-7525)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-15095

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:07

com.fasterxml.jackson.core:jackson-databind CVE-2017-17485 严重 2.6.3 2.9.4, 2.8.11, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-15095)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-17485

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-01-10 18:29 修改: 2026-06-17 01:10

com.fasterxml.jackson.core:jackson-databind CVE-2017-17485 严重 2.6.3 2.9.4, 2.8.11, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-15095)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-17485

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-01-10 18:29 修改: 2026-06-17 01:10

com.fasterxml.jackson.core:jackson-databind CVE-2017-7525 严重 2.6.3 2.6.7.1, 2.7.9.1, 2.8.9 jackson-databind: Deserialization vulnerability via readValue method of ObjectMapper

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7525

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:24

com.fasterxml.jackson.core:jackson-databind CVE-2017-7525 严重 2.6.3 2.6.7.1, 2.7.9.1, 2.8.9 jackson-databind: Deserialization vulnerability via readValue method of ObjectMapper

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7525

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:24

com.fasterxml.jackson.core:jackson-databind CVE-2018-11307 严重 2.6.3 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: Potential information exfiltration with default typing, serialization gadget from MyBatis

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11307

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-07-09 16:15 修改: 2026-06-17 01:35

com.fasterxml.jackson.core:jackson-databind CVE-2018-11307 严重 2.6.3 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: Potential information exfiltration with default typing, serialization gadget from MyBatis

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11307

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-07-09 16:15 修改: 2026-06-17 01:35

com.fasterxml.jackson.core:jackson-databind CVE-2018-14718 严重 2.6.3 2.9.7, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: arbitrary code execution in slf4j-ext class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14718

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14718 严重 2.6.3 2.9.7, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: arbitrary code execution in slf4j-ext class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14718

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14719 严重 2.6.3 2.9.7, 2.8.11.3, 2.7.9.5 jackson-databind: arbitrary code execution in blaze-ds-opt and blaze-ds-core classes

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14719

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14719 严重 2.6.3 2.9.7, 2.8.11.3, 2.7.9.5 jackson-databind: arbitrary code execution in blaze-ds-opt and blaze-ds-core classes

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14719

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-19362 严重 2.6.3 2.9.8, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: improper polymorphic deserialization in jboss-common-core class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-19362

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:49

com.fasterxml.jackson.core:jackson-databind CVE-2018-19362 严重 2.6.3 2.9.8, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: improper polymorphic deserialization in jboss-common-core class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-19362

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:49

com.fasterxml.jackson.core:jackson-databind CVE-2018-7489 严重 2.6.3 2.8.11.1, 2.9.5, 2.7.9.3, 2.6.7.5 jackson-databind: incomplete fix for CVE-2017-7525 permits unsafe serialization via c3p0 libraries

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-7489

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-02-26 15:29 修改: 2026-06-17 02:03

com.fasterxml.jackson.core:jackson-databind CVE-2018-7489 严重 2.6.3 2.8.11.1, 2.9.5, 2.7.9.3, 2.6.7.5 jackson-databind: incomplete fix for CVE-2017-7525 permits unsafe serialization via c3p0 libraries

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-7489

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-02-26 15:29 修改: 2026-06-17 02:03

com.fasterxml.jackson.core:jackson-databind CVE-2019-14379 严重 2.6.3 2.9.9.2, 2.8.11.4, 2.7.9.6 jackson-databind: default typing mishandling leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14379

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-07-29 12:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14379 严重 2.6.3 2.9.9.2, 2.8.11.4, 2.7.9.6 jackson-databind: default typing mishandling leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14379

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-07-29 12:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14540 严重 2.6.3 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariConfig

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14540

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14540 严重 2.6.3 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariConfig

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14540

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-16335 严重 2.6.3 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16335

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:22

com.fasterxml.jackson.core:jackson-databind CVE-2019-16335 严重 2.6.3 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16335

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:22

com.fasterxml.jackson.core:jackson-databind CVE-2019-16942 严重 2.6.3 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.commons.dbcp.datasources.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16942

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16942 严重 2.6.3 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.commons.dbcp.datasources.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16942

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16943 严重 2.6.3 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.p6spy.engine.spy.P6DataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16943

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16943 严重 2.6.3 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.p6spy.engine.spy.P6DataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16943

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17267 严重 2.6.3 2.9.10, 2.8.11.5 jackson-databind: Serialization gadgets in classes of the ehcache package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17267

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-10-07 00:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17267 严重 2.6.3 2.9.10, 2.8.11.5 jackson-databind: Serialization gadgets in classes of the ehcache package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17267

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-10-07 00:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17531 严重 2.6.3 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.log4j.receivers.db.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17531

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-10-12 21:15 修改: 2026-06-17 02:24

com.fasterxml.jackson.core:jackson-databind CVE-2019-17531 严重 2.6.3 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.log4j.receivers.db.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17531

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-10-12 21:15 修改: 2026-06-17 02:24

com.fasterxml.jackson.core:jackson-databind CVE-2019-20330 严重 2.6.3 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.2 jackson-databind: lacks certain net.sf.ehcache blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20330

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-01-03 04:15 修改: 2026-06-17 02:30

com.fasterxml.jackson.core:jackson-databind CVE-2019-20330 严重 2.6.3 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.2 jackson-databind: lacks certain net.sf.ehcache blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20330

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-01-03 04:15 修改: 2026-06-17 02:30

com.fasterxml.jackson.core:jackson-databind CVE-2020-8840 严重 2.6.3 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.3 jackson-databind: Lacks certain xbean-reflect/JNDI blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8840

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-02-10 21:56 修改: 2026-06-17 03:27

com.fasterxml.jackson.core:jackson-databind CVE-2020-8840 严重 2.6.3 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.3 jackson-databind: Lacks certain xbean-reflect/JNDI blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8840

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-02-10 21:56 修改: 2026-06-17 03:27

com.fasterxml.jackson.core:jackson-databind CVE-2020-9547 严重 2.6.3 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in ibatis-sqlmap

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9547

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9547 严重 2.6.3 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in ibatis-sqlmap

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9547

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9548 严重 2.6.3 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in anteros-core

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9548

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9548 严重 2.6.3 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in anteros-core

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9548

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2017-15095 严重 2.6.5 2.8.11, 2.9.4, 2.6.7.3, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-7525)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-15095

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:07

com.fasterxml.jackson.core:jackson-databind CVE-2017-15095 严重 2.6.5 2.8.11, 2.9.4, 2.6.7.3, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-7525)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-15095

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:07

com.fasterxml.jackson.core:jackson-databind CVE-2017-15095 严重 2.6.5 2.8.11, 2.9.4, 2.6.7.3, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-7525)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-15095

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:07

com.fasterxml.jackson.core:jackson-databind CVE-2017-17485 严重 2.6.5 2.9.4, 2.8.11, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-15095)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-17485

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-01-10 18:29 修改: 2026-06-17 01:10

com.fasterxml.jackson.core:jackson-databind CVE-2017-17485 严重 2.6.5 2.9.4, 2.8.11, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-15095)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-17485

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-01-10 18:29 修改: 2026-06-17 01:10

com.fasterxml.jackson.core:jackson-databind CVE-2017-17485 严重 2.6.5 2.9.4, 2.8.11, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-15095)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-17485

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-01-10 18:29 修改: 2026-06-17 01:10

com.fasterxml.jackson.core:jackson-databind CVE-2017-7525 严重 2.6.5 2.6.7.1, 2.7.9.1, 2.8.9 jackson-databind: Deserialization vulnerability via readValue method of ObjectMapper

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7525

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:24

com.fasterxml.jackson.core:jackson-databind CVE-2017-7525 严重 2.6.5 2.6.7.1, 2.7.9.1, 2.8.9 jackson-databind: Deserialization vulnerability via readValue method of ObjectMapper

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7525

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:24

com.fasterxml.jackson.core:jackson-databind CVE-2017-7525 严重 2.6.5 2.6.7.1, 2.7.9.1, 2.8.9 jackson-databind: Deserialization vulnerability via readValue method of ObjectMapper

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7525

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:24

com.fasterxml.jackson.core:jackson-databind CVE-2018-11307 严重 2.6.5 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: Potential information exfiltration with default typing, serialization gadget from MyBatis

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11307

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-07-09 16:15 修改: 2026-06-17 01:35

com.fasterxml.jackson.core:jackson-databind CVE-2018-11307 严重 2.6.5 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: Potential information exfiltration with default typing, serialization gadget from MyBatis

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11307

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-07-09 16:15 修改: 2026-06-17 01:35

com.fasterxml.jackson.core:jackson-databind CVE-2018-11307 严重 2.6.5 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: Potential information exfiltration with default typing, serialization gadget from MyBatis

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11307

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-07-09 16:15 修改: 2026-06-17 01:35

com.fasterxml.jackson.core:jackson-databind CVE-2018-14718 严重 2.6.5 2.9.7, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: arbitrary code execution in slf4j-ext class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14718

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14718 严重 2.6.5 2.9.7, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: arbitrary code execution in slf4j-ext class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14718

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14718 严重 2.6.5 2.9.7, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: arbitrary code execution in slf4j-ext class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14718

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14719 严重 2.6.5 2.9.7, 2.8.11.3, 2.7.9.5 jackson-databind: arbitrary code execution in blaze-ds-opt and blaze-ds-core classes

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14719

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14719 严重 2.6.5 2.9.7, 2.8.11.3, 2.7.9.5 jackson-databind: arbitrary code execution in blaze-ds-opt and blaze-ds-core classes

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14719

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14719 严重 2.6.5 2.9.7, 2.8.11.3, 2.7.9.5 jackson-databind: arbitrary code execution in blaze-ds-opt and blaze-ds-core classes

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14719

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-19362 严重 2.6.5 2.9.8, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: improper polymorphic deserialization in jboss-common-core class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-19362

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:49

com.fasterxml.jackson.core:jackson-databind CVE-2018-19362 严重 2.6.5 2.9.8, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: improper polymorphic deserialization in jboss-common-core class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-19362

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:49

com.fasterxml.jackson.core:jackson-databind CVE-2018-19362 严重 2.6.5 2.9.8, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: improper polymorphic deserialization in jboss-common-core class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-19362

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:49

com.fasterxml.jackson.core:jackson-databind CVE-2018-7489 严重 2.6.5 2.8.11.1, 2.9.5, 2.7.9.3, 2.6.7.5 jackson-databind: incomplete fix for CVE-2017-7525 permits unsafe serialization via c3p0 libraries

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-7489

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-02-26 15:29 修改: 2026-06-17 02:03

com.fasterxml.jackson.core:jackson-databind CVE-2018-7489 严重 2.6.5 2.8.11.1, 2.9.5, 2.7.9.3, 2.6.7.5 jackson-databind: incomplete fix for CVE-2017-7525 permits unsafe serialization via c3p0 libraries

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-7489

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-02-26 15:29 修改: 2026-06-17 02:03

com.fasterxml.jackson.core:jackson-databind CVE-2018-7489 严重 2.6.5 2.8.11.1, 2.9.5, 2.7.9.3, 2.6.7.5 jackson-databind: incomplete fix for CVE-2017-7525 permits unsafe serialization via c3p0 libraries

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-7489

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-02-26 15:29 修改: 2026-06-17 02:03

com.fasterxml.jackson.core:jackson-databind CVE-2019-14379 严重 2.6.5 2.9.9.2, 2.8.11.4, 2.7.9.6 jackson-databind: default typing mishandling leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14379

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-07-29 12:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14379 严重 2.6.5 2.9.9.2, 2.8.11.4, 2.7.9.6 jackson-databind: default typing mishandling leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14379

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-07-29 12:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14379 严重 2.6.5 2.9.9.2, 2.8.11.4, 2.7.9.6 jackson-databind: default typing mishandling leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14379

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-07-29 12:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14540 严重 2.6.5 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariConfig

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14540

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14540 严重 2.6.5 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariConfig

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14540

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14540 严重 2.6.5 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariConfig

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14540

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-16335 严重 2.6.5 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16335

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:22

com.fasterxml.jackson.core:jackson-databind CVE-2019-16335 严重 2.6.5 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16335

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:22

com.fasterxml.jackson.core:jackson-databind CVE-2019-16335 严重 2.6.5 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16335

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:22

com.fasterxml.jackson.core:jackson-databind CVE-2019-16942 严重 2.6.5 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.commons.dbcp.datasources.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16942

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16942 严重 2.6.5 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.commons.dbcp.datasources.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16942

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16942 严重 2.6.5 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.commons.dbcp.datasources.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16942

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16943 严重 2.6.5 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.p6spy.engine.spy.P6DataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16943

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16943 严重 2.6.5 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.p6spy.engine.spy.P6DataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16943

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16943 严重 2.6.5 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.p6spy.engine.spy.P6DataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16943

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17267 严重 2.6.5 2.9.10, 2.8.11.5 jackson-databind: Serialization gadgets in classes of the ehcache package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17267

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-10-07 00:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17267 严重 2.6.5 2.9.10, 2.8.11.5 jackson-databind: Serialization gadgets in classes of the ehcache package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17267

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-10-07 00:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17267 严重 2.6.5 2.9.10, 2.8.11.5 jackson-databind: Serialization gadgets in classes of the ehcache package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17267

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-10-07 00:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17531 严重 2.6.5 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.log4j.receivers.db.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17531

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-10-12 21:15 修改: 2026-06-17 02:24

com.fasterxml.jackson.core:jackson-databind CVE-2019-17531 严重 2.6.5 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.log4j.receivers.db.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17531

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-10-12 21:15 修改: 2026-06-17 02:24

com.fasterxml.jackson.core:jackson-databind CVE-2019-17531 严重 2.6.5 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.log4j.receivers.db.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17531

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-10-12 21:15 修改: 2026-06-17 02:24

com.fasterxml.jackson.core:jackson-databind CVE-2019-20330 严重 2.6.5 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.2 jackson-databind: lacks certain net.sf.ehcache blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20330

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-01-03 04:15 修改: 2026-06-17 02:30

com.fasterxml.jackson.core:jackson-databind CVE-2019-20330 严重 2.6.5 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.2 jackson-databind: lacks certain net.sf.ehcache blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20330

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-01-03 04:15 修改: 2026-06-17 02:30

com.fasterxml.jackson.core:jackson-databind CVE-2019-20330 严重 2.6.5 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.2 jackson-databind: lacks certain net.sf.ehcache blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20330

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-01-03 04:15 修改: 2026-06-17 02:30

com.fasterxml.jackson.core:jackson-databind CVE-2020-8840 严重 2.6.5 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.3 jackson-databind: Lacks certain xbean-reflect/JNDI blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8840

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-02-10 21:56 修改: 2026-06-17 03:27

com.fasterxml.jackson.core:jackson-databind CVE-2020-8840 严重 2.6.5 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.3 jackson-databind: Lacks certain xbean-reflect/JNDI blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8840

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-02-10 21:56 修改: 2026-06-17 03:27

com.fasterxml.jackson.core:jackson-databind CVE-2020-8840 严重 2.6.5 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.3 jackson-databind: Lacks certain xbean-reflect/JNDI blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8840

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-02-10 21:56 修改: 2026-06-17 03:27

com.fasterxml.jackson.core:jackson-databind CVE-2020-9547 严重 2.6.5 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in ibatis-sqlmap

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9547

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9547 严重 2.6.5 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in ibatis-sqlmap

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9547

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9547 严重 2.6.5 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in ibatis-sqlmap

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9547

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9548 严重 2.6.5 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in anteros-core

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9548

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9548 严重 2.6.5 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in anteros-core

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9548

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9548 严重 2.6.5 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in anteros-core

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9548

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2017-15095 严重 2.6.7.2 2.8.11, 2.9.4, 2.6.7.3, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-7525)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-15095

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2018-02-06 15:29 修改: 2026-06-17 01:07

com.fasterxml.jackson.core:jackson-databind CVE-2017-17485 严重 2.6.7.2 2.9.4, 2.8.11, 2.7.9.2 jackson-databind: Unsafe deserialization due to incomplete black list (incomplete fix for CVE-2017-15095)

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-17485

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2018-01-10 18:29 修改: 2026-06-17 01:10

com.fasterxml.jackson.core:jackson-databind CVE-2018-11307 严重 2.6.7.2 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: Potential information exfiltration with default typing, serialization gadget from MyBatis

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11307

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-07-09 16:15 修改: 2026-06-17 01:35

com.fasterxml.jackson.core:jackson-databind CVE-2018-14718 严重 2.6.7.2 2.9.7, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: arbitrary code execution in slf4j-ext class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14718

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14719 严重 2.6.7.2 2.9.7, 2.8.11.3, 2.7.9.5 jackson-databind: arbitrary code execution in blaze-ds-opt and blaze-ds-core classes

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14719

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-19362 严重 2.6.7.2 2.9.8, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: improper polymorphic deserialization in jboss-common-core class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-19362

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:49

com.fasterxml.jackson.core:jackson-databind CVE-2018-7489 严重 2.6.7.2 2.8.11.1, 2.9.5, 2.7.9.3, 2.6.7.5 jackson-databind: incomplete fix for CVE-2017-7525 permits unsafe serialization via c3p0 libraries

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-7489

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2018-02-26 15:29 修改: 2026-06-17 02:03

com.fasterxml.jackson.core:jackson-databind CVE-2019-14379 严重 2.6.7.2 2.9.9.2, 2.8.11.4, 2.7.9.6 jackson-databind: default typing mishandling leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14379

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-07-29 12:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14540 严重 2.6.7.2 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariConfig

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14540

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-16335 严重 2.6.7.2 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16335

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:22

com.fasterxml.jackson.core:jackson-databind CVE-2019-16942 严重 2.6.7.2 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.commons.dbcp.datasources.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16942

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16943 严重 2.6.7.2 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.p6spy.engine.spy.P6DataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16943

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17267 严重 2.6.7.2 2.9.10, 2.8.11.5 jackson-databind: Serialization gadgets in classes of the ehcache package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17267

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-10-07 00:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17531 严重 2.6.7.2 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.log4j.receivers.db.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17531

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-10-12 21:15 修改: 2026-06-17 02:24

com.fasterxml.jackson.core:jackson-databind CVE-2019-20330 严重 2.6.7.2 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.2 jackson-databind: lacks certain net.sf.ehcache blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20330

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-01-03 04:15 修改: 2026-06-17 02:30

com.fasterxml.jackson.core:jackson-databind CVE-2020-8840 严重 2.6.7.2 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.3 jackson-databind: Lacks certain xbean-reflect/JNDI blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8840

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-02-10 21:56 修改: 2026-06-17 03:27

com.fasterxml.jackson.core:jackson-databind CVE-2020-9547 严重 2.6.7.2 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in ibatis-sqlmap

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9547

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9548 严重 2.6.7.2 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in anteros-core

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9548

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2018-11307 严重 2.9.4 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: Potential information exfiltration with default typing, serialization gadget from MyBatis

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11307

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-07-09 16:15 修改: 2026-06-17 01:35

com.fasterxml.jackson.core:jackson-databind CVE-2018-14718 严重 2.9.4 2.9.7, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: arbitrary code execution in slf4j-ext class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14718

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14719 严重 2.9.4 2.9.7, 2.8.11.3, 2.7.9.5 jackson-databind: arbitrary code execution in blaze-ds-opt and blaze-ds-core classes

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14719

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14720 严重 2.9.4 2.9.7, 2.8.11.3, 2.7.9.5 jackson-databind: exfiltration/XXE in some JDK classes

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14720

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-14721 严重 2.9.4 2.9.7, 2.8.11.3, 2.7.9.5 jackson-databind: server-side request forgery (SSRF) in axis2-jaxws class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-14721

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:41

com.fasterxml.jackson.core:jackson-databind CVE-2018-19360 严重 2.9.4 2.9.8, 2.8.11.3, 2.7.9.5 jackson-databind: improper polymorphic deserialization in axis2-transport-jms class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-19360

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:49

com.fasterxml.jackson.core:jackson-databind CVE-2018-19361 严重 2.9.4 2.7.9.5, 2.9.8, 2.8.11.3 jackson-databind: improper polymorphic deserialization in openjpa class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-19361

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:49

com.fasterxml.jackson.core:jackson-databind CVE-2018-19362 严重 2.9.4 2.9.8, 2.8.11.3, 2.7.9.5, 2.6.7.3 jackson-databind: improper polymorphic deserialization in jboss-common-core class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-19362

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-01-02 18:29 修改: 2026-06-17 01:49

com.fasterxml.jackson.core:jackson-databind CVE-2018-7489 严重 2.9.4 2.8.11.1, 2.9.5, 2.7.9.3, 2.6.7.5 jackson-databind: incomplete fix for CVE-2017-7525 permits unsafe serialization via c3p0 libraries

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-7489

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-02-26 15:29 修改: 2026-06-17 02:03

com.fasterxml.jackson.core:jackson-databind CVE-2019-14379 严重 2.9.4 2.9.9.2, 2.8.11.4, 2.7.9.6 jackson-databind: default typing mishandling leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14379

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-07-29 12:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14540 严重 2.9.4 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariConfig

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14540

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-16335 严重 2.9.4 2.9.10, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.zaxxer.hikari.HikariDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16335

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-09-15 22:15 修改: 2026-06-17 02:22

com.fasterxml.jackson.core:jackson-databind CVE-2019-16942 严重 2.9.4 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.commons.dbcp.datasources.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16942

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-16943 严重 2.9.4 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in com.p6spy.engine.spy.P6DataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16943

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-10-01 17:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17267 严重 2.9.4 2.9.10, 2.8.11.5 jackson-databind: Serialization gadgets in classes of the ehcache package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17267

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-10-07 00:15 修改: 2026-06-17 02:23

com.fasterxml.jackson.core:jackson-databind CVE-2019-17531 严重 2.9.4 2.9.10.1, 2.8.11.5, 2.6.7.3 jackson-databind: Serialization gadgets in org.apache.log4j.receivers.db.*

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17531

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-10-12 21:15 修改: 2026-06-17 02:24

com.fasterxml.jackson.core:jackson-databind CVE-2019-20330 严重 2.9.4 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.2 jackson-databind: lacks certain net.sf.ehcache blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20330

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-01-03 04:15 修改: 2026-06-17 02:30

com.fasterxml.jackson.core:jackson-databind CVE-2020-8840 严重 2.9.4 2.6.7.4, 2.7.9.7, 2.8.11.5, 2.9.10.3 jackson-databind: Lacks certain xbean-reflect/JNDI blocking

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8840

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-02-10 21:56 修改: 2026-06-17 03:27

com.fasterxml.jackson.core:jackson-databind CVE-2020-9546 严重 2.9.4 2.9.10.4 jackson-databind: Serialization gadgets in shaded-hikari-config

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9546

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9547 严重 2.9.4 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in ibatis-sqlmap

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9547

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-9548 严重 2.9.4 2.9.10.4, 2.8.11.6, 2.7.9.7 jackson-databind: Serialization gadgets in anteros-core

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9548

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-03-02 04:15 修改: 2026-06-17 03:28

com.jamesmurty.utils:java-xmlbuilder CVE-2014-125087 严重 0.4 1.2 java-xmlbuilder: XMLBuilder2 is vulnerable to XML External Entity (XXE) injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2014-125087

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-02-19 17:15 修改: 2024-11-21 02:03

com.jamesmurty.utils:java-xmlbuilder CVE-2014-125087 严重 0.4 1.2 java-xmlbuilder: XMLBuilder2 is vulnerable to XML External Entity (XXE) injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2014-125087

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-02-19 17:15 修改: 2024-11-21 02:03

com.nimbusds:nimbus-jose-jwt CVE-2019-17195 严重 4.41.1 7.9 nimbus-jose-jwt: Uncaught exceptions while parsing a JWT

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17195

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-10-15 14:15 修改: 2026-06-17 02:23

io.netty:netty CVE-2019-20444 严重 3.10.4.Final 4.0.0 netty: HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20444

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty CVE-2019-20444 严重 3.10.5.Final 4.0.0 netty: HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20444

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty CVE-2019-20444 严重 3.10.6.Final 4.0.0 netty: HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20444

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty CVE-2019-20444 严重 3.10.6.Final 4.0.0 netty: HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20444

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty CVE-2019-20444 严重 3.10.6.Final 4.0.0 netty: HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20444

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty CVE-2019-20444 严重 3.10.6.Final 4.0.0 netty: HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20444

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty CVE-2019-20444 严重 3.10.6.Final 4.0.0 netty: HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20444

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty CVE-2019-20444 严重 3.6.2.Final 4.0.0 netty: HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20444

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty CVE-2019-20444 严重 3.6.2.Final 4.0.0 netty: HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20444

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty CVE-2019-20444 严重 3.6.2.Final 4.0.0 netty: HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20444

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty CVE-2019-20444 严重 3.6.2.Final 4.0.0 netty: HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20444

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty CVE-2019-20444 严重 3.6.2.Final 4.0.0 netty: HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20444

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty CVE-2019-20444 严重 3.6.2.Final 4.0.0 netty: HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20444

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty CVE-2019-20444 严重 3.6.2.Final 4.0.0 netty: HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20444

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty CVE-2019-20444 严重 3.6.2.Final 4.0.0 netty: HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20444

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty-codec-http CVE-2019-20444 严重 4.0.52.Final 4.1.44 netty: HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20444

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty-codec-http CVE-2019-20444 严重 4.1.17.Final 4.1.44 netty: HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20444

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty-codec-http CVE-2019-20444 严重 4.1.42.Final 4.1.44 netty: HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20444

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

log4j:log4j CVE-2019-17571 严重 1.2.15 log4j: deserialization of untrusted data in SocketServer

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17571

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2019-12-20 17:15 修改: 2026-06-17 02:24

log4j:log4j CVE-2022-23305 严重 1.2.15 log4j: SQL injection in Log4j 1.x when application is configured to use JDBCAppender

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23305

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23307 严重 1.2.15 log4j: Unsafe deserialization flaw in Chainsaw log viewer

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23307

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2019-17571 严重 1.2.17 log4j: deserialization of untrusted data in SocketServer

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17571

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-12-20 17:15 修改: 2026-06-17 02:24

log4j:log4j CVE-2019-17571 严重 1.2.17 log4j: deserialization of untrusted data in SocketServer

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17571

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-12-20 17:15 修改: 2026-06-17 02:24

log4j:log4j CVE-2019-17571 严重 1.2.17 log4j: deserialization of untrusted data in SocketServer

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17571

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-12-20 17:15 修改: 2026-06-17 02:24

log4j:log4j CVE-2019-17571 严重 1.2.17 log4j: deserialization of untrusted data in SocketServer

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17571

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-12-20 17:15 修改: 2026-06-17 02:24

log4j:log4j CVE-2019-17571 严重 1.2.17 log4j: deserialization of untrusted data in SocketServer

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17571

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-12-20 17:15 修改: 2026-06-17 02:24

log4j:log4j CVE-2019-17571 严重 1.2.17 log4j: deserialization of untrusted data in SocketServer

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17571

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-12-20 17:15 修改: 2026-06-17 02:24

log4j:log4j CVE-2019-17571 严重 1.2.17 log4j: deserialization of untrusted data in SocketServer

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17571

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-12-20 17:15 修改: 2026-06-17 02:24

log4j:log4j CVE-2019-17571 严重 1.2.17 log4j: deserialization of untrusted data in SocketServer

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17571

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-12-20 17:15 修改: 2026-06-17 02:24

log4j:log4j CVE-2019-17571 严重 1.2.17 log4j: deserialization of untrusted data in SocketServer

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17571

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-12-20 17:15 修改: 2026-06-17 02:24

log4j:log4j CVE-2019-17571 严重 1.2.17 log4j: deserialization of untrusted data in SocketServer

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17571

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-12-20 17:15 修改: 2026-06-17 02:24

log4j:log4j CVE-2019-17571 严重 1.2.17 log4j: deserialization of untrusted data in SocketServer

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17571

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2019-12-20 17:15 修改: 2026-06-17 02:24

log4j:log4j CVE-2019-17571 严重 1.2.17 log4j: deserialization of untrusted data in SocketServer

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-17571

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2019-12-20 17:15 修改: 2026-06-17 02:24

log4j:log4j CVE-2022-23305 严重 1.2.17 log4j: SQL injection in Log4j 1.x when application is configured to use JDBCAppender

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23305

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23305 严重 1.2.17 log4j: SQL injection in Log4j 1.x when application is configured to use JDBCAppender

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23305

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23305 严重 1.2.17 log4j: SQL injection in Log4j 1.x when application is configured to use JDBCAppender

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23305

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23305 严重 1.2.17 log4j: SQL injection in Log4j 1.x when application is configured to use JDBCAppender

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23305

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23305 严重 1.2.17 log4j: SQL injection in Log4j 1.x when application is configured to use JDBCAppender

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23305

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23305 严重 1.2.17 log4j: SQL injection in Log4j 1.x when application is configured to use JDBCAppender

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23305

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23305 严重 1.2.17 log4j: SQL injection in Log4j 1.x when application is configured to use JDBCAppender

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23305

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23305 严重 1.2.17 log4j: SQL injection in Log4j 1.x when application is configured to use JDBCAppender

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23305

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23305 严重 1.2.17 log4j: SQL injection in Log4j 1.x when application is configured to use JDBCAppender

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23305

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23305 严重 1.2.17 log4j: SQL injection in Log4j 1.x when application is configured to use JDBCAppender

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23305

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23305 严重 1.2.17 log4j: SQL injection in Log4j 1.x when application is configured to use JDBCAppender

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23305

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23305 严重 1.2.17 log4j: SQL injection in Log4j 1.x when application is configured to use JDBCAppender

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23305

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23307 严重 1.2.17 log4j: Unsafe deserialization flaw in Chainsaw log viewer

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23307

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23307 严重 1.2.17 log4j: Unsafe deserialization flaw in Chainsaw log viewer

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23307

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23307 严重 1.2.17 log4j: Unsafe deserialization flaw in Chainsaw log viewer

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23307

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23307 严重 1.2.17 log4j: Unsafe deserialization flaw in Chainsaw log viewer

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23307

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23307 严重 1.2.17 log4j: Unsafe deserialization flaw in Chainsaw log viewer

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23307

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23307 严重 1.2.17 log4j: Unsafe deserialization flaw in Chainsaw log viewer

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23307

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23307 严重 1.2.17 log4j: Unsafe deserialization flaw in Chainsaw log viewer

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23307

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23307 严重 1.2.17 log4j: Unsafe deserialization flaw in Chainsaw log viewer

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23307

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23307 严重 1.2.17 log4j: Unsafe deserialization flaw in Chainsaw log viewer

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23307

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23307 严重 1.2.17 log4j: Unsafe deserialization flaw in Chainsaw log viewer

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23307

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23307 严重 1.2.17 log4j: Unsafe deserialization flaw in Chainsaw log viewer

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23307

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23307 严重 1.2.17 log4j: Unsafe deserialization flaw in Chainsaw log viewer

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23307

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

org.apache.avro:avro CVE-2024-47561 严重 1.7.4 1.11.4 apache-avro: Schema parsing may trigger Remote Code Execution (RCE)

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47561

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-10-03 11:15 修改: 2026-06-17 07:57

org.apache.avro:avro CVE-2024-47561 严重 1.7.4 1.11.4 apache-avro: Schema parsing may trigger Remote Code Execution (RCE)

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47561

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-10-03 11:15 修改: 2026-06-17 07:57

org.apache.avro:avro CVE-2024-47561 严重 1.7.4 1.11.4 apache-avro: Schema parsing may trigger Remote Code Execution (RCE)

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47561

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-10-03 11:15 修改: 2026-06-17 07:57

org.apache.avro:avro CVE-2024-47561 严重 1.7.4 1.11.4 apache-avro: Schema parsing may trigger Remote Code Execution (RCE)

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47561

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-10-03 11:15 修改: 2026-06-17 07:57

org.apache.avro:avro CVE-2024-47561 严重 1.7.4 1.11.4 apache-avro: Schema parsing may trigger Remote Code Execution (RCE)

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47561

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-10-03 11:15 修改: 2026-06-17 07:57

org.apache.avro:avro CVE-2024-47561 严重 1.7.7 1.11.4 apache-avro: Schema parsing may trigger Remote Code Execution (RCE)

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47561

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-10-03 11:15 修改: 2026-06-17 07:57

org.apache.avro:avro CVE-2024-47561 严重 1.7.7 1.11.4 apache-avro: Schema parsing may trigger Remote Code Execution (RCE)

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47561

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-10-03 11:15 修改: 2026-06-17 07:57

org.apache.avro:avro CVE-2024-47561 严重 1.7.7 1.11.4 apache-avro: Schema parsing may trigger Remote Code Execution (RCE)

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47561

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-10-03 11:15 修改: 2026-06-17 07:57

org.apache.avro:avro CVE-2024-47561 严重 1.7.7 1.11.4 apache-avro: Schema parsing may trigger Remote Code Execution (RCE)

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47561

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-10-03 11:15 修改: 2026-06-17 07:57

org.apache.avro:avro CVE-2024-47561 严重 1.8.2 1.11.4 apache-avro: Schema parsing may trigger Remote Code Execution (RCE)

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47561

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2024-10-03 11:15 修改: 2026-06-17 07:57

org.apache.avro:avro CVE-2024-47561 严重 1.8.2 1.11.4 apache-avro: Schema parsing may trigger Remote Code Execution (RCE)

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47561

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2024-10-03 11:15 修改: 2026-06-17 07:57

org.apache.avro:avro CVE-2024-47561 严重 1.8.2 1.11.4 apache-avro: Schema parsing may trigger Remote Code Execution (RCE)

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47561

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-10-03 11:15 修改: 2026-06-17 07:57

org.apache.avro:avro CVE-2024-47561 严重 1.8.2 1.11.4 apache-avro: Schema parsing may trigger Remote Code Execution (RCE)

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47561

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-10-03 11:15 修改: 2026-06-17 07:57

org.apache.calcite:calcite-core CVE-2022-39135 严重 1.10.0 1.32.0 calcite: XXE via SQL operators

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-39135

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-09-11 12:15 修改: 2026-06-17 04:57

org.apache.calcite:calcite-core CVE-2022-39135 严重 1.10.0 1.32.0 calcite: XXE via SQL operators

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-39135

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-09-11 12:15 修改: 2026-06-17 04:57

org.apache.calcite:calcite-core CVE-2022-39135 严重 1.16.0 1.32.0 calcite: XXE via SQL operators

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-39135

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-09-11 12:15 修改: 2026-06-17 04:57

org.apache.calcite:calcite-core CVE-2022-39135 严重 1.16.0 1.32.0 calcite: XXE via SQL operators

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-39135

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-09-11 12:15 修改: 2026-06-17 04:57

org.apache.derby:derby CVE-2015-1832 严重 10.10.2.0 10.12.1.1 Derby: XXE attack possible by using XmlVTI and the XML datatype

漏洞详情: https://avd.aquasec.com/nvd/cve-2015-1832

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2016-10-03 21:59 修改: 2026-05-06 22:30

org.apache.derby:derby CVE-2022-46337 严重 10.10.2.0 10.14.3, 10.15.2.1, 10.16.1.2, 10.17.1.0 A cleverly devised username might bypass LDAP authentication checks. I ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-46337

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-11-20 09:15 修改: 2026-06-17 05:11

org.apache.derby:derby CVE-2022-46337 严重 10.14.1.0 10.14.3, 10.15.2.1, 10.16.1.2, 10.17.1.0 A cleverly devised username might bypass LDAP authentication checks. I ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-46337

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-11-20 09:15 修改: 2026-06-17 05:11

org.apache.hadoop:hadoop-common CVE-2021-37404 严重 2.7.3 3.3.2, 3.2.3, 2.10.2 hadoop-hdfs: Heap buffer overflow in Apache Hadoop libhdfs

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37404

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-06-13 07:15 修改: 2026-06-17 04:00

org.apache.hadoop:hadoop-common CVE-2021-37404 严重 2.7.3 3.3.2, 3.2.3, 2.10.2 hadoop-hdfs: Heap buffer overflow in Apache Hadoop libhdfs

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37404

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-06-13 07:15 修改: 2026-06-17 04:00

org.apache.hadoop:hadoop-common CVE-2021-37404 严重 2.7.3 3.3.2, 3.2.3, 2.10.2 hadoop-hdfs: Heap buffer overflow in Apache Hadoop libhdfs

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37404

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-06-13 07:15 修改: 2026-06-17 04:00

org.apache.hadoop:hadoop-common CVE-2021-37404 严重 2.7.3 3.3.2, 3.2.3, 2.10.2 hadoop-hdfs: Heap buffer overflow in Apache Hadoop libhdfs

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37404

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-06-13 07:15 修改: 2026-06-17 04:00

org.apache.hadoop:hadoop-common CVE-2022-25168 严重 2.7.3 2.10.2, 3.2.4, 3.3.3 hadoop: Command injection in org.apache.hadoop.fs.FileUtil.unTarUsingTar

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25168

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-08-04 15:15 修改: 2026-06-17 04:33

org.apache.hadoop:hadoop-common CVE-2022-25168 严重 2.7.3 2.10.2, 3.2.4, 3.3.3 hadoop: Command injection in org.apache.hadoop.fs.FileUtil.unTarUsingTar

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25168

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-08-04 15:15 修改: 2026-06-17 04:33

org.apache.hadoop:hadoop-common CVE-2022-25168 严重 2.7.3 2.10.2, 3.2.4, 3.3.3 hadoop: Command injection in org.apache.hadoop.fs.FileUtil.unTarUsingTar

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25168

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-08-04 15:15 修改: 2026-06-17 04:33

org.apache.hadoop:hadoop-common CVE-2022-25168 严重 2.7.3 2.10.2, 3.2.4, 3.3.3 hadoop: Command injection in org.apache.hadoop.fs.FileUtil.unTarUsingTar

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25168

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-08-04 15:15 修改: 2026-06-17 04:33

org.apache.hadoop:hadoop-common CVE-2022-26612 严重 2.7.3 3.2.3, 2.10.2, 3.3.3 hadoop: Arbitrary file write in FileUtil#unpackEntries on Windows

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-26612

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-04-07 19:15 修改: 2026-06-17 04:35

org.apache.hadoop:hadoop-common CVE-2022-26612 严重 2.7.3 3.2.3, 2.10.2, 3.3.3 hadoop: Arbitrary file write in FileUtil#unpackEntries on Windows

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-26612

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-04-07 19:15 修改: 2026-06-17 04:35

org.apache.hadoop:hadoop-common CVE-2022-26612 严重 2.7.3 3.2.3, 2.10.2, 3.3.3 hadoop: Arbitrary file write in FileUtil#unpackEntries on Windows

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-26612

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-04-07 19:15 修改: 2026-06-17 04:35

org.apache.hadoop:hadoop-common CVE-2022-26612 严重 2.7.3 3.2.3, 2.10.2, 3.3.3 hadoop: Arbitrary file write in FileUtil#unpackEntries on Windows

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-26612

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-04-07 19:15 修改: 2026-06-17 04:35

org.apache.hadoop:hadoop-common CVE-2021-37404 严重 3.3.0 3.3.2, 3.2.3, 2.10.2 hadoop-hdfs: Heap buffer overflow in Apache Hadoop libhdfs

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37404

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-06-13 07:15 修改: 2026-06-17 04:00

org.apache.hadoop:hadoop-common CVE-2021-37404 严重 3.3.0 3.3.2, 3.2.3, 2.10.2 hadoop-hdfs: Heap buffer overflow in Apache Hadoop libhdfs

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37404

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-06-13 07:15 修改: 2026-06-17 04:00

org.apache.hadoop:hadoop-common CVE-2021-37404 严重 3.3.0 3.3.2, 3.2.3, 2.10.2 hadoop-hdfs: Heap buffer overflow in Apache Hadoop libhdfs

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37404

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-06-13 07:15 修改: 2026-06-17 04:00

org.apache.hadoop:hadoop-common CVE-2021-37404 严重 3.3.0 3.3.2, 3.2.3, 2.10.2 hadoop-hdfs: Heap buffer overflow in Apache Hadoop libhdfs

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37404

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-06-13 07:15 修改: 2026-06-17 04:00

org.apache.hadoop:hadoop-common CVE-2021-37404 严重 3.3.0 3.3.2, 3.2.3, 2.10.2 hadoop-hdfs: Heap buffer overflow in Apache Hadoop libhdfs

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37404

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-06-13 07:15 修改: 2026-06-17 04:00

org.apache.hadoop:hadoop-common CVE-2021-37404 严重 3.3.0 3.3.2, 3.2.3, 2.10.2 hadoop-hdfs: Heap buffer overflow in Apache Hadoop libhdfs

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37404

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-06-13 07:15 修改: 2026-06-17 04:00

org.apache.hadoop:hadoop-common CVE-2021-37404 严重 3.3.0 3.3.2, 3.2.3, 2.10.2 hadoop-hdfs: Heap buffer overflow in Apache Hadoop libhdfs

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37404

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2022-06-13 07:15 修改: 2026-06-17 04:00

org.apache.hadoop:hadoop-common CVE-2021-37404 严重 3.3.0 3.3.2, 3.2.3, 2.10.2 hadoop-hdfs: Heap buffer overflow in Apache Hadoop libhdfs

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37404

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2022-06-13 07:15 修改: 2026-06-17 04:00

org.apache.hadoop:hadoop-common CVE-2022-25168 严重 3.3.0 2.10.2, 3.2.4, 3.3.3 hadoop: Command injection in org.apache.hadoop.fs.FileUtil.unTarUsingTar

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25168

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-08-04 15:15 修改: 2026-06-17 04:33

org.apache.hadoop:hadoop-common CVE-2022-25168 严重 3.3.0 2.10.2, 3.2.4, 3.3.3 hadoop: Command injection in org.apache.hadoop.fs.FileUtil.unTarUsingTar

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25168

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-08-04 15:15 修改: 2026-06-17 04:33

org.apache.hadoop:hadoop-common CVE-2022-25168 严重 3.3.0 2.10.2, 3.2.4, 3.3.3 hadoop: Command injection in org.apache.hadoop.fs.FileUtil.unTarUsingTar

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25168

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-08-04 15:15 修改: 2026-06-17 04:33

org.apache.hadoop:hadoop-common CVE-2022-25168 严重 3.3.0 2.10.2, 3.2.4, 3.3.3 hadoop: Command injection in org.apache.hadoop.fs.FileUtil.unTarUsingTar

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25168

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-08-04 15:15 修改: 2026-06-17 04:33

org.apache.hadoop:hadoop-common CVE-2022-25168 严重 3.3.0 2.10.2, 3.2.4, 3.3.3 hadoop: Command injection in org.apache.hadoop.fs.FileUtil.unTarUsingTar

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25168

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-08-04 15:15 修改: 2026-06-17 04:33

org.apache.hadoop:hadoop-common CVE-2022-25168 严重 3.3.0 2.10.2, 3.2.4, 3.3.3 hadoop: Command injection in org.apache.hadoop.fs.FileUtil.unTarUsingTar

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25168

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-08-04 15:15 修改: 2026-06-17 04:33

org.apache.hadoop:hadoop-common CVE-2022-25168 严重 3.3.0 2.10.2, 3.2.4, 3.3.3 hadoop: Command injection in org.apache.hadoop.fs.FileUtil.unTarUsingTar

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25168

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2022-08-04 15:15 修改: 2026-06-17 04:33

org.apache.hadoop:hadoop-common CVE-2022-25168 严重 3.3.0 2.10.2, 3.2.4, 3.3.3 hadoop: Command injection in org.apache.hadoop.fs.FileUtil.unTarUsingTar

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25168

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2022-08-04 15:15 修改: 2026-06-17 04:33

org.apache.hadoop:hadoop-common CVE-2022-26612 严重 3.3.0 3.2.3, 2.10.2, 3.3.3 hadoop: Arbitrary file write in FileUtil#unpackEntries on Windows

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-26612

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-04-07 19:15 修改: 2026-06-17 04:35

org.apache.hadoop:hadoop-common CVE-2022-26612 严重 3.3.0 3.2.3, 2.10.2, 3.3.3 hadoop: Arbitrary file write in FileUtil#unpackEntries on Windows

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-26612

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-04-07 19:15 修改: 2026-06-17 04:35

org.apache.hadoop:hadoop-common CVE-2022-26612 严重 3.3.0 3.2.3, 2.10.2, 3.3.3 hadoop: Arbitrary file write in FileUtil#unpackEntries on Windows

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-26612

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-04-07 19:15 修改: 2026-06-17 04:35

org.apache.hadoop:hadoop-common CVE-2022-26612 严重 3.3.0 3.2.3, 2.10.2, 3.3.3 hadoop: Arbitrary file write in FileUtil#unpackEntries on Windows

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-26612

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-04-07 19:15 修改: 2026-06-17 04:35

org.apache.hadoop:hadoop-common CVE-2022-26612 严重 3.3.0 3.2.3, 2.10.2, 3.3.3 hadoop: Arbitrary file write in FileUtil#unpackEntries on Windows

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-26612

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-04-07 19:15 修改: 2026-06-17 04:35

org.apache.hadoop:hadoop-common CVE-2022-26612 严重 3.3.0 3.2.3, 2.10.2, 3.3.3 hadoop: Arbitrary file write in FileUtil#unpackEntries on Windows

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-26612

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-04-07 19:15 修改: 2026-06-17 04:35

org.apache.hadoop:hadoop-common CVE-2022-26612 严重 3.3.0 3.2.3, 2.10.2, 3.3.3 hadoop: Arbitrary file write in FileUtil#unpackEntries on Windows

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-26612

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2022-04-07 19:15 修改: 2026-06-17 04:35

org.apache.hadoop:hadoop-common CVE-2022-26612 严重 3.3.0 3.2.3, 2.10.2, 3.3.3 hadoop: Arbitrary file write in FileUtil#unpackEntries on Windows

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-26612

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2022-04-07 19:15 修改: 2026-06-17 04:35

org.apache.ivy:ivy CVE-2022-37865 严重 2.4.0 2.5.1 apache-ivy: Directory Traversal

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-37865

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-11-07 11:15 修改: 2026-06-17 04:55

org.apache.ivy:ivy CVE-2022-37865 严重 2.4.0 2.5.1 apache-ivy: Directory Traversal

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-37865

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-11-07 11:15 修改: 2026-06-17 04:55

org.apache.logging.log4j:log4j-core CVE-2017-5645 严重 2.6.2 2.8.2 log4j: Socket receiver deserialization vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-5645

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2017-04-17 21:59 修改: 2026-06-17 01:20

org.apache.logging.log4j:log4j-core CVE-2017-5645 严重 2.6.2 2.8.2 log4j: Socket receiver deserialization vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-5645

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2017-04-17 21:59 修改: 2026-06-17 01:20

org.apache.logging.log4j:log4j-core CVE-2021-44228 严重 2.6.2 2.15.0, 2.3.1, 2.12.2 log4j-core: Remote code execution in Log4j 2.x when logs contain an attacker-controlled string value

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-44228

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-12-10 10:15 修改: 2026-06-17 04:12

org.apache.logging.log4j:log4j-core CVE-2021-44228 严重 2.6.2 2.15.0, 2.3.1, 2.12.2 log4j-core: Remote code execution in Log4j 2.x when logs contain an attacker-controlled string value

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-44228

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-12-10 10:15 修改: 2026-06-17 04:12

org.apache.logging.log4j:log4j-core CVE-2021-45046 严重 2.6.2 2.16.0, 2.12.2 log4j-core: DoS in log4j 2.x with thread context message pattern and context lookup pattern (incomplete fix for CVE-2021-44228)

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-45046

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-12-14 19:15 修改: 2026-06-17 04:13

org.apache.logging.log4j:log4j-core CVE-2021-45046 严重 2.6.2 2.16.0, 2.12.2 log4j-core: DoS in log4j 2.x with thread context message pattern and context lookup pattern (incomplete fix for CVE-2021-44228)

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-45046

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-12-14 19:15 修改: 2026-06-17 04:13

org.apache.mina:mina-core CVE-2024-52046 严重 2.0.7 2.2.4, 2.1.10, 2.0.27 mina-core: Apache MINA: applications using unbounded deserialization may allow RCE

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-52046

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2024-12-25 10:15 修改: 2026-06-17 08:06

org.apache.mina:mina-core CVE-2026-41409 严重 2.0.7 2.0.28, 2.1.11, 2.2.6 Apache MINA: Apache MINA: Arbitrary code execution via incomplete deserialization fix

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-41409

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2026-04-27 10:16 修改: 2026-06-17 10:46

org.apache.mina:mina-core CVE-2026-41635 严重 2.0.7 2.0.28, 2.1.11, 2.2.6 Apache MINA: Apache MINA: Arbitrary code execution via classname allowlist bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-41635

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2026-04-27 09:16 修改: 2026-06-17 10:46

org.apache.ranger:ranger-plugins-common CVE-2025-59059 严重 2.4.0 2.8.0 Apache Ranger has a Code Injection vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-59059

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2026-03-03 11:16 修改: 2026-06-17 09:45

org.apache.ranger:ranger-plugins-common CVE-2025-59059 严重 2.4.0 2.8.0 Apache Ranger has a Code Injection vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-59059

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2026-03-03 11:16 修改: 2026-06-17 09:45

org.apache.solr:solr-solrj CVE-2020-13957 严重 7.7.0 8.6.3 solr: The checks added to unauthenticated configset uploads can be circumvented

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13957

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-10-13 19:15 修改: 2026-06-17 02:54

org.apache.spark:spark-core_2.11 CVE-2018-17190 严重 2.0.0 Remote Code Execution in spark-core

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-17190

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-11-19 14:29 修改: 2026-06-17 01:45

org.apache.spark:spark-core_2.11 CVE-2018-17190 严重 2.3.0 Remote Code Execution in spark-core

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-17190

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-11-19 14:29 修改: 2026-06-17 01:45

org.apache.tomcat:jasper CVE-2016-5018 严重 6.0.44 6.0.47 tomcat: security manager bypass via IntrospectHelper utility function

漏洞详情: https://avd.aquasec.com/nvd/cve-2016-5018

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-08-10 16:29 修改: 2026-06-17 00:48

org.apache.tomcat:jasper CVE-2016-5018 严重 6.0.44 6.0.47 tomcat: security manager bypass via IntrospectHelper utility function

漏洞详情: https://avd.aquasec.com/nvd/cve-2016-5018

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-08-10 16:29 修改: 2026-06-17 00:48

org.apache.zookeeper:zookeeper CVE-2023-44981 严重 3.4.13 3.7.2, 3.8.3, 3.9.1 zookeeper: Authorization Bypass in Apache ZooKeeper

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44981

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2023-10-11 12:15 修改: 2026-06-17 06:28

org.apache.zookeeper:zookeeper CVE-2023-44981 严重 3.4.13 3.7.2, 3.8.3, 3.9.1 zookeeper: Authorization Bypass in Apache ZooKeeper

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44981

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2023-10-11 12:15 修改: 2026-06-17 06:28

org.apache.zookeeper:zookeeper CVE-2023-44981 严重 3.4.6 3.7.2, 3.8.3, 3.9.1 zookeeper: Authorization Bypass in Apache ZooKeeper

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44981

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-10-11 12:15 修改: 2026-06-17 06:28

org.apache.zookeeper:zookeeper CVE-2023-44981 严重 3.4.6 3.7.2, 3.8.3, 3.9.1 zookeeper: Authorization Bypass in Apache ZooKeeper

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44981

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-10-11 12:15 修改: 2026-06-17 06:28

org.apache.zookeeper:zookeeper CVE-2023-44981 严重 3.4.6 3.7.2, 3.8.3, 3.9.1 zookeeper: Authorization Bypass in Apache ZooKeeper

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44981

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-10-11 12:15 修改: 2026-06-17 06:28

org.apache.zookeeper:zookeeper CVE-2023-44981 严重 3.4.6 3.7.2, 3.8.3, 3.9.1 zookeeper: Authorization Bypass in Apache ZooKeeper

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44981

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-10-11 12:15 修改: 2026-06-17 06:28

org.apache.zookeeper:zookeeper CVE-2023-44981 严重 3.4.6 3.7.2, 3.8.3, 3.9.1 zookeeper: Authorization Bypass in Apache ZooKeeper

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44981

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-10-11 12:15 修改: 2026-06-17 06:28

org.apache.zookeeper:zookeeper CVE-2023-44981 严重 3.4.6 3.7.2, 3.8.3, 3.9.1 zookeeper: Authorization Bypass in Apache ZooKeeper

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44981

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-10-11 12:15 修改: 2026-06-17 06:28

org.apache.zookeeper:zookeeper CVE-2023-44981 严重 3.4.6 3.7.2, 3.8.3, 3.9.1 zookeeper: Authorization Bypass in Apache ZooKeeper

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44981

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-10-11 12:15 修改: 2026-06-17 06:28

org.apache.zookeeper:zookeeper CVE-2023-44981 严重 3.5.6 3.7.2, 3.8.3, 3.9.1 zookeeper: Authorization Bypass in Apache ZooKeeper

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44981

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-10-11 12:15 修改: 2026-06-17 06:28

org.apache.zookeeper:zookeeper CVE-2023-44981 严重 3.5.6 3.7.2, 3.8.3, 3.9.1 zookeeper: Authorization Bypass in Apache ZooKeeper

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44981

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-10-11 12:15 修改: 2026-06-17 06:28

org.apache.zookeeper:zookeeper CVE-2023-44981 严重 3.5.6 3.7.2, 3.8.3, 3.9.1 zookeeper: Authorization Bypass in Apache ZooKeeper

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44981

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-10-11 12:15 修改: 2026-06-17 06:28

org.apache.zookeeper:zookeeper CVE-2023-44981 严重 3.5.6 3.7.2, 3.8.3, 3.9.1 zookeeper: Authorization Bypass in Apache ZooKeeper

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-44981

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-10-11 12:15 修改: 2026-06-17 06:28

org.codehaus.groovy:groovy CVE-2016-6814 严重 2.4.4 2.4.8 Groovy: Remote code execution via deserialization

漏洞详情: https://avd.aquasec.com/nvd/cve-2016-6814

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-01-18 18:29 修改: 2026-06-17 00:51

org.codehaus.jackson:jackson-mapper-asl CVE-2019-10202 严重 1.9.13 codehaus: incomplete fix for unsafe deserialization in jackson-databind vulnerabilities

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10202

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-10-01 15:15 修改: 2026-06-17 02:10

org.codehaus.jackson:jackson-mapper-asl CVE-2019-10202 严重 1.9.13 codehaus: incomplete fix for unsafe deserialization in jackson-databind vulnerabilities

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10202

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-10-01 15:15 修改: 2026-06-17 02:10

org.codehaus.jackson:jackson-mapper-asl CVE-2019-10202 严重 1.9.13 codehaus: incomplete fix for unsafe deserialization in jackson-databind vulnerabilities

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10202

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-01 15:15 修改: 2026-06-17 02:10

org.codehaus.jackson:jackson-mapper-asl CVE-2019-10202 严重 1.9.13 codehaus: incomplete fix for unsafe deserialization in jackson-databind vulnerabilities

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10202

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-01 15:15 修改: 2026-06-17 02:10

org.codehaus.jackson:jackson-mapper-asl CVE-2019-10202 严重 1.9.13 codehaus: incomplete fix for unsafe deserialization in jackson-databind vulnerabilities

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10202

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-01 15:15 修改: 2026-06-17 02:10

org.codehaus.jackson:jackson-mapper-asl CVE-2019-10202 严重 1.9.13 codehaus: incomplete fix for unsafe deserialization in jackson-databind vulnerabilities

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10202

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-01 15:15 修改: 2026-06-17 02:10

org.codehaus.jackson:jackson-mapper-asl CVE-2019-10202 严重 1.9.13 codehaus: incomplete fix for unsafe deserialization in jackson-databind vulnerabilities

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10202

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-01 15:15 修改: 2026-06-17 02:10

org.codehaus.jackson:jackson-mapper-asl CVE-2019-10202 严重 1.9.13 codehaus: incomplete fix for unsafe deserialization in jackson-databind vulnerabilities

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10202

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-01 15:15 修改: 2026-06-17 02:10

org.codehaus.jackson:jackson-mapper-asl CVE-2019-10202 严重 1.9.13 codehaus: incomplete fix for unsafe deserialization in jackson-databind vulnerabilities

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10202

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-10-01 15:15 修改: 2026-06-17 02:10

org.codehaus.jackson:jackson-mapper-asl CVE-2019-10202 严重 1.9.13 codehaus: incomplete fix for unsafe deserialization in jackson-databind vulnerabilities

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10202

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-10-01 15:15 修改: 2026-06-17 02:10

org.codehaus.jackson:jackson-mapper-asl CVE-2019-10202 严重 1.9.13 codehaus: incomplete fix for unsafe deserialization in jackson-databind vulnerabilities

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10202

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-10-01 15:15 修改: 2026-06-17 02:10

org.codehaus.jackson:jackson-mapper-asl CVE-2019-10202 严重 1.9.13 codehaus: incomplete fix for unsafe deserialization in jackson-databind vulnerabilities

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10202

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-10-01 15:15 修改: 2026-06-17 02:10

org.codehaus.plexus:plexus-utils CVE-2017-1000487 严重 3.0.15 3.0.16 plexus-utils: Mishandled strings in Commandline class allow for command injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-1000487

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-01-03 20:29 修改: 2026-06-17 00:59

org.eclipse.jetty:jetty-server CVE-2017-7657 严重 7.6.0.v20120127 9.2.25.v20180606, 9.3.24.v20180605 jetty: HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7657

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-06-26 16:29 修改: 2026-06-17 01:24

org.eclipse.jetty:jetty-server CVE-2017-7657 严重 7.6.0.v20120127 9.2.25.v20180606, 9.3.24.v20180605 jetty: HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7657

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-06-26 16:29 修改: 2026-06-17 01:24

org.eclipse.jetty:jetty-server CVE-2017-7658 严重 7.6.0.v20120127 9.2.25.v20180606, 9.3.24.v20180605, 9.4.11.v20180605 jetty: Incorrect header handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7658

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-06-26 17:29 修改: 2026-06-17 01:24

org.eclipse.jetty:jetty-server CVE-2017-7658 严重 7.6.0.v20120127 9.2.25.v20180606, 9.3.24.v20180605, 9.4.11.v20180605 jetty: Incorrect header handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7658

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-06-26 17:29 修改: 2026-06-17 01:24

org.eclipse.jetty:jetty-server CVE-2017-7657 严重 9.2.16.v20160414 9.2.25.v20180606, 9.3.24.v20180605 jetty: HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7657

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-06-26 16:29 修改: 2026-06-17 01:24

org.eclipse.jetty:jetty-server CVE-2017-7658 严重 9.2.16.v20160414 9.2.25.v20180606, 9.3.24.v20180605, 9.4.11.v20180605 jetty: Incorrect header handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7658

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-06-26 17:29 修改: 2026-06-17 01:24

org.eclipse.jetty:jetty-server CVE-2017-7657 严重 9.2.5.v20141112 9.2.25.v20180606, 9.3.24.v20180605 jetty: HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7657

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-06-26 16:29 修改: 2026-06-17 01:24

org.eclipse.jetty:jetty-server CVE-2017-7658 严重 9.2.5.v20141112 9.2.25.v20180606, 9.3.24.v20180605, 9.4.11.v20180605 jetty: Incorrect header handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7658

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-06-26 17:29 修改: 2026-06-17 01:24

org.eclipse.jetty:jetty-server CVE-2017-7657 严重 9.3.20.v20170531 9.2.25.v20180606, 9.3.24.v20180605 jetty: HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7657

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-06-26 16:29 修改: 2026-06-17 01:24

org.eclipse.jetty:jetty-server CVE-2017-7657 严重 9.3.20.v20170531 9.2.25.v20180606, 9.3.24.v20180605 jetty: HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7657

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-06-26 16:29 修改: 2026-06-17 01:24

org.eclipse.jetty:jetty-server CVE-2017-7657 严重 9.3.20.v20170531 9.2.25.v20180606, 9.3.24.v20180605 jetty: HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7657

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-06-26 16:29 修改: 2026-06-17 01:24

org.eclipse.jetty:jetty-server CVE-2017-7657 严重 9.3.20.v20170531 9.2.25.v20180606, 9.3.24.v20180605 jetty: HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7657

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-06-26 16:29 修改: 2026-06-17 01:24

org.eclipse.jetty:jetty-server CVE-2017-7658 严重 9.3.20.v20170531 9.2.25.v20180606, 9.3.24.v20180605, 9.4.11.v20180605 jetty: Incorrect header handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7658

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-06-26 17:29 修改: 2026-06-17 01:24

org.eclipse.jetty:jetty-server CVE-2017-7658 严重 9.3.20.v20170531 9.2.25.v20180606, 9.3.24.v20180605, 9.4.11.v20180605 jetty: Incorrect header handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7658

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-06-26 17:29 修改: 2026-06-17 01:24

org.eclipse.jetty:jetty-server CVE-2017-7658 严重 9.3.20.v20170531 9.2.25.v20180606, 9.3.24.v20180605, 9.4.11.v20180605 jetty: Incorrect header handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7658

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-06-26 17:29 修改: 2026-06-17 01:24

org.eclipse.jetty:jetty-server CVE-2017-7658 严重 9.3.20.v20170531 9.2.25.v20180606, 9.3.24.v20180605, 9.4.11.v20180605 jetty: Incorrect header handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7658

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-06-26 17:29 修改: 2026-06-17 01:24

org.hsqldb:hsqldb CVE-2022-41853 严重 2.0.0 2.7.1 hsqldb: Untrusted input may lead to RCE attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-41853

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-10-06 18:17 修改: 2026-06-17 05:03

org.hsqldb:hsqldb CVE-2022-41853 严重 2.3.4 2.7.1 hsqldb: Untrusted input may lead to RCE attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-41853

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-06 18:17 修改: 2026-06-17 05:03

org.postgresql:postgresql CVE-2024-1597 严重 9.4.1208.jre7 42.2.28, 42.3.9, 42.4.4, 42.5.5, 42.6.1, 42.7.2 pgjdbc: PostgreSQL JDBC Driver allows attacker to inject SQL if using PreferQueryMode=SIMPLE

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-1597

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2024-02-19 13:15 修改: 2026-06-17 07:04

org.postgresql:postgresql CVE-2024-1597 严重 9.4.1208.jre7 42.2.28, 42.3.9, 42.4.4, 42.5.5, 42.6.1, 42.7.2 pgjdbc: PostgreSQL JDBC Driver allows attacker to inject SQL if using PreferQueryMode=SIMPLE

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-1597

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-02-19 13:15 修改: 2026-06-17 07:04

com.fasterxml.jackson.core:jackson-databind CVE-2020-36184 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36184

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36184 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36184

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36184 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36184

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36184 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36184

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36184 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36184

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36185 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36185

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36185 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36185

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36185 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36185

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36185 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36185

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36185 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36185

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36185 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36185

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36185 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36185

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36185 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36185

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36185 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36185

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36185 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36185

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36185 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36185

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36185 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36185

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36185 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36185

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36186 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36186

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36186 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36186

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36186 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36186

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36186 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36186

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36186 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36186

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36186 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36186

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36186 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36186

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36186 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36186

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36186 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36186

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36186 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36186

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36186 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36186

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36186 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36186

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36186 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36186

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36187 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36187

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36187 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36187

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36187 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36187

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36187 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36187

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36187 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36187

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36187 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36187

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36187 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36187

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36187 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36187

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36187 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36187

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36187 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36187

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36187 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36187

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36187 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36187

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36187 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36187

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36188 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDIConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36188

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36188 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDIConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36188

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36188 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDIConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36188

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36188 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDIConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36188

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36188 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDIConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36188

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36188 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDIConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36188

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36188 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDIConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36188

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36188 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDIConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36188

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36188 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDIConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36188

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36188 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDIConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36188

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36188 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDIConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36188

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36188 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDIConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36188

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36188 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDIConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36188

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36189 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.DriverManagerConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36189

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36189 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.DriverManagerConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36189

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36189 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.DriverManagerConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36189

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36189 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.DriverManagerConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36189

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36189 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.DriverManagerConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36189

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36189 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.DriverManagerConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36189

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36189 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.DriverManagerConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36189

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36189 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.DriverManagerConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36189

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36189 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.DriverManagerConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36189

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36189 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.DriverManagerConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36189

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36189 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.DriverManagerConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36189

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36189 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.DriverManagerConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36189

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36189 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.DriverManagerConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36189

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.4.0 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.4.0 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.4.0 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.4.0 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.4.0 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.4.0 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.4.0 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.4.0 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.4.0 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.4.0 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.4.0 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.4.0 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.4.0 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2021-20190 高危 2.4.0 2.9.10.7, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to javax.swing

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-20190

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-19 17:15 修改: 2026-06-17 03:33

com.fasterxml.jackson.core:jackson-databind CVE-2021-20190 高危 2.4.0 2.9.10.7, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to javax.swing

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-20190

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-01-19 17:15 修改: 2026-06-17 03:33

com.fasterxml.jackson.core:jackson-databind CVE-2021-20190 高危 2.4.0 2.9.10.7, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to javax.swing

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-20190

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-19 17:15 修改: 2026-06-17 03:33

com.fasterxml.jackson.core:jackson-databind CVE-2021-20190 高危 2.4.0 2.9.10.7, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to javax.swing

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-20190

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-19 17:15 修改: 2026-06-17 03:33

com.fasterxml.jackson.core:jackson-databind CVE-2021-20190 高危 2.4.0 2.9.10.7, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to javax.swing

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-20190

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-19 17:15 修改: 2026-06-17 03:33

com.fasterxml.jackson.core:jackson-databind CVE-2021-20190 高危 2.4.0 2.9.10.7, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to javax.swing

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-20190

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-19 17:15 修改: 2026-06-17 03:33

com.fasterxml.jackson.core:jackson-databind CVE-2021-20190 高危 2.4.0 2.9.10.7, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to javax.swing

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-20190

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-19 17:15 修改: 2026-06-17 03:33

com.fasterxml.jackson.core:jackson-databind CVE-2021-20190 高危 2.4.0 2.9.10.7, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to javax.swing

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-20190

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-19 17:15 修改: 2026-06-17 03:33

com.fasterxml.jackson.core:jackson-databind CVE-2021-20190 高危 2.4.0 2.9.10.7, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to javax.swing

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-20190

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-19 17:15 修改: 2026-06-17 03:33

com.fasterxml.jackson.core:jackson-databind CVE-2021-20190 高危 2.4.0 2.9.10.7, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to javax.swing

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-20190

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-19 17:15 修改: 2026-06-17 03:33

com.fasterxml.jackson.core:jackson-databind CVE-2021-20190 高危 2.4.0 2.9.10.7, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to javax.swing

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-20190

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-19 17:15 修改: 2026-06-17 03:33

com.fasterxml.jackson.core:jackson-databind CVE-2021-20190 高危 2.4.0 2.9.10.7, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to javax.swing

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-20190

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2021-01-19 17:15 修改: 2026-06-17 03:33

com.fasterxml.jackson.core:jackson-databind CVE-2021-20190 高危 2.4.0 2.9.10.7, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to javax.swing

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-20190

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2021-01-19 17:15 修改: 2026-06-17 03:33

com.fasterxml.jackson.core:jackson-databind CVE-2022-42003 高危 2.4.0 2.12.7.1, 2.13.4.2 jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42003

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42003 高危 2.4.0 2.12.7.1, 2.13.4.2 jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42003

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42003 高危 2.4.0 2.12.7.1, 2.13.4.2 jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42003

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42003 高危 2.4.0 2.12.7.1, 2.13.4.2 jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42003

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42003 高危 2.4.0 2.12.7.1, 2.13.4.2 jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42003

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42003 高危 2.4.0 2.12.7.1, 2.13.4.2 jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42003

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42003 高危 2.4.0 2.12.7.1, 2.13.4.2 jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42003

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42003 高危 2.4.0 2.12.7.1, 2.13.4.2 jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42003

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42003 高危 2.4.0 2.12.7.1, 2.13.4.2 jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42003

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42003 高危 2.4.0 2.12.7.1, 2.13.4.2 jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42003

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42003 高危 2.4.0 2.12.7.1, 2.13.4.2 jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42003

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42003 高危 2.4.0 2.12.7.1, 2.13.4.2 jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42003

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42003 高危 2.4.0 2.12.7.1, 2.13.4.2 jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42003

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42004 高危 2.4.0 2.12.7.1, 2.13.4 jackson-databind: use of deeply nested arrays

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42004

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42004 高危 2.4.0 2.12.7.1, 2.13.4 jackson-databind: use of deeply nested arrays

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42004

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42004 高危 2.4.0 2.12.7.1, 2.13.4 jackson-databind: use of deeply nested arrays

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42004

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42004 高危 2.4.0 2.12.7.1, 2.13.4 jackson-databind: use of deeply nested arrays

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42004

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42004 高危 2.4.0 2.12.7.1, 2.13.4 jackson-databind: use of deeply nested arrays

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42004

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42004 高危 2.4.0 2.12.7.1, 2.13.4 jackson-databind: use of deeply nested arrays

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42004

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42004 高危 2.4.0 2.12.7.1, 2.13.4 jackson-databind: use of deeply nested arrays

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42004

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42004 高危 2.4.0 2.12.7.1, 2.13.4 jackson-databind: use of deeply nested arrays

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42004

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42004 高危 2.4.0 2.12.7.1, 2.13.4 jackson-databind: use of deeply nested arrays

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42004

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42004 高危 2.4.0 2.12.7.1, 2.13.4 jackson-databind: use of deeply nested arrays

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42004

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42004 高危 2.4.0 2.12.7.1, 2.13.4 jackson-databind: use of deeply nested arrays

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42004

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42004 高危 2.4.0 2.12.7.1, 2.13.4 jackson-databind: use of deeply nested arrays

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42004

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42004 高危 2.4.0 2.12.7.1, 2.13.4 jackson-databind: use of deeply nested arrays

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42004

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2020-36181 高危 2.2.3 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36181

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36182 高危 2.2.3 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36182

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36183 高危 2.2.3 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36183

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36184 高危 2.2.3 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36184

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36185 高危 2.2.3 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36185

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36186 高危 2.2.3 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36186

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36187 高危 2.2.3 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36187

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36188 高危 2.2.3 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDIConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36188

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36189 高危 2.2.3 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.DriverManagerConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36189

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.2.3 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2021-20190 高危 2.2.3 2.9.10.7, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to javax.swing

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-20190

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-19 17:15 修改: 2026-06-17 03:33

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.4.0 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.4.0 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.4.0 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.4.0 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.4.0 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.4.0 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.4.0 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.6.3 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.6.3 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.6.5 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.6.5 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.6.5 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.6.7 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.9.4 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-databind CVE-2020-25649 高危 2.10.3 2.6.7.4, 2.9.10.7, 2.10.5.1 jackson-databind: FasterXML DOMDeserializer insecure entity expansion is vulnerable to XML external entity (XXE)

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-25649

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-03 17:15 修改: 2026-06-17 03:07

com.fasterxml.jackson.core:jackson-databind CVE-2020-25649 高危 2.10.3 2.6.7.4, 2.9.10.7, 2.10.5.1 jackson-databind: FasterXML DOMDeserializer insecure entity expansion is vulnerable to XML external entity (XXE)

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-25649

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-03 17:15 修改: 2026-06-17 03:07

com.fasterxml.jackson.core:jackson-databind CVE-2020-25649 高危 2.10.3 2.6.7.4, 2.9.10.7, 2.10.5.1 jackson-databind: FasterXML DOMDeserializer insecure entity expansion is vulnerable to XML external entity (XXE)

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-25649

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-03 17:15 修改: 2026-06-17 03:07

com.fasterxml.jackson.core:jackson-databind CVE-2020-25649 高危 2.10.3 2.6.7.4, 2.9.10.7, 2.10.5.1 jackson-databind: FasterXML DOMDeserializer insecure entity expansion is vulnerable to XML external entity (XXE)

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-25649

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-03 17:15 修改: 2026-06-17 03:07

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.10.3 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.10.3 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.10.3 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.10.3 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2021-46877 高危 2.10.3 2.12.6, 2.13.1 jackson-databind: Possible DoS if using JDK serialization to serialize JsonNode

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-46877

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-03-18 22:15 修改: 2026-06-17 04:15

com.fasterxml.jackson.core:jackson-databind CVE-2021-46877 高危 2.10.3 2.12.6, 2.13.1 jackson-databind: Possible DoS if using JDK serialization to serialize JsonNode

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-46877

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-03-18 22:15 修改: 2026-06-17 04:15

com.fasterxml.jackson.core:jackson-databind CVE-2021-46877 高危 2.10.3 2.12.6, 2.13.1 jackson-databind: Possible DoS if using JDK serialization to serialize JsonNode

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-46877

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-03-18 22:15 修改: 2026-06-17 04:15

com.fasterxml.jackson.core:jackson-databind CVE-2021-46877 高危 2.10.3 2.12.6, 2.13.1 jackson-databind: Possible DoS if using JDK serialization to serialize JsonNode

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-46877

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-03-18 22:15 修改: 2026-06-17 04:15

com.fasterxml.jackson.core:jackson-databind CVE-2022-42003 高危 2.10.3 2.12.7.1, 2.13.4.2 jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42003

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2018-12022 高危 2.6.3 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: improper polymorphic deserialization of types from Jodd-db library

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12022

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-03-21 16:00 修改: 2026-06-17 01:37

com.fasterxml.jackson.core:jackson-databind CVE-2018-12022 高危 2.6.3 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: improper polymorphic deserialization of types from Jodd-db library

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12022

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-03-21 16:00 修改: 2026-06-17 01:37

com.fasterxml.jackson.core:jackson-databind CVE-2018-5968 高危 2.6.3 2.8.11.1, 2.9.4, 2.7.9.5 jackson-databind: unsafe deserialization due to incomplete blacklist (incomplete fix for CVE-2017-7525 and CVE-2017-17485)

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-5968

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-01-22 04:29 修改: 2026-06-17 02:01

com.fasterxml.jackson.core:jackson-databind CVE-2018-5968 高危 2.6.3 2.8.11.1, 2.9.4, 2.7.9.5 jackson-databind: unsafe deserialization due to incomplete blacklist (incomplete fix for CVE-2017-7525 and CVE-2017-17485)

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-5968

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-01-22 04:29 修改: 2026-06-17 02:01

com.fasterxml.jackson.core:jackson-databind CVE-2019-12086 高危 2.6.3 2.9.9, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12086

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-05-17 17:29 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12086 高危 2.6.3 2.9.9, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12086

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-05-17 17:29 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-14439 高危 2.6.3 2.9.9.2, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: Polymorphic typing issue related to logback/JNDI

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14439

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-07-30 11:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14439 高危 2.6.3 2.9.9.2, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: Polymorphic typing issue related to logback/JNDI

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14439

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-07-30 11:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14892 高危 2.6.3 2.6.7.3, 2.8.11.5, 2.9.10 jackson-databind: Serialization gadgets in classes of the commons-configuration package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14892

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-03-02 17:15 修改: 2026-06-17 02:19

com.fasterxml.jackson.core:jackson-databind CVE-2019-14892 高危 2.6.3 2.6.7.3, 2.8.11.5, 2.9.10 jackson-databind: Serialization gadgets in classes of the commons-configuration package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14892

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-03-02 17:15 修改: 2026-06-17 02:19

com.fasterxml.jackson.core:jackson-databind CVE-2020-10650 高危 2.6.3 2.9.10.4 A deserialization flaw was discovered in jackson-databind through 2.9. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10650

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-12-26 20:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10650 高危 2.6.3 2.9.10.4 A deserialization flaw was discovered in jackson-databind through 2.9. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10650

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-12-26 20:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10673 高危 2.6.3 2.9.10.4, 2.6.7.4 jackson-databind: mishandles the interaction between serialization gadgets and typing which could result in remote command execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10673

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-03-18 22:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10673 高危 2.6.3 2.9.10.4, 2.6.7.4 jackson-databind: mishandles the interaction between serialization gadgets and typing which could result in remote command execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10673

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-03-18 22:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-24616 高危 2.6.3 2.9.10.6 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to br.com.anteros.dbcp.AnterosDBCPDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24616

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-08-25 18:15 修改: 2026-06-17 03:05

com.fasterxml.jackson.core:jackson-databind CVE-2020-24616 高危 2.6.3 2.9.10.6 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to br.com.anteros.dbcp.AnterosDBCPDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24616

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-08-25 18:15 修改: 2026-06-17 03:05

com.fasterxml.jackson.core:jackson-databind CVE-2020-24750 高危 2.6.3 2.6.7.5, 2.9.10.6 jackson-databind: Serialization gadgets in com.pastdev.httpcomponents.configuration.JndiConfiguration

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24750

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-09-17 19:15 修改: 2026-06-17 03:06

com.fasterxml.jackson.core:jackson-databind CVE-2020-24750 高危 2.6.3 2.6.7.5, 2.9.10.6 jackson-databind: Serialization gadgets in com.pastdev.httpcomponents.configuration.JndiConfiguration

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24750

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-09-17 19:15 修改: 2026-06-17 03:06

com.fasterxml.jackson.core:jackson-databind CVE-2020-25649 高危 2.6.3 2.6.7.4, 2.9.10.7, 2.10.5.1 jackson-databind: FasterXML DOMDeserializer insecure entity expansion is vulnerable to XML external entity (XXE)

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-25649

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-03 17:15 修改: 2026-06-17 03:07

com.fasterxml.jackson.core:jackson-databind CVE-2020-25649 高危 2.6.3 2.6.7.4, 2.9.10.7, 2.10.5.1 jackson-databind: FasterXML DOMDeserializer insecure entity expansion is vulnerable to XML external entity (XXE)

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-25649

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-03 17:15 修改: 2026-06-17 03:07

com.fasterxml.jackson.core:jackson-databind CVE-2020-35490 高危 2.6.3 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35490

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35490 高危 2.6.3 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35490

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35491 高危 2.6.3 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35491

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35491 高危 2.6.3 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35491

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35728 高危 2.6.3 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.oracle.wls.shaded.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35728

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-27 05:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-35728 高危 2.6.3 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.oracle.wls.shaded.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35728

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-27 05:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36179 高危 2.6.3 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36179

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36179 高危 2.6.3 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36179

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36180 高危 2.6.3 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36180

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36180 高危 2.6.3 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36180

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36181 高危 2.6.3 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36181

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36181 高危 2.6.3 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36181

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36182 高危 2.6.3 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36182

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36182 高危 2.6.3 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36182

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36183 高危 2.6.3 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36183

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36183 高危 2.6.3 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36183

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36184 高危 2.6.3 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36184

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36184 高危 2.6.3 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36184

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36185 高危 2.6.3 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36185

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36185 高危 2.6.3 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36185

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36186 高危 2.6.3 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36186

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36186 高危 2.6.3 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36186

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36187 高危 2.6.3 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36187

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36187 高危 2.6.3 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36187

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36188 高危 2.6.3 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDIConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36188

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36188 高危 2.6.3 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDIConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36188

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36189 高危 2.6.3 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.DriverManagerConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36189

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36189 高危 2.6.3 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.DriverManagerConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36189

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.6.3 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.6.3 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2021-20190 高危 2.6.3 2.9.10.7, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to javax.swing

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-20190

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-19 17:15 修改: 2026-06-17 03:33

com.fasterxml.jackson.core:jackson-databind CVE-2021-20190 高危 2.6.3 2.9.10.7, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to javax.swing

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-20190

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-19 17:15 修改: 2026-06-17 03:33

com.fasterxml.jackson.core:jackson-databind CVE-2022-42003 高危 2.6.3 2.12.7.1, 2.13.4.2 jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42003

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42003 高危 2.6.3 2.12.7.1, 2.13.4.2 jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42003

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42004 高危 2.6.3 2.12.7.1, 2.13.4 jackson-databind: use of deeply nested arrays

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42004

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42004 高危 2.6.3 2.12.7.1, 2.13.4 jackson-databind: use of deeply nested arrays

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42004

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42003 高危 2.10.3 2.12.7.1, 2.13.4.2 jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42003

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42003 高危 2.10.3 2.12.7.1, 2.13.4.2 jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42003

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42003 高危 2.10.3 2.12.7.1, 2.13.4.2 jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42003

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42004 高危 2.10.3 2.12.7.1, 2.13.4 jackson-databind: use of deeply nested arrays

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42004

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42004 高危 2.10.3 2.12.7.1, 2.13.4 jackson-databind: use of deeply nested arrays

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42004

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42004 高危 2.10.3 2.12.7.1, 2.13.4 jackson-databind: use of deeply nested arrays

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42004

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42004 高危 2.10.3 2.12.7.1, 2.13.4 jackson-databind: use of deeply nested arrays

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42004

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.12.0 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.12.0 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2021-46877 高危 2.12.0 2.12.6, 2.13.1 jackson-databind: Possible DoS if using JDK serialization to serialize JsonNode

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-46877

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-03-18 22:15 修改: 2026-06-17 04:15

com.fasterxml.jackson.core:jackson-databind CVE-2021-46877 高危 2.12.0 2.12.6, 2.13.1 jackson-databind: Possible DoS if using JDK serialization to serialize JsonNode

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-46877

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-03-18 22:15 修改: 2026-06-17 04:15

com.fasterxml.jackson.core:jackson-databind CVE-2022-42003 高危 2.12.0 2.12.7.1, 2.13.4.2 jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42003

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42003 高危 2.12.0 2.12.7.1, 2.13.4.2 jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42003

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42004 高危 2.12.0 2.12.7.1, 2.13.4 jackson-databind: use of deeply nested arrays

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42004

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42004 高危 2.12.0 2.12.7.1, 2.13.4 jackson-databind: use of deeply nested arrays

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42004

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.amazonaws:aws-java-sdk-s3 CVE-2022-31159 高危 1.11.563 1.12.261 Partial Path Traversal in com.amazonaws:aws-java-sdk-s3

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-31159

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-07-15 18:15 修改: 2026-06-17 04:44

com.cedarsoftware:json-io CVE-2023-34610 高危 2.5.1 4.14.1 json-io: cyclic dependencies in a crafted object could result in Dos

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34610

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-06-14 14:15 修改: 2026-06-17 06:03

com.cedarsoftware:json-io CVE-2023-34610 高危 2.5.1 4.14.1 json-io: cyclic dependencies in a crafted object could result in Dos

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34610

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-06-14 14:15 修改: 2026-06-17 06:03

com.cedarsoftware:json-io CVE-2023-34610 高危 2.5.1 4.14.1 json-io: cyclic dependencies in a crafted object could result in Dos

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34610

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-06-14 14:15 修改: 2026-06-17 06:03

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.10.3 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.10.3 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.10.3 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.10.3 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.12.0 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.12.0 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.13.4 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:c76c46fbc2b97eff26d963af31fe75ddfe6c417472a4541aa7851fbb22f837ab

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.13.4 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:903b3b76e9e99545b0a9850bcf41a292027b9e2141b2a43cb05f972f3aa2628d

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.2.3 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.4.0 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.4.0 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.4.0 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.4.0 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.4.0 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-core CVE-2025-52999 高危 2.4.0 2.15.0 com.fasterxml.jackson.core/jackson-core: jackson-core Potential StackoverflowError

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-52999

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-06-25 17:15 修改: 2026-06-17 09:37

com.fasterxml.jackson.core:jackson-databind CVE-2018-12022 高危 2.2.3 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: improper polymorphic deserialization of types from Jodd-db library

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12022

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-03-21 16:00 修改: 2026-06-17 01:37

com.fasterxml.jackson.core:jackson-databind CVE-2018-5968 高危 2.2.3 2.8.11.1, 2.9.4, 2.7.9.5 jackson-databind: unsafe deserialization due to incomplete blacklist (incomplete fix for CVE-2017-7525 and CVE-2017-17485)

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-5968

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-01-22 04:29 修改: 2026-06-17 02:01

com.fasterxml.jackson.core:jackson-databind CVE-2019-12086 高危 2.2.3 2.9.9, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12086

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-05-17 17:29 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-14439 高危 2.2.3 2.9.9.2, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: Polymorphic typing issue related to logback/JNDI

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14439

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-07-30 11:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14892 高危 2.2.3 2.6.7.3, 2.8.11.5, 2.9.10 jackson-databind: Serialization gadgets in classes of the commons-configuration package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14892

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-03-02 17:15 修改: 2026-06-17 02:19

com.fasterxml.jackson.core:jackson-databind CVE-2020-10650 高危 2.2.3 2.9.10.4 A deserialization flaw was discovered in jackson-databind through 2.9. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10650

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-12-26 20:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10673 高危 2.2.3 2.9.10.4, 2.6.7.4 jackson-databind: mishandles the interaction between serialization gadgets and typing which could result in remote command execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10673

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-03-18 22:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-24616 高危 2.2.3 2.9.10.6 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to br.com.anteros.dbcp.AnterosDBCPDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24616

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-08-25 18:15 修改: 2026-06-17 03:05

com.fasterxml.jackson.core:jackson-databind CVE-2020-24750 高危 2.2.3 2.6.7.5, 2.9.10.6 jackson-databind: Serialization gadgets in com.pastdev.httpcomponents.configuration.JndiConfiguration

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24750

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-09-17 19:15 修改: 2026-06-17 03:06

com.fasterxml.jackson.core:jackson-databind CVE-2020-35490 高危 2.2.3 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35490

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35491 高危 2.2.3 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35491

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35728 高危 2.2.3 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.oracle.wls.shaded.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35728

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-27 05:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36179 高危 2.2.3 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36179

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36180 高危 2.2.3 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36180

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2018-12022 高危 2.4.0 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: improper polymorphic deserialization of types from Jodd-db library

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12022

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-03-21 16:00 修改: 2026-06-17 01:37

com.fasterxml.jackson.core:jackson-databind CVE-2018-12022 高危 2.4.0 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: improper polymorphic deserialization of types from Jodd-db library

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12022

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-03-21 16:00 修改: 2026-06-17 01:37

com.fasterxml.jackson.core:jackson-databind CVE-2018-12022 高危 2.4.0 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: improper polymorphic deserialization of types from Jodd-db library

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12022

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-03-21 16:00 修改: 2026-06-17 01:37

com.fasterxml.jackson.core:jackson-databind CVE-2018-12022 高危 2.4.0 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: improper polymorphic deserialization of types from Jodd-db library

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12022

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-03-21 16:00 修改: 2026-06-17 01:37

com.fasterxml.jackson.core:jackson-databind CVE-2018-12022 高危 2.4.0 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: improper polymorphic deserialization of types from Jodd-db library

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12022

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-03-21 16:00 修改: 2026-06-17 01:37

com.fasterxml.jackson.core:jackson-databind CVE-2018-12022 高危 2.4.0 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: improper polymorphic deserialization of types from Jodd-db library

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12022

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-03-21 16:00 修改: 2026-06-17 01:37

com.fasterxml.jackson.core:jackson-databind CVE-2018-12022 高危 2.4.0 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: improper polymorphic deserialization of types from Jodd-db library

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12022

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-03-21 16:00 修改: 2026-06-17 01:37

com.fasterxml.jackson.core:jackson-databind CVE-2018-12022 高危 2.4.0 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: improper polymorphic deserialization of types from Jodd-db library

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12022

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-03-21 16:00 修改: 2026-06-17 01:37

com.fasterxml.jackson.core:jackson-databind CVE-2018-12022 高危 2.4.0 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: improper polymorphic deserialization of types from Jodd-db library

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12022

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-03-21 16:00 修改: 2026-06-17 01:37

com.fasterxml.jackson.core:jackson-databind CVE-2018-12022 高危 2.6.5 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: improper polymorphic deserialization of types from Jodd-db library

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12022

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-03-21 16:00 修改: 2026-06-17 01:37

com.fasterxml.jackson.core:jackson-databind CVE-2018-12022 高危 2.6.5 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: improper polymorphic deserialization of types from Jodd-db library

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12022

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-03-21 16:00 修改: 2026-06-17 01:37

com.fasterxml.jackson.core:jackson-databind CVE-2018-12022 高危 2.6.5 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: improper polymorphic deserialization of types from Jodd-db library

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12022

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-03-21 16:00 修改: 2026-06-17 01:37

com.fasterxml.jackson.core:jackson-databind CVE-2018-5968 高危 2.6.5 2.8.11.1, 2.9.4, 2.7.9.5 jackson-databind: unsafe deserialization due to incomplete blacklist (incomplete fix for CVE-2017-7525 and CVE-2017-17485)

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-5968

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-01-22 04:29 修改: 2026-06-17 02:01

com.fasterxml.jackson.core:jackson-databind CVE-2018-5968 高危 2.6.5 2.8.11.1, 2.9.4, 2.7.9.5 jackson-databind: unsafe deserialization due to incomplete blacklist (incomplete fix for CVE-2017-7525 and CVE-2017-17485)

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-5968

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-01-22 04:29 修改: 2026-06-17 02:01

com.fasterxml.jackson.core:jackson-databind CVE-2018-5968 高危 2.6.5 2.8.11.1, 2.9.4, 2.7.9.5 jackson-databind: unsafe deserialization due to incomplete blacklist (incomplete fix for CVE-2017-7525 and CVE-2017-17485)

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-5968

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-01-22 04:29 修改: 2026-06-17 02:01

com.fasterxml.jackson.core:jackson-databind CVE-2019-12086 高危 2.6.5 2.9.9, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12086

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-05-17 17:29 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12086 高危 2.6.5 2.9.9, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12086

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-05-17 17:29 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12086 高危 2.6.5 2.9.9, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12086

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-05-17 17:29 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-14439 高危 2.6.5 2.9.9.2, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: Polymorphic typing issue related to logback/JNDI

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14439

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-07-30 11:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14439 高危 2.6.5 2.9.9.2, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: Polymorphic typing issue related to logback/JNDI

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14439

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-07-30 11:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14439 高危 2.6.5 2.9.9.2, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: Polymorphic typing issue related to logback/JNDI

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14439

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-07-30 11:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14892 高危 2.6.5 2.6.7.3, 2.8.11.5, 2.9.10 jackson-databind: Serialization gadgets in classes of the commons-configuration package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14892

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-03-02 17:15 修改: 2026-06-17 02:19

com.fasterxml.jackson.core:jackson-databind CVE-2019-14892 高危 2.6.5 2.6.7.3, 2.8.11.5, 2.9.10 jackson-databind: Serialization gadgets in classes of the commons-configuration package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14892

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-03-02 17:15 修改: 2026-06-17 02:19

com.fasterxml.jackson.core:jackson-databind CVE-2019-14892 高危 2.6.5 2.6.7.3, 2.8.11.5, 2.9.10 jackson-databind: Serialization gadgets in classes of the commons-configuration package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14892

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-03-02 17:15 修改: 2026-06-17 02:19

com.fasterxml.jackson.core:jackson-databind CVE-2020-10650 高危 2.6.5 2.9.10.4 A deserialization flaw was discovered in jackson-databind through 2.9. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10650

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-12-26 20:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10650 高危 2.6.5 2.9.10.4 A deserialization flaw was discovered in jackson-databind through 2.9. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10650

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-12-26 20:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10650 高危 2.6.5 2.9.10.4 A deserialization flaw was discovered in jackson-databind through 2.9. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10650

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-12-26 20:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10673 高危 2.6.5 2.9.10.4, 2.6.7.4 jackson-databind: mishandles the interaction between serialization gadgets and typing which could result in remote command execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10673

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-03-18 22:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10673 高危 2.6.5 2.9.10.4, 2.6.7.4 jackson-databind: mishandles the interaction between serialization gadgets and typing which could result in remote command execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10673

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-03-18 22:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10673 高危 2.6.5 2.9.10.4, 2.6.7.4 jackson-databind: mishandles the interaction between serialization gadgets and typing which could result in remote command execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10673

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-03-18 22:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-24616 高危 2.6.5 2.9.10.6 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to br.com.anteros.dbcp.AnterosDBCPDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24616

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-08-25 18:15 修改: 2026-06-17 03:05

com.fasterxml.jackson.core:jackson-databind CVE-2020-24616 高危 2.6.5 2.9.10.6 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to br.com.anteros.dbcp.AnterosDBCPDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24616

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-08-25 18:15 修改: 2026-06-17 03:05

com.fasterxml.jackson.core:jackson-databind CVE-2020-24616 高危 2.6.5 2.9.10.6 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to br.com.anteros.dbcp.AnterosDBCPDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24616

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-08-25 18:15 修改: 2026-06-17 03:05

com.fasterxml.jackson.core:jackson-databind CVE-2020-24750 高危 2.6.5 2.6.7.5, 2.9.10.6 jackson-databind: Serialization gadgets in com.pastdev.httpcomponents.configuration.JndiConfiguration

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24750

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-09-17 19:15 修改: 2026-06-17 03:06

com.fasterxml.jackson.core:jackson-databind CVE-2020-24750 高危 2.6.5 2.6.7.5, 2.9.10.6 jackson-databind: Serialization gadgets in com.pastdev.httpcomponents.configuration.JndiConfiguration

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24750

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-09-17 19:15 修改: 2026-06-17 03:06

com.fasterxml.jackson.core:jackson-databind CVE-2020-24750 高危 2.6.5 2.6.7.5, 2.9.10.6 jackson-databind: Serialization gadgets in com.pastdev.httpcomponents.configuration.JndiConfiguration

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24750

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-09-17 19:15 修改: 2026-06-17 03:06

com.fasterxml.jackson.core:jackson-databind CVE-2020-25649 高危 2.6.5 2.6.7.4, 2.9.10.7, 2.10.5.1 jackson-databind: FasterXML DOMDeserializer insecure entity expansion is vulnerable to XML external entity (XXE)

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-25649

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-03 17:15 修改: 2026-06-17 03:07

com.fasterxml.jackson.core:jackson-databind CVE-2020-25649 高危 2.6.5 2.6.7.4, 2.9.10.7, 2.10.5.1 jackson-databind: FasterXML DOMDeserializer insecure entity expansion is vulnerable to XML external entity (XXE)

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-25649

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-03 17:15 修改: 2026-06-17 03:07

com.fasterxml.jackson.core:jackson-databind CVE-2020-25649 高危 2.6.5 2.6.7.4, 2.9.10.7, 2.10.5.1 jackson-databind: FasterXML DOMDeserializer insecure entity expansion is vulnerable to XML external entity (XXE)

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-25649

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-03 17:15 修改: 2026-06-17 03:07

com.fasterxml.jackson.core:jackson-databind CVE-2020-35490 高危 2.6.5 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35490

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35490 高危 2.6.5 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35490

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35490 高危 2.6.5 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35490

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35491 高危 2.6.5 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35491

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35491 高危 2.6.5 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35491

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35491 高危 2.6.5 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35491

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35728 高危 2.6.5 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.oracle.wls.shaded.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35728

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-27 05:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-35728 高危 2.6.5 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.oracle.wls.shaded.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35728

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-27 05:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-35728 高危 2.6.5 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.oracle.wls.shaded.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35728

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-27 05:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36179 高危 2.6.5 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36179

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36179 高危 2.6.5 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36179

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36179 高危 2.6.5 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36179

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36180 高危 2.6.5 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36180

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36180 高危 2.6.5 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36180

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36180 高危 2.6.5 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36180

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36181 高危 2.6.5 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36181

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36181 高危 2.6.5 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36181

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36181 高危 2.6.5 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36181

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36182 高危 2.6.5 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36182

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36182 高危 2.6.5 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36182

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36182 高危 2.6.5 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36182

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36183 高危 2.6.5 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36183

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36183 高危 2.6.5 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36183

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36183 高危 2.6.5 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36183

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36184 高危 2.6.5 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36184

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36184 高危 2.6.5 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36184

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36184 高危 2.6.5 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36184

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36185 高危 2.6.5 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36185

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36185 高危 2.6.5 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36185

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36185 高危 2.6.5 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36185

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36186 高危 2.6.5 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36186

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36186 高危 2.6.5 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36186

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36186 高危 2.6.5 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36186

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36187 高危 2.6.5 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36187

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36187 高危 2.6.5 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36187

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36187 高危 2.6.5 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36187

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36188 高危 2.6.5 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDIConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36188

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36188 高危 2.6.5 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDIConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36188

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36188 高危 2.6.5 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDIConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36188

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36189 高危 2.6.5 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.DriverManagerConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36189

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36189 高危 2.6.5 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.DriverManagerConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36189

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36189 高危 2.6.5 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.DriverManagerConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36189

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.6.5 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.6.5 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.6.5 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2021-20190 高危 2.6.5 2.9.10.7, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to javax.swing

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-20190

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-19 17:15 修改: 2026-06-17 03:33

com.fasterxml.jackson.core:jackson-databind CVE-2021-20190 高危 2.6.5 2.9.10.7, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to javax.swing

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-20190

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-19 17:15 修改: 2026-06-17 03:33

com.fasterxml.jackson.core:jackson-databind CVE-2021-20190 高危 2.6.5 2.9.10.7, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to javax.swing

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-20190

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-19 17:15 修改: 2026-06-17 03:33

com.fasterxml.jackson.core:jackson-databind CVE-2022-42003 高危 2.6.5 2.12.7.1, 2.13.4.2 jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42003

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42003 高危 2.6.5 2.12.7.1, 2.13.4.2 jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42003

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42003 高危 2.6.5 2.12.7.1, 2.13.4.2 jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42003

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42004 高危 2.6.5 2.12.7.1, 2.13.4 jackson-databind: use of deeply nested arrays

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42004

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42004 高危 2.6.5 2.12.7.1, 2.13.4 jackson-databind: use of deeply nested arrays

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42004

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42004 高危 2.6.5 2.12.7.1, 2.13.4 jackson-databind: use of deeply nested arrays

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42004

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2018-12022 高危 2.4.0 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: improper polymorphic deserialization of types from Jodd-db library

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12022

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-03-21 16:00 修改: 2026-06-17 01:37

com.fasterxml.jackson.core:jackson-databind CVE-2018-12022 高危 2.4.0 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: improper polymorphic deserialization of types from Jodd-db library

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12022

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-03-21 16:00 修改: 2026-06-17 01:37

com.fasterxml.jackson.core:jackson-databind CVE-2018-12022 高危 2.4.0 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: improper polymorphic deserialization of types from Jodd-db library

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12022

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2019-03-21 16:00 修改: 2026-06-17 01:37

com.fasterxml.jackson.core:jackson-databind CVE-2018-12022 高危 2.4.0 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: improper polymorphic deserialization of types from Jodd-db library

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12022

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2019-03-21 16:00 修改: 2026-06-17 01:37

com.fasterxml.jackson.core:jackson-databind CVE-2018-5968 高危 2.4.0 2.8.11.1, 2.9.4, 2.7.9.5 jackson-databind: unsafe deserialization due to incomplete blacklist (incomplete fix for CVE-2017-7525 and CVE-2017-17485)

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-5968

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-01-22 04:29 修改: 2026-06-17 02:01

com.fasterxml.jackson.core:jackson-databind CVE-2018-5968 高危 2.4.0 2.8.11.1, 2.9.4, 2.7.9.5 jackson-databind: unsafe deserialization due to incomplete blacklist (incomplete fix for CVE-2017-7525 and CVE-2017-17485)

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-5968

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-01-22 04:29 修改: 2026-06-17 02:01

com.fasterxml.jackson.core:jackson-databind CVE-2018-5968 高危 2.4.0 2.8.11.1, 2.9.4, 2.7.9.5 jackson-databind: unsafe deserialization due to incomplete blacklist (incomplete fix for CVE-2017-7525 and CVE-2017-17485)

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-5968

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-01-22 04:29 修改: 2026-06-17 02:01

com.fasterxml.jackson.core:jackson-databind CVE-2018-5968 高危 2.4.0 2.8.11.1, 2.9.4, 2.7.9.5 jackson-databind: unsafe deserialization due to incomplete blacklist (incomplete fix for CVE-2017-7525 and CVE-2017-17485)

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-5968

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-01-22 04:29 修改: 2026-06-17 02:01

com.fasterxml.jackson.core:jackson-databind CVE-2018-5968 高危 2.4.0 2.8.11.1, 2.9.4, 2.7.9.5 jackson-databind: unsafe deserialization due to incomplete blacklist (incomplete fix for CVE-2017-7525 and CVE-2017-17485)

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-5968

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-01-22 04:29 修改: 2026-06-17 02:01

com.fasterxml.jackson.core:jackson-databind CVE-2018-5968 高危 2.4.0 2.8.11.1, 2.9.4, 2.7.9.5 jackson-databind: unsafe deserialization due to incomplete blacklist (incomplete fix for CVE-2017-7525 and CVE-2017-17485)

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-5968

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-01-22 04:29 修改: 2026-06-17 02:01

com.fasterxml.jackson.core:jackson-databind CVE-2018-5968 高危 2.4.0 2.8.11.1, 2.9.4, 2.7.9.5 jackson-databind: unsafe deserialization due to incomplete blacklist (incomplete fix for CVE-2017-7525 and CVE-2017-17485)

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-5968

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-01-22 04:29 修改: 2026-06-17 02:01

com.fasterxml.jackson.core:jackson-databind CVE-2018-5968 高危 2.4.0 2.8.11.1, 2.9.4, 2.7.9.5 jackson-databind: unsafe deserialization due to incomplete blacklist (incomplete fix for CVE-2017-7525 and CVE-2017-17485)

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-5968

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2018-01-22 04:29 修改: 2026-06-17 02:01

com.fasterxml.jackson.core:jackson-databind CVE-2018-5968 高危 2.4.0 2.8.11.1, 2.9.4, 2.7.9.5 jackson-databind: unsafe deserialization due to incomplete blacklist (incomplete fix for CVE-2017-7525 and CVE-2017-17485)

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-5968

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2018-01-22 04:29 修改: 2026-06-17 02:01

com.fasterxml.jackson.core:jackson-databind CVE-2018-5968 高危 2.4.0 2.8.11.1, 2.9.4, 2.7.9.5 jackson-databind: unsafe deserialization due to incomplete blacklist (incomplete fix for CVE-2017-7525 and CVE-2017-17485)

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-5968

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2018-01-22 04:29 修改: 2026-06-17 02:01

com.fasterxml.jackson.core:jackson-databind CVE-2018-5968 高危 2.4.0 2.8.11.1, 2.9.4, 2.7.9.5 jackson-databind: unsafe deserialization due to incomplete blacklist (incomplete fix for CVE-2017-7525 and CVE-2017-17485)

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-5968

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2018-01-22 04:29 修改: 2026-06-17 02:01

com.fasterxml.jackson.core:jackson-databind CVE-2018-5968 高危 2.4.0 2.8.11.1, 2.9.4, 2.7.9.5 jackson-databind: unsafe deserialization due to incomplete blacklist (incomplete fix for CVE-2017-7525 and CVE-2017-17485)

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-5968

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2018-01-22 04:29 修改: 2026-06-17 02:01

com.fasterxml.jackson.core:jackson-databind CVE-2018-5968 高危 2.4.0 2.8.11.1, 2.9.4, 2.7.9.5 jackson-databind: unsafe deserialization due to incomplete blacklist (incomplete fix for CVE-2017-7525 and CVE-2017-17485)

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-5968

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2018-01-22 04:29 修改: 2026-06-17 02:01

com.fasterxml.jackson.core:jackson-databind CVE-2019-12086 高危 2.4.0 2.9.9, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12086

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-05-17 17:29 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2018-12022 高危 2.6.7.2 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: improper polymorphic deserialization of types from Jodd-db library

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12022

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-03-21 16:00 修改: 2026-06-17 01:37

com.fasterxml.jackson.core:jackson-databind CVE-2018-5968 高危 2.6.7.2 2.8.11.1, 2.9.4, 2.7.9.5 jackson-databind: unsafe deserialization due to incomplete blacklist (incomplete fix for CVE-2017-7525 and CVE-2017-17485)

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-5968

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2018-01-22 04:29 修改: 2026-06-17 02:01

com.fasterxml.jackson.core:jackson-databind CVE-2019-12086 高危 2.6.7.2 2.9.9, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12086

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-05-17 17:29 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-14439 高危 2.6.7.2 2.9.9.2, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: Polymorphic typing issue related to logback/JNDI

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14439

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-07-30 11:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14892 高危 2.6.7.2 2.6.7.3, 2.8.11.5, 2.9.10 jackson-databind: Serialization gadgets in classes of the commons-configuration package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14892

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-03-02 17:15 修改: 2026-06-17 02:19

com.fasterxml.jackson.core:jackson-databind CVE-2020-10650 高危 2.6.7.2 2.9.10.4 A deserialization flaw was discovered in jackson-databind through 2.9. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10650

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-26 20:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10673 高危 2.6.7.2 2.9.10.4, 2.6.7.4 jackson-databind: mishandles the interaction between serialization gadgets and typing which could result in remote command execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10673

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-03-18 22:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-24616 高危 2.6.7.2 2.9.10.6 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to br.com.anteros.dbcp.AnterosDBCPDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24616

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-08-25 18:15 修改: 2026-06-17 03:05

com.fasterxml.jackson.core:jackson-databind CVE-2020-24750 高危 2.6.7.2 2.6.7.5, 2.9.10.6 jackson-databind: Serialization gadgets in com.pastdev.httpcomponents.configuration.JndiConfiguration

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24750

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-09-17 19:15 修改: 2026-06-17 03:06

com.fasterxml.jackson.core:jackson-databind CVE-2020-25649 高危 2.6.7.2 2.6.7.4, 2.9.10.7, 2.10.5.1 jackson-databind: FasterXML DOMDeserializer insecure entity expansion is vulnerable to XML external entity (XXE)

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-25649

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-03 17:15 修改: 2026-06-17 03:07

com.fasterxml.jackson.core:jackson-databind CVE-2020-35490 高危 2.6.7.2 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35490

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35491 高危 2.6.7.2 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35491

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35728 高危 2.6.7.2 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.oracle.wls.shaded.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35728

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-27 05:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36179 高危 2.6.7.2 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36179

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36180 高危 2.6.7.2 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36180

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36181 高危 2.6.7.2 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36181

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36182 高危 2.6.7.2 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36182

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36183 高危 2.6.7.2 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36183

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36184 高危 2.6.7.2 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36184

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36185 高危 2.6.7.2 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36185

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36186 高危 2.6.7.2 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36186

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36187 高危 2.6.7.2 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36187

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36188 高危 2.6.7.2 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDIConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36188

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36189 高危 2.6.7.2 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.DriverManagerConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36189

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.6.7.2 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2021-20190 高危 2.6.7.2 2.9.10.7, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to javax.swing

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-20190

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-19 17:15 修改: 2026-06-17 03:33

com.fasterxml.jackson.core:jackson-databind CVE-2022-42003 高危 2.6.7.2 2.12.7.1, 2.13.4.2 jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42003

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42004 高危 2.6.7.2 2.12.7.1, 2.13.4 jackson-databind: use of deeply nested arrays

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42004

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2019-12086 高危 2.4.0 2.9.9, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12086

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-05-17 17:29 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12086 高危 2.4.0 2.9.9, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12086

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-05-17 17:29 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12086 高危 2.4.0 2.9.9, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12086

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-05-17 17:29 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12086 高危 2.4.0 2.9.9, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12086

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-05-17 17:29 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12086 高危 2.4.0 2.9.9, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12086

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-05-17 17:29 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12086 高危 2.4.0 2.9.9, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12086

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-05-17 17:29 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12086 高危 2.4.0 2.9.9, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12086

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-05-17 17:29 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12086 高危 2.4.0 2.9.9, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12086

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-05-17 17:29 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12086 高危 2.4.0 2.9.9, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12086

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-05-17 17:29 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12086 高危 2.4.0 2.9.9, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12086

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-05-17 17:29 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12086 高危 2.4.0 2.9.9, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12086

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2019-05-17 17:29 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12086 高危 2.4.0 2.9.9, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12086

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2019-05-17 17:29 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-14439 高危 2.4.0 2.9.9.2, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: Polymorphic typing issue related to logback/JNDI

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14439

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-07-30 11:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14439 高危 2.4.0 2.9.9.2, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: Polymorphic typing issue related to logback/JNDI

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14439

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-07-30 11:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14439 高危 2.4.0 2.9.9.2, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: Polymorphic typing issue related to logback/JNDI

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14439

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-07-30 11:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14439 高危 2.4.0 2.9.9.2, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: Polymorphic typing issue related to logback/JNDI

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14439

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-07-30 11:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14439 高危 2.4.0 2.9.9.2, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: Polymorphic typing issue related to logback/JNDI

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14439

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-07-30 11:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14439 高危 2.4.0 2.9.9.2, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: Polymorphic typing issue related to logback/JNDI

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14439

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-07-30 11:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14439 高危 2.4.0 2.9.9.2, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: Polymorphic typing issue related to logback/JNDI

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14439

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-07-30 11:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14439 高危 2.4.0 2.9.9.2, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: Polymorphic typing issue related to logback/JNDI

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14439

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-07-30 11:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14439 高危 2.4.0 2.9.9.2, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: Polymorphic typing issue related to logback/JNDI

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14439

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-07-30 11:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2018-12022 高危 2.9.4 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: improper polymorphic deserialization of types from Jodd-db library

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12022

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-03-21 16:00 修改: 2026-06-17 01:37

com.fasterxml.jackson.core:jackson-databind CVE-2018-12023 高危 2.9.4 2.7.9.4, 2.8.11.2, 2.9.6 jackson-databind: improper polymorphic deserialization of types from Oracle JDBC driver

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12023

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-03-21 16:00 修改: 2026-06-17 01:37

com.fasterxml.jackson.core:jackson-databind CVE-2019-12086 高危 2.9.4 2.9.9, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12086

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-05-17 17:29 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-14439 高危 2.9.4 2.9.9.2, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: Polymorphic typing issue related to logback/JNDI

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14439

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-07-30 11:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14892 高危 2.9.4 2.6.7.3, 2.8.11.5, 2.9.10 jackson-databind: Serialization gadgets in classes of the commons-configuration package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14892

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-03-02 17:15 修改: 2026-06-17 02:19

com.fasterxml.jackson.core:jackson-databind CVE-2019-14893 高危 2.9.4 2.9.10 jackson-databind: Serialization gadgets in classes of the xalan package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14893

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-03-02 21:15 修改: 2026-06-17 02:19

com.fasterxml.jackson.core:jackson-databind CVE-2020-10650 高危 2.9.4 2.9.10.4 A deserialization flaw was discovered in jackson-databind through 2.9. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10650

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-12-26 20:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10672 高危 2.9.4 2.9.10.4 jackson-databind: mishandles the interaction between serialization gadgets and typing which could result in remote command execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10672

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-03-18 22:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10673 高危 2.9.4 2.9.10.4, 2.6.7.4 jackson-databind: mishandles the interaction between serialization gadgets and typing which could result in remote command execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10673

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-03-18 22:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10968 高危 2.9.4 2.9.10.4 jackson-databind: Serialization gadgets in org.aoju.bus.proxy.provider.*.RmiProvider

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10968

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-03-26 13:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10969 高危 2.9.4 2.9.10.4 jackson-databind: Serialization gadgets in javax.swing.JEditorPane

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10969

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-03-26 13:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-11111 高危 2.9.4 2.9.10.4 jackson-databind: Serialization gadgets in org.apache.activemq.jms.pool.XaPooledConnectionFactory

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-11111

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-03-31 05:15 修改: 2026-06-17 02:49

com.fasterxml.jackson.core:jackson-databind CVE-2020-11112 高危 2.9.4 2.9.10.4 jackson-databind: Serialization gadgets in org.apache.commons.proxy.provider.remoting.RmiProvider

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-11112

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-03-31 05:15 修改: 2026-06-17 02:49

com.fasterxml.jackson.core:jackson-databind CVE-2020-11113 高危 2.9.4 2.9.10.4 jackson-databind: Serialization gadgets in org.apache.openjpa.ee.WASRegistryManagedRuntime

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-11113

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-03-31 05:15 修改: 2026-06-17 02:49

com.fasterxml.jackson.core:jackson-databind CVE-2020-11619 高危 2.9.4 2.9.10.4 jackson-databind: Serialization gadgets in org.springframework:spring-aop

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-11619

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-04-07 23:15 修改: 2026-06-17 02:50

com.fasterxml.jackson.core:jackson-databind CVE-2020-11620 高危 2.9.4 2.9.10.4 jackson-databind: Serialization gadgets in commons-jelly:commons-jelly

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-11620

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-04-07 23:15 修改: 2026-06-17 02:50

com.fasterxml.jackson.core:jackson-databind CVE-2020-14060 高危 2.9.4 2.9.10.5 jackson-databind: serialization in oadd.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-14060

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-06-14 21:15 修改: 2026-06-17 02:54

com.fasterxml.jackson.core:jackson-databind CVE-2020-14061 高危 2.9.4 2.9.10.5 jackson-databind: serialization in weblogic/oracle-aqjms

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-14061

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-06-14 20:15 修改: 2026-06-17 02:54

com.fasterxml.jackson.core:jackson-databind CVE-2020-14062 高危 2.9.4 2.9.10.5 jackson-databind: serialization in com.sun.org.apache.xalan.internal.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-14062

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-06-14 20:15 修改: 2026-06-17 02:54

com.fasterxml.jackson.core:jackson-databind CVE-2020-14195 高危 2.9.4 2.9.10.5 jackson-databind: serialization in org.jsecurity.realm.jndi.JndiRealmFactory

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-14195

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-06-16 16:15 修改: 2026-06-17 02:54

com.fasterxml.jackson.core:jackson-databind CVE-2020-24616 高危 2.9.4 2.9.10.6 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to br.com.anteros.dbcp.AnterosDBCPDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24616

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-08-25 18:15 修改: 2026-06-17 03:05

com.fasterxml.jackson.core:jackson-databind CVE-2020-24750 高危 2.9.4 2.6.7.5, 2.9.10.6 jackson-databind: Serialization gadgets in com.pastdev.httpcomponents.configuration.JndiConfiguration

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24750

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-09-17 19:15 修改: 2026-06-17 03:06

com.fasterxml.jackson.core:jackson-databind CVE-2020-25649 高危 2.9.4 2.6.7.4, 2.9.10.7, 2.10.5.1 jackson-databind: FasterXML DOMDeserializer insecure entity expansion is vulnerable to XML external entity (XXE)

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-25649

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-12-03 17:15 修改: 2026-06-17 03:07

com.fasterxml.jackson.core:jackson-databind CVE-2020-35490 高危 2.9.4 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35490

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35491 高危 2.9.4 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35491

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35728 高危 2.9.4 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.oracle.wls.shaded.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35728

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-12-27 05:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36179 高危 2.9.4 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36179

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36180 高危 2.9.4 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36180

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36181 高危 2.9.4 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36181

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36182 高危 2.9.4 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36182

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36183 高危 2.9.4 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36183

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36184 高危 2.9.4 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36184

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36185 高危 2.9.4 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36185

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36186 高危 2.9.4 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36186

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36187 高危 2.9.4 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36187

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36188 高危 2.9.4 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.JNDIConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36188

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36189 高危 2.9.4 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.DriverManagerConnectionSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36189

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36518 高危 2.9.4 2.13.2.1, 2.12.6.1 jackson-databind: denial of service via a large depth of nested objects

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36518

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-03-11 07:15 修改: 2026-06-17 03:15

com.fasterxml.jackson.core:jackson-databind CVE-2021-20190 高危 2.9.4 2.9.10.7, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to javax.swing

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-20190

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-01-19 17:15 修改: 2026-06-17 03:33

com.fasterxml.jackson.core:jackson-databind CVE-2022-42003 高危 2.9.4 2.12.7.1, 2.13.4.2 jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42003

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.fasterxml.jackson.core:jackson-databind CVE-2022-42004 高危 2.9.4 2.12.7.1, 2.13.4 jackson-databind: use of deeply nested arrays

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-42004

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-10-02 05:15 修改: 2026-06-17 05:04

com.google.code.gson:gson CVE-2022-25647 高危 2.2.4 2.8.9 com.google.code.gson-gson: Deserialization of Untrusted Data in com.google.code.gson-gson

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25647

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-05-01 16:15 修改: 2026-06-17 04:33

com.google.code.gson:gson CVE-2022-25647 高危 2.2.4 2.8.9 com.google.code.gson-gson: Deserialization of Untrusted Data in com.google.code.gson-gson

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25647

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-05-01 16:15 修改: 2026-06-17 04:33

com.google.code.gson:gson CVE-2022-25647 高危 2.2.4 2.8.9 com.google.code.gson-gson: Deserialization of Untrusted Data in com.google.code.gson-gson

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25647

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-05-01 16:15 修改: 2026-06-17 04:33

com.google.code.gson:gson CVE-2022-25647 高危 2.2.4 2.8.9 com.google.code.gson-gson: Deserialization of Untrusted Data in com.google.code.gson-gson

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25647

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-05-01 16:15 修改: 2026-06-17 04:33

com.google.code.gson:gson CVE-2022-25647 高危 2.2.4 2.8.9 com.google.code.gson-gson: Deserialization of Untrusted Data in com.google.code.gson-gson

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25647

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-05-01 16:15 修改: 2026-06-17 04:33

com.google.code.gson:gson CVE-2022-25647 高危 2.2.4 2.8.9 com.google.code.gson-gson: Deserialization of Untrusted Data in com.google.code.gson-gson

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25647

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-05-01 16:15 修改: 2026-06-17 04:33

com.google.code.gson:gson CVE-2022-25647 高危 2.2.4 2.8.9 com.google.code.gson-gson: Deserialization of Untrusted Data in com.google.code.gson-gson

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25647

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-05-01 16:15 修改: 2026-06-17 04:33

com.google.code.gson:gson CVE-2022-25647 高危 2.2.4 2.8.9 com.google.code.gson-gson: Deserialization of Untrusted Data in com.google.code.gson-gson

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25647

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-05-01 16:15 修改: 2026-06-17 04:33

com.google.code.gson:gson CVE-2022-25647 高危 2.2.4 2.8.9 com.google.code.gson-gson: Deserialization of Untrusted Data in com.google.code.gson-gson

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25647

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-05-01 16:15 修改: 2026-06-17 04:33

com.google.code.gson:gson CVE-2022-25647 高危 2.8.1 2.8.9 com.google.code.gson-gson: Deserialization of Untrusted Data in com.google.code.gson-gson

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25647

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-05-01 16:15 修改: 2026-06-17 04:33

com.google.protobuf:protobuf-java CVE-2021-22569 高危 2.5.0 3.16.1, 3.18.2, 3.19.2 protobuf-java: potential DoS in the parsing procedure for binary data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22569

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-01-10 14:10 修改: 2026-06-17 03:37

com.google.protobuf:protobuf-java CVE-2021-22569 高危 2.5.0 3.16.1, 3.18.2, 3.19.2 protobuf-java: potential DoS in the parsing procedure for binary data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22569

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-01-10 14:10 修改: 2026-06-17 03:37

com.google.protobuf:protobuf-java CVE-2021-22569 高危 2.5.0 3.16.1, 3.18.2, 3.19.2 protobuf-java: potential DoS in the parsing procedure for binary data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22569

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-01-10 14:10 修改: 2026-06-17 03:37

com.google.protobuf:protobuf-java CVE-2021-22569 高危 2.5.0 3.16.1, 3.18.2, 3.19.2 protobuf-java: potential DoS in the parsing procedure for binary data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22569

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-01-10 14:10 修改: 2026-06-17 03:37

com.google.protobuf:protobuf-java CVE-2021-22569 高危 2.5.0 3.16.1, 3.18.2, 3.19.2 protobuf-java: potential DoS in the parsing procedure for binary data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22569

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-01-10 14:10 修改: 2026-06-17 03:37

com.google.protobuf:protobuf-java CVE-2021-22569 高危 2.5.0 3.16.1, 3.18.2, 3.19.2 protobuf-java: potential DoS in the parsing procedure for binary data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22569

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-10 14:10 修改: 2026-06-17 03:37

com.google.protobuf:protobuf-java CVE-2021-22569 高危 2.5.0 3.16.1, 3.18.2, 3.19.2 protobuf-java: potential DoS in the parsing procedure for binary data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22569

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-10 14:10 修改: 2026-06-17 03:37

com.google.protobuf:protobuf-java CVE-2021-22569 高危 2.5.0 3.16.1, 3.18.2, 3.19.2 protobuf-java: potential DoS in the parsing procedure for binary data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22569

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-10 14:10 修改: 2026-06-17 03:37

com.google.protobuf:protobuf-java CVE-2021-22569 高危 2.5.0 3.16.1, 3.18.2, 3.19.2 protobuf-java: potential DoS in the parsing procedure for binary data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22569

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-10 14:10 修改: 2026-06-17 03:37

com.google.protobuf:protobuf-java CVE-2021-22569 高危 2.5.0 3.16.1, 3.18.2, 3.19.2 protobuf-java: potential DoS in the parsing procedure for binary data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22569

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-10 14:10 修改: 2026-06-17 03:37

com.google.protobuf:protobuf-java CVE-2021-22569 高危 2.5.0 3.16.1, 3.18.2, 3.19.2 protobuf-java: potential DoS in the parsing procedure for binary data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22569

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-10 14:10 修改: 2026-06-17 03:37

com.google.protobuf:protobuf-java CVE-2021-22569 高危 2.5.0 3.16.1, 3.18.2, 3.19.2 protobuf-java: potential DoS in the parsing procedure for binary data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22569

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-10 14:10 修改: 2026-06-17 03:37

com.google.protobuf:protobuf-java CVE-2021-22569 高危 2.5.0 3.16.1, 3.18.2, 3.19.2 protobuf-java: potential DoS in the parsing procedure for binary data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22569

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-01-10 14:10 修改: 2026-06-17 03:37

com.google.protobuf:protobuf-java CVE-2021-22569 高危 2.5.0 3.16.1, 3.18.2, 3.19.2 protobuf-java: potential DoS in the parsing procedure for binary data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22569

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-01-10 14:10 修改: 2026-06-17 03:37

com.google.protobuf:protobuf-java CVE-2021-22569 高危 2.5.0 3.16.1, 3.18.2, 3.19.2 protobuf-java: potential DoS in the parsing procedure for binary data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22569

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-01-10 14:10 修改: 2026-06-17 03:37

com.google.protobuf:protobuf-java CVE-2024-7254 高危 2.5.0 3.25.5, 4.27.5, 4.28.2 protobuf: StackOverflow vulnerability in Protocol Buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7254

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2024-09-19 01:15 修改: 2026-06-17 08:19

com.google.protobuf:protobuf-java CVE-2024-7254 高危 2.5.0 3.25.5, 4.27.5, 4.28.2 protobuf: StackOverflow vulnerability in Protocol Buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7254

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2024-09-19 01:15 修改: 2026-06-17 08:19

com.google.protobuf:protobuf-java CVE-2024-7254 高危 2.5.0 3.25.5, 4.27.5, 4.28.2 protobuf: StackOverflow vulnerability in Protocol Buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7254

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2024-09-19 01:15 修改: 2026-06-17 08:19

com.google.protobuf:protobuf-java CVE-2024-7254 高危 2.5.0 3.25.5, 4.27.5, 4.28.2 protobuf: StackOverflow vulnerability in Protocol Buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7254

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-09-19 01:15 修改: 2026-06-17 08:19

com.google.protobuf:protobuf-java CVE-2024-7254 高危 2.5.0 3.25.5, 4.27.5, 4.28.2 protobuf: StackOverflow vulnerability in Protocol Buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7254

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-09-19 01:15 修改: 2026-06-17 08:19

com.google.protobuf:protobuf-java CVE-2024-7254 高危 2.5.0 3.25.5, 4.27.5, 4.28.2 protobuf: StackOverflow vulnerability in Protocol Buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7254

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-09-19 01:15 修改: 2026-06-17 08:19

com.google.protobuf:protobuf-java CVE-2024-7254 高危 2.5.0 3.25.5, 4.27.5, 4.28.2 protobuf: StackOverflow vulnerability in Protocol Buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7254

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-09-19 01:15 修改: 2026-06-17 08:19

com.google.protobuf:protobuf-java CVE-2024-7254 高危 2.5.0 3.25.5, 4.27.5, 4.28.2 protobuf: StackOverflow vulnerability in Protocol Buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7254

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-09-19 01:15 修改: 2026-06-17 08:19

com.google.protobuf:protobuf-java CVE-2024-7254 高危 2.5.0 3.25.5, 4.27.5, 4.28.2 protobuf: StackOverflow vulnerability in Protocol Buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7254

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-09-19 01:15 修改: 2026-06-17 08:19

com.google.protobuf:protobuf-java CVE-2024-7254 高危 2.5.0 3.25.5, 4.27.5, 4.28.2 protobuf: StackOverflow vulnerability in Protocol Buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7254

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-09-19 01:15 修改: 2026-06-17 08:19

com.google.protobuf:protobuf-java CVE-2024-7254 高危 2.5.0 3.25.5, 4.27.5, 4.28.2 protobuf: StackOverflow vulnerability in Protocol Buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7254

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-09-19 01:15 修改: 2026-06-17 08:19

com.google.protobuf:protobuf-java CVE-2024-7254 高危 2.5.0 3.25.5, 4.27.5, 4.28.2 protobuf: StackOverflow vulnerability in Protocol Buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7254

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-09-19 01:15 修改: 2026-06-17 08:19

com.google.protobuf:protobuf-java CVE-2024-7254 高危 2.5.0 3.25.5, 4.27.5, 4.28.2 protobuf: StackOverflow vulnerability in Protocol Buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7254

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-09-19 01:15 修改: 2026-06-17 08:19

com.google.protobuf:protobuf-java CVE-2024-7254 高危 2.5.0 3.25.5, 4.27.5, 4.28.2 protobuf: StackOverflow vulnerability in Protocol Buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7254

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-09-19 01:15 修改: 2026-06-17 08:19

com.google.protobuf:protobuf-java CVE-2024-7254 高危 2.5.0 3.25.5, 4.27.5, 4.28.2 protobuf: StackOverflow vulnerability in Protocol Buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7254

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-09-19 01:15 修改: 2026-06-17 08:19

com.google.protobuf:protobuf-java CVE-2021-22569 高危 3.0.0-beta-1 3.16.1, 3.18.2, 3.19.2 protobuf-java: potential DoS in the parsing procedure for binary data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22569

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-01-10 14:10 修改: 2026-06-17 03:37

com.google.protobuf:protobuf-java CVE-2024-7254 高危 3.0.0-beta-1 3.25.5, 4.27.5, 4.28.2 protobuf: StackOverflow vulnerability in Protocol Buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7254

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2024-09-19 01:15 修改: 2026-06-17 08:19

com.google.protobuf:protobuf-java CVE-2021-22569 高危 3.3.0 3.16.1, 3.18.2, 3.19.2 protobuf-java: potential DoS in the parsing procedure for binary data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22569

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-01-10 14:10 修改: 2026-06-17 03:37

com.google.protobuf:protobuf-java CVE-2022-3509 高危 3.3.0 3.16.3, 3.19.6, 3.20.3, 3.21.7 protobuf-java: Textformat parsing issue leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3509

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-12-12 13:15 修改: 2026-06-17 04:59

com.google.protobuf:protobuf-java CVE-2022-3510 高危 3.3.0 3.16.3, 3.19.6, 3.20.3, 3.21.7 protobuf-java: Message-Type Extensions parsing issue leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3510

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-12-12 13:15 修改: 2026-06-17 04:59

com.google.protobuf:protobuf-java CVE-2024-7254 高危 3.3.0 3.25.5, 4.27.5, 4.28.2 protobuf: StackOverflow vulnerability in Protocol Buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7254

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-09-19 01:15 修改: 2026-06-17 08:19

com.google.protobuf:protobuf-java CVE-2021-22569 高危 3.3.1 3.16.1, 3.18.2, 3.19.2 protobuf-java: potential DoS in the parsing procedure for binary data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22569

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-01-10 14:10 修改: 2026-06-17 03:37

com.google.protobuf:protobuf-java CVE-2022-3509 高危 3.3.1 3.16.3, 3.19.6, 3.20.3, 3.21.7 protobuf-java: Textformat parsing issue leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3509

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-12-12 13:15 修改: 2026-06-17 04:59

com.google.protobuf:protobuf-java CVE-2022-3510 高危 3.3.1 3.16.3, 3.19.6, 3.20.3, 3.21.7 protobuf-java: Message-Type Extensions parsing issue leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3510

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-12-12 13:15 修改: 2026-06-17 04:59

com.google.protobuf:protobuf-java CVE-2024-7254 高危 3.3.1 3.25.5, 4.27.5, 4.28.2 protobuf: StackOverflow vulnerability in Protocol Buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7254

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-09-19 01:15 修改: 2026-06-17 08:19

com.google.protobuf:protobuf-java CVE-2021-22569 高危 3.6.1 3.16.1, 3.18.2, 3.19.2 protobuf-java: potential DoS in the parsing procedure for binary data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22569

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-01-10 14:10 修改: 2026-06-17 03:37

com.google.protobuf:protobuf-java CVE-2021-22569 高危 3.6.1 3.16.1, 3.18.2, 3.19.2 protobuf-java: potential DoS in the parsing procedure for binary data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22569

镜像层: sha256:6539bc3a62bb0856cca28ecf00a6cf8091a1ef29a62ba2853548c6430cb89d77

发布日期: 2022-01-10 14:10 修改: 2026-06-17 03:37

com.google.protobuf:protobuf-java CVE-2022-3509 高危 3.6.1 3.16.3, 3.19.6, 3.20.3, 3.21.7 protobuf-java: Textformat parsing issue leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3509

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-12 13:15 修改: 2026-06-17 04:59

com.google.protobuf:protobuf-java CVE-2022-3509 高危 3.6.1 3.16.3, 3.19.6, 3.20.3, 3.21.7 protobuf-java: Textformat parsing issue leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3509

镜像层: sha256:6539bc3a62bb0856cca28ecf00a6cf8091a1ef29a62ba2853548c6430cb89d77

发布日期: 2022-12-12 13:15 修改: 2026-06-17 04:59

com.google.protobuf:protobuf-java CVE-2022-3510 高危 3.6.1 3.16.3, 3.19.6, 3.20.3, 3.21.7 protobuf-java: Message-Type Extensions parsing issue leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3510

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-12 13:15 修改: 2026-06-17 04:59

com.google.protobuf:protobuf-java CVE-2022-3510 高危 3.6.1 3.16.3, 3.19.6, 3.20.3, 3.21.7 protobuf-java: Message-Type Extensions parsing issue leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3510

镜像层: sha256:6539bc3a62bb0856cca28ecf00a6cf8091a1ef29a62ba2853548c6430cb89d77

发布日期: 2022-12-12 13:15 修改: 2026-06-17 04:59

com.google.protobuf:protobuf-java CVE-2024-7254 高危 3.6.1 3.25.5, 4.27.5, 4.28.2 protobuf: StackOverflow vulnerability in Protocol Buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7254

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-09-19 01:15 修改: 2026-06-17 08:19

com.google.protobuf:protobuf-java CVE-2024-7254 高危 3.6.1 3.25.5, 4.27.5, 4.28.2 protobuf: StackOverflow vulnerability in Protocol Buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7254

镜像层: sha256:6539bc3a62bb0856cca28ecf00a6cf8091a1ef29a62ba2853548c6430cb89d77

发布日期: 2024-09-19 01:15 修改: 2026-06-17 08:19

com.google.protobuf:protobuf-java CVE-2021-22569 高危 3.7.1 3.16.1, 3.18.2, 3.19.2 protobuf-java: potential DoS in the parsing procedure for binary data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22569

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-01-10 14:10 修改: 2026-06-17 03:37

com.google.protobuf:protobuf-java CVE-2021-22569 高危 3.7.1 3.16.1, 3.18.2, 3.19.2 protobuf-java: potential DoS in the parsing procedure for binary data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22569

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-01-10 14:10 修改: 2026-06-17 03:37

com.google.protobuf:protobuf-java CVE-2021-22569 高危 3.7.1 3.16.1, 3.18.2, 3.19.2 protobuf-java: potential DoS in the parsing procedure for binary data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22569

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-01-10 14:10 修改: 2026-06-17 03:37

com.google.protobuf:protobuf-java CVE-2021-22569 高危 3.7.1 3.16.1, 3.18.2, 3.19.2 protobuf-java: potential DoS in the parsing procedure for binary data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22569

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-01-10 14:10 修改: 2026-06-17 03:37

com.google.protobuf:protobuf-java CVE-2022-3509 高危 3.7.1 3.16.3, 3.19.6, 3.20.3, 3.21.7 protobuf-java: Textformat parsing issue leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3509

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-12 13:15 修改: 2026-06-17 04:59

com.google.protobuf:protobuf-java CVE-2022-3509 高危 3.7.1 3.16.3, 3.19.6, 3.20.3, 3.21.7 protobuf-java: Textformat parsing issue leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3509

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-12 13:15 修改: 2026-06-17 04:59

com.google.protobuf:protobuf-java CVE-2022-3509 高危 3.7.1 3.16.3, 3.19.6, 3.20.3, 3.21.7 protobuf-java: Textformat parsing issue leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3509

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-12 13:15 修改: 2026-06-17 04:59

com.google.protobuf:protobuf-java CVE-2022-3509 高危 3.7.1 3.16.3, 3.19.6, 3.20.3, 3.21.7 protobuf-java: Textformat parsing issue leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3509

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-12 13:15 修改: 2026-06-17 04:59

com.google.protobuf:protobuf-java CVE-2022-3510 高危 3.7.1 3.16.3, 3.19.6, 3.20.3, 3.21.7 protobuf-java: Message-Type Extensions parsing issue leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3510

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-12 13:15 修改: 2026-06-17 04:59

com.google.protobuf:protobuf-java CVE-2022-3510 高危 3.7.1 3.16.3, 3.19.6, 3.20.3, 3.21.7 protobuf-java: Message-Type Extensions parsing issue leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3510

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-12 13:15 修改: 2026-06-17 04:59

com.google.protobuf:protobuf-java CVE-2022-3510 高危 3.7.1 3.16.3, 3.19.6, 3.20.3, 3.21.7 protobuf-java: Message-Type Extensions parsing issue leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3510

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-12 13:15 修改: 2026-06-17 04:59

com.google.protobuf:protobuf-java CVE-2022-3510 高危 3.7.1 3.16.3, 3.19.6, 3.20.3, 3.21.7 protobuf-java: Message-Type Extensions parsing issue leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3510

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-12 13:15 修改: 2026-06-17 04:59

com.google.protobuf:protobuf-java CVE-2024-7254 高危 3.7.1 3.25.5, 4.27.5, 4.28.2 protobuf: StackOverflow vulnerability in Protocol Buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7254

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-09-19 01:15 修改: 2026-06-17 08:19

com.google.protobuf:protobuf-java CVE-2024-7254 高危 3.7.1 3.25.5, 4.27.5, 4.28.2 protobuf: StackOverflow vulnerability in Protocol Buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7254

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-09-19 01:15 修改: 2026-06-17 08:19

com.google.protobuf:protobuf-java CVE-2024-7254 高危 3.7.1 3.25.5, 4.27.5, 4.28.2 protobuf: StackOverflow vulnerability in Protocol Buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7254

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-09-19 01:15 修改: 2026-06-17 08:19

com.google.protobuf:protobuf-java CVE-2024-7254 高危 3.7.1 3.25.5, 4.27.5, 4.28.2 protobuf: StackOverflow vulnerability in Protocol Buffers

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-7254

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-09-19 01:15 修改: 2026-06-17 08:19

com.fasterxml.jackson.core:jackson-databind CVE-2019-14439 高危 2.4.0 2.9.9.2, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: Polymorphic typing issue related to logback/JNDI

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14439

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-07-30 11:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14439 高危 2.4.0 2.9.9.2, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: Polymorphic typing issue related to logback/JNDI

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14439

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-07-30 11:15 修改: 2026-06-17 02:18

com.fasterxml.jackson.core:jackson-databind CVE-2019-14439 高危 2.4.0 2.9.9.2, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: Polymorphic typing issue related to logback/JNDI

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14439

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2019-07-30 11:15 修改: 2026-06-17 02:18

com.nimbusds:nimbus-jose-jwt CVE-2023-52428 高危 4.41.1 9.37.2 nimbus-jose-jwt: large JWE p2c header value causes Denial of Service

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-52428

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-02-11 05:15 修改: 2026-06-17 06:42

com.nimbusds:nimbus-jose-jwt CVE-2023-52428 高危 7.9 9.37.2 nimbus-jose-jwt: large JWE p2c header value causes Denial of Service

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-52428

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-02-11 05:15 修改: 2026-06-17 06:42

com.nimbusds:nimbus-jose-jwt CVE-2023-52428 高危 7.9 9.37.2 nimbus-jose-jwt: large JWE p2c header value causes Denial of Service

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-52428

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-02-11 05:15 修改: 2026-06-17 06:42

com.nimbusds:nimbus-jose-jwt CVE-2023-52428 高危 7.9 9.37.2 nimbus-jose-jwt: large JWE p2c header value causes Denial of Service

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-52428

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-02-11 05:15 修改: 2026-06-17 06:42

com.nimbusds:nimbus-jose-jwt CVE-2023-52428 高危 7.9 9.37.2 nimbus-jose-jwt: large JWE p2c header value causes Denial of Service

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-52428

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-02-11 05:15 修改: 2026-06-17 06:42

com.sun.jersey:jersey-core CVE-2014-3643 高危 1.1.5.1 1.13 jersey: XXE via parameter entities

漏洞详情: https://avd.aquasec.com/nvd/cve-2014-3643

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2019-12-15 22:15 修改: 2024-11-21 02:08

com.sun.jersey:jersey-core CVE-2014-3643 高危 1.9 1.13 jersey: XXE via parameter entities

漏洞详情: https://avd.aquasec.com/nvd/cve-2014-3643

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-12-15 22:15 修改: 2024-11-21 02:08

com.sun.jersey:jersey-core CVE-2014-3643 高危 1.9 1.13 jersey: XXE via parameter entities

漏洞详情: https://avd.aquasec.com/nvd/cve-2014-3643

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-12-15 22:15 修改: 2024-11-21 02:08

com.sun.jersey:jersey-core CVE-2014-3643 高危 1.9 1.13 jersey: XXE via parameter entities

漏洞详情: https://avd.aquasec.com/nvd/cve-2014-3643

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-12-15 22:15 修改: 2024-11-21 02:08

com.sun.jersey:jersey-core CVE-2014-3643 高危 1.9 1.13 jersey: XXE via parameter entities

漏洞详情: https://avd.aquasec.com/nvd/cve-2014-3643

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-12-15 22:15 修改: 2024-11-21 02:08

com.sun.jersey:jersey-core CVE-2014-3643 高危 1.9 1.13 jersey: XXE via parameter entities

漏洞详情: https://avd.aquasec.com/nvd/cve-2014-3643

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-12-15 22:15 修改: 2024-11-21 02:08

com.sun.jersey:jersey-core CVE-2014-3643 高危 1.9 1.13 jersey: XXE via parameter entities

漏洞详情: https://avd.aquasec.com/nvd/cve-2014-3643

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-12-15 22:15 修改: 2024-11-21 02:08

com.sun.jersey:jersey-core CVE-2014-3643 高危 1.9 1.13 jersey: XXE via parameter entities

漏洞详情: https://avd.aquasec.com/nvd/cve-2014-3643

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-12-15 22:15 修改: 2024-11-21 02:08

commons-beanutils:commons-beanutils CVE-2019-10086 高危 1.7.0 1.9.4 apache-commons-beanutils: does not suppresses the class property in PropertyUtilsBean by default

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10086

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-08-20 21:15 修改: 2026-06-17 02:10

commons-beanutils:commons-beanutils CVE-2019-10086 高危 1.7.0 1.9.4 apache-commons-beanutils: does not suppresses the class property in PropertyUtilsBean by default

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10086

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-08-20 21:15 修改: 2026-06-17 02:10

commons-beanutils:commons-beanutils CVE-2019-10086 高危 1.7.0 1.9.4 apache-commons-beanutils: does not suppresses the class property in PropertyUtilsBean by default

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10086

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-08-20 21:15 修改: 2026-06-17 02:10

commons-beanutils:commons-beanutils CVE-2019-10086 高危 1.7.0 1.9.4 apache-commons-beanutils: does not suppresses the class property in PropertyUtilsBean by default

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10086

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-08-20 21:15 修改: 2026-06-17 02:10

commons-beanutils:commons-beanutils CVE-2025-48734 高危 1.7.0 1.11.0 commons-beanutils: Apache Commons BeanUtils: PropertyUtilsBean does not suppresses an enum's declaredClass property by default

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48734

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-05-28 14:15 修改: 2026-06-17 09:30

commons-beanutils:commons-beanutils CVE-2025-48734 高危 1.7.0 1.11.0 commons-beanutils: Apache Commons BeanUtils: PropertyUtilsBean does not suppresses an enum's declaredClass property by default

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48734

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-05-28 14:15 修改: 2026-06-17 09:30

commons-beanutils:commons-beanutils CVE-2025-48734 高危 1.7.0 1.11.0 commons-beanutils: Apache Commons BeanUtils: PropertyUtilsBean does not suppresses an enum's declaredClass property by default

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48734

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-05-28 14:15 修改: 2026-06-17 09:30

commons-beanutils:commons-beanutils CVE-2025-48734 高危 1.7.0 1.11.0 commons-beanutils: Apache Commons BeanUtils: PropertyUtilsBean does not suppresses an enum's declaredClass property by default

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48734

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-05-28 14:15 修改: 2026-06-17 09:30

commons-beanutils:commons-beanutils CVE-2025-48734 高危 1.9.4 1.11.0 commons-beanutils: Apache Commons BeanUtils: PropertyUtilsBean does not suppresses an enum's declaredClass property by default

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48734

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-05-28 14:15 修改: 2026-06-17 09:30

commons-beanutils:commons-beanutils CVE-2025-48734 高危 1.9.4 1.11.0 commons-beanutils: Apache Commons BeanUtils: PropertyUtilsBean does not suppresses an enum's declaredClass property by default

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48734

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-05-28 14:15 修改: 2026-06-17 09:30

commons-beanutils:commons-beanutils CVE-2025-48734 高危 1.9.4 1.11.0 commons-beanutils: Apache Commons BeanUtils: PropertyUtilsBean does not suppresses an enum's declaredClass property by default

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48734

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-05-28 14:15 修改: 2026-06-17 09:30

commons-beanutils:commons-beanutils CVE-2025-48734 高危 1.9.4 1.11.0 commons-beanutils: Apache Commons BeanUtils: PropertyUtilsBean does not suppresses an enum's declaredClass property by default

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48734

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-05-28 14:15 修改: 2026-06-17 09:30

commons-io:commons-io CVE-2024-47554 高危 2.4 2.14.0 apache-commons-io: Possible denial of service attack on untrusted input to XmlStreamReader

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47554

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2024-10-03 12:15 修改: 2026-06-17 07:57

commons-io:commons-io CVE-2024-47554 高危 2.4 2.14.0 apache-commons-io: Possible denial of service attack on untrusted input to XmlStreamReader

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47554

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-10-03 12:15 修改: 2026-06-17 07:57

commons-io:commons-io CVE-2024-47554 高危 2.4 2.14.0 apache-commons-io: Possible denial of service attack on untrusted input to XmlStreamReader

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47554

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-10-03 12:15 修改: 2026-06-17 07:57

commons-io:commons-io CVE-2024-47554 高危 2.4 2.14.0 apache-commons-io: Possible denial of service attack on untrusted input to XmlStreamReader

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47554

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-10-03 12:15 修改: 2026-06-17 07:57

commons-io:commons-io CVE-2024-47554 高危 2.4 2.14.0 apache-commons-io: Possible denial of service attack on untrusted input to XmlStreamReader

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47554

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-10-03 12:15 修改: 2026-06-17 07:57

commons-io:commons-io CVE-2024-47554 高危 2.4 2.14.0 apache-commons-io: Possible denial of service attack on untrusted input to XmlStreamReader

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47554

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-10-03 12:15 修改: 2026-06-17 07:57

commons-io:commons-io CVE-2024-47554 高危 2.4 2.14.0 apache-commons-io: Possible denial of service attack on untrusted input to XmlStreamReader

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47554

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-10-03 12:15 修改: 2026-06-17 07:57

commons-io:commons-io CVE-2024-47554 高危 2.4 2.14.0 apache-commons-io: Possible denial of service attack on untrusted input to XmlStreamReader

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47554

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-10-03 12:15 修改: 2026-06-17 07:57

commons-io:commons-io CVE-2024-47554 高危 2.4 2.14.0 apache-commons-io: Possible denial of service attack on untrusted input to XmlStreamReader

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47554

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2024-10-03 12:15 修改: 2026-06-17 07:57

commons-io:commons-io CVE-2024-47554 高危 2.5 2.14.0 apache-commons-io: Possible denial of service attack on untrusted input to XmlStreamReader

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47554

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-10-03 12:15 修改: 2026-06-17 07:57

commons-io:commons-io CVE-2024-47554 高危 2.5 2.14.0 apache-commons-io: Possible denial of service attack on untrusted input to XmlStreamReader

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47554

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-10-03 12:15 修改: 2026-06-17 07:57

commons-io:commons-io CVE-2024-47554 高危 2.5 2.14.0 apache-commons-io: Possible denial of service attack on untrusted input to XmlStreamReader

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47554

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-10-03 12:15 修改: 2026-06-17 07:57

commons-io:commons-io CVE-2024-47554 高危 2.5 2.14.0 apache-commons-io: Possible denial of service attack on untrusted input to XmlStreamReader

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47554

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-10-03 12:15 修改: 2026-06-17 07:57

commons-io:commons-io CVE-2024-47554 高危 2.5 2.14.0 apache-commons-io: Possible denial of service attack on untrusted input to XmlStreamReader

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47554

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2024-10-03 12:15 修改: 2026-06-17 07:57

commons-io:commons-io CVE-2024-47554 高危 2.5 2.14.0 apache-commons-io: Possible denial of service attack on untrusted input to XmlStreamReader

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47554

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2024-10-03 12:15 修改: 2026-06-17 07:57

commons-io:commons-io CVE-2024-47554 高危 2.6 2.14.0 apache-commons-io: Possible denial of service attack on untrusted input to XmlStreamReader

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47554

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-10-03 12:15 修改: 2026-06-17 07:57

dnsjava:dnsjava CVE-2024-25638 高危 2.1.7 3.6.0 dnsjava: Improper response validation allowing DNSSEC bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-25638

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-07-22 14:15 修改: 2026-06-17 07:16

dnsjava:dnsjava CVE-2024-25638 高危 2.1.7 3.6.0 dnsjava: Improper response validation allowing DNSSEC bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-25638

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-07-22 14:15 修改: 2026-06-17 07:16

dnsjava:dnsjava CVE-2024-25638 高危 2.1.7 3.6.0 dnsjava: Improper response validation allowing DNSSEC bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-25638

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-07-22 14:15 修改: 2026-06-17 07:16

dnsjava:dnsjava CVE-2024-25638 高危 2.1.7 3.6.0 dnsjava: Improper response validation allowing DNSSEC bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-25638

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-07-22 14:15 修改: 2026-06-17 07:16

dnsjava:dnsjava CVE-2024-25638 高危 2.1.7 3.6.0 dnsjava: Improper response validation allowing DNSSEC bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-25638

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-07-22 14:15 修改: 2026-06-17 07:16

io.airlift:aircompressor CVE-2024-36114 高危 0.10 0.27 Decompressors can crash the JVM and leak memory content in Aircompressor

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-36114

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-05-29 21:15 修改: 2026-06-17 07:36

io.airlift:aircompressor CVE-2024-36114 高危 0.10 0.27 Decompressors can crash the JVM and leak memory content in Aircompressor

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-36114

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-05-29 21:15 修改: 2026-06-17 07:36

io.airlift:aircompressor CVE-2025-67721 高危 0.10 2.0.3 aircompressor Snappy and LZ4 Java-based decompressor implementation can leak information from reused output buffer

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-67721

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-12-12 23:15 修改: 2026-06-17 09:58

io.airlift:aircompressor CVE-2025-67721 高危 0.10 2.0.3 aircompressor Snappy and LZ4 Java-based decompressor implementation can leak information from reused output buffer

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-67721

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-12-12 23:15 修改: 2026-06-17 09:58

io.airlift:aircompressor CVE-2024-36114 高危 0.8 0.27 Decompressors can crash the JVM and leak memory content in Aircompressor

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-36114

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2024-05-29 21:15 修改: 2026-06-17 07:36

io.airlift:aircompressor CVE-2024-36114 高危 0.8 0.27 Decompressors can crash the JVM and leak memory content in Aircompressor

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-36114

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2024-05-29 21:15 修改: 2026-06-17 07:36

io.airlift:aircompressor CVE-2025-67721 高危 0.8 2.0.3 aircompressor Snappy and LZ4 Java-based decompressor implementation can leak information from reused output buffer

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-67721

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-12-12 23:15 修改: 2026-06-17 09:58

io.airlift:aircompressor CVE-2025-67721 高危 0.8 2.0.3 aircompressor Snappy and LZ4 Java-based decompressor implementation can leak information from reused output buffer

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-67721

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-12-12 23:15 修改: 2026-06-17 09:58

com.fasterxml.jackson.core:jackson-databind CVE-2019-14439 高危 2.4.0 2.9.9.2, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: Polymorphic typing issue related to logback/JNDI

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14439

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2019-07-30 11:15 修改: 2026-06-17 02:18

io.netty:netty CVE-2021-37136 高危 3.10.4.Final 4.0.0 netty-codec: Bzip2Decoder doesn't allow setting size restrictions for decompressed data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37136

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty CVE-2021-37137 高危 3.10.4.Final 4.0.0 netty-codec: SnappyFrameDecoder doesn't restrict chunk length and may buffer skippable chunks in an unnecessary way

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37137

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

com.fasterxml.jackson.core:jackson-databind CVE-2019-14892 高危 2.4.0 2.6.7.3, 2.8.11.5, 2.9.10 jackson-databind: Serialization gadgets in classes of the commons-configuration package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14892

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-03-02 17:15 修改: 2026-06-17 02:19

io.netty:netty CVE-2021-37136 高危 3.10.5.Final 4.0.0 netty-codec: Bzip2Decoder doesn't allow setting size restrictions for decompressed data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37136

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty CVE-2021-37137 高危 3.10.5.Final 4.0.0 netty-codec: SnappyFrameDecoder doesn't restrict chunk length and may buffer skippable chunks in an unnecessary way

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37137

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

com.fasterxml.jackson.core:jackson-databind CVE-2019-14892 高危 2.4.0 2.6.7.3, 2.8.11.5, 2.9.10 jackson-databind: Serialization gadgets in classes of the commons-configuration package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14892

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-03-02 17:15 修改: 2026-06-17 02:19

com.fasterxml.jackson.core:jackson-databind CVE-2019-14892 高危 2.4.0 2.6.7.3, 2.8.11.5, 2.9.10 jackson-databind: Serialization gadgets in classes of the commons-configuration package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14892

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-03-02 17:15 修改: 2026-06-17 02:19

com.fasterxml.jackson.core:jackson-databind CVE-2019-14892 高危 2.4.0 2.6.7.3, 2.8.11.5, 2.9.10 jackson-databind: Serialization gadgets in classes of the commons-configuration package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14892

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-03-02 17:15 修改: 2026-06-17 02:19

com.fasterxml.jackson.core:jackson-databind CVE-2019-14892 高危 2.4.0 2.6.7.3, 2.8.11.5, 2.9.10 jackson-databind: Serialization gadgets in classes of the commons-configuration package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14892

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-03-02 17:15 修改: 2026-06-17 02:19

com.fasterxml.jackson.core:jackson-databind CVE-2019-14892 高危 2.4.0 2.6.7.3, 2.8.11.5, 2.9.10 jackson-databind: Serialization gadgets in classes of the commons-configuration package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14892

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-03-02 17:15 修改: 2026-06-17 02:19

io.netty:netty CVE-2021-37136 高危 3.10.6.Final 4.0.0 netty-codec: Bzip2Decoder doesn't allow setting size restrictions for decompressed data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37136

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty CVE-2021-37136 高危 3.10.6.Final 4.0.0 netty-codec: Bzip2Decoder doesn't allow setting size restrictions for decompressed data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37136

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty CVE-2021-37136 高危 3.10.6.Final 4.0.0 netty-codec: Bzip2Decoder doesn't allow setting size restrictions for decompressed data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37136

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty CVE-2021-37136 高危 3.10.6.Final 4.0.0 netty-codec: Bzip2Decoder doesn't allow setting size restrictions for decompressed data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37136

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty CVE-2021-37136 高危 3.10.6.Final 4.0.0 netty-codec: Bzip2Decoder doesn't allow setting size restrictions for decompressed data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37136

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty CVE-2021-37137 高危 3.10.6.Final 4.0.0 netty-codec: SnappyFrameDecoder doesn't restrict chunk length and may buffer skippable chunks in an unnecessary way

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37137

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty CVE-2021-37137 高危 3.10.6.Final 4.0.0 netty-codec: SnappyFrameDecoder doesn't restrict chunk length and may buffer skippable chunks in an unnecessary way

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37137

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty CVE-2021-37137 高危 3.10.6.Final 4.0.0 netty-codec: SnappyFrameDecoder doesn't restrict chunk length and may buffer skippable chunks in an unnecessary way

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37137

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty CVE-2021-37137 高危 3.10.6.Final 4.0.0 netty-codec: SnappyFrameDecoder doesn't restrict chunk length and may buffer skippable chunks in an unnecessary way

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37137

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty CVE-2021-37137 高危 3.10.6.Final 4.0.0 netty-codec: SnappyFrameDecoder doesn't restrict chunk length and may buffer skippable chunks in an unnecessary way

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37137

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

com.fasterxml.jackson.core:jackson-databind CVE-2019-14892 高危 2.4.0 2.6.7.3, 2.8.11.5, 2.9.10 jackson-databind: Serialization gadgets in classes of the commons-configuration package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14892

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-03-02 17:15 修改: 2026-06-17 02:19

com.fasterxml.jackson.core:jackson-databind CVE-2019-14892 高危 2.4.0 2.6.7.3, 2.8.11.5, 2.9.10 jackson-databind: Serialization gadgets in classes of the commons-configuration package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14892

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-03-02 17:15 修改: 2026-06-17 02:19

com.fasterxml.jackson.core:jackson-databind CVE-2019-14892 高危 2.4.0 2.6.7.3, 2.8.11.5, 2.9.10 jackson-databind: Serialization gadgets in classes of the commons-configuration package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14892

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-03-02 17:15 修改: 2026-06-17 02:19

com.fasterxml.jackson.core:jackson-databind CVE-2019-14892 高危 2.4.0 2.6.7.3, 2.8.11.5, 2.9.10 jackson-databind: Serialization gadgets in classes of the commons-configuration package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14892

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-03-02 17:15 修改: 2026-06-17 02:19

com.fasterxml.jackson.core:jackson-databind CVE-2019-14892 高危 2.4.0 2.6.7.3, 2.8.11.5, 2.9.10 jackson-databind: Serialization gadgets in classes of the commons-configuration package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14892

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-03-02 17:15 修改: 2026-06-17 02:19

com.fasterxml.jackson.core:jackson-databind CVE-2019-14892 高危 2.4.0 2.6.7.3, 2.8.11.5, 2.9.10 jackson-databind: Serialization gadgets in classes of the commons-configuration package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14892

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2020-03-02 17:15 修改: 2026-06-17 02:19

com.fasterxml.jackson.core:jackson-databind CVE-2019-14892 高危 2.4.0 2.6.7.3, 2.8.11.5, 2.9.10 jackson-databind: Serialization gadgets in classes of the commons-configuration package

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-14892

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2020-03-02 17:15 修改: 2026-06-17 02:19

com.fasterxml.jackson.core:jackson-databind CVE-2020-10650 高危 2.4.0 2.9.10.4 A deserialization flaw was discovered in jackson-databind through 2.9. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10650

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-12-26 20:15 修改: 2026-06-17 02:48

io.netty:netty CVE-2015-2156 高危 3.6.2.Final 3.10.3.Final, 3.9.8.Final netty: HttpOnly cookie bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2015-2156

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2017-10-18 15:29 修改: 2025-04-20 01:37

io.netty:netty CVE-2015-2156 高危 3.6.2.Final 3.10.3.Final, 3.9.8.Final netty: HttpOnly cookie bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2015-2156

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-10-18 15:29 修改: 2025-04-20 01:37

io.netty:netty CVE-2015-2156 高危 3.6.2.Final 3.10.3.Final, 3.9.8.Final netty: HttpOnly cookie bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2015-2156

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-10-18 15:29 修改: 2025-04-20 01:37

io.netty:netty CVE-2015-2156 高危 3.6.2.Final 3.10.3.Final, 3.9.8.Final netty: HttpOnly cookie bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2015-2156

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-10-18 15:29 修改: 2025-04-20 01:37

io.netty:netty CVE-2015-2156 高危 3.6.2.Final 3.10.3.Final, 3.9.8.Final netty: HttpOnly cookie bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2015-2156

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-10-18 15:29 修改: 2025-04-20 01:37

io.netty:netty CVE-2015-2156 高危 3.6.2.Final 3.10.3.Final, 3.9.8.Final netty: HttpOnly cookie bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2015-2156

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-10-18 15:29 修改: 2025-04-20 01:37

io.netty:netty CVE-2015-2156 高危 3.6.2.Final 3.10.3.Final, 3.9.8.Final netty: HttpOnly cookie bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2015-2156

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-10-18 15:29 修改: 2025-04-20 01:37

io.netty:netty CVE-2015-2156 高危 3.6.2.Final 3.10.3.Final, 3.9.8.Final netty: HttpOnly cookie bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2015-2156

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-10-18 15:29 修改: 2025-04-20 01:37

io.netty:netty CVE-2021-37136 高危 3.6.2.Final 4.0.0 netty-codec: Bzip2Decoder doesn't allow setting size restrictions for decompressed data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37136

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty CVE-2021-37136 高危 3.6.2.Final 4.0.0 netty-codec: Bzip2Decoder doesn't allow setting size restrictions for decompressed data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37136

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty CVE-2021-37136 高危 3.6.2.Final 4.0.0 netty-codec: Bzip2Decoder doesn't allow setting size restrictions for decompressed data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37136

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty CVE-2021-37136 高危 3.6.2.Final 4.0.0 netty-codec: Bzip2Decoder doesn't allow setting size restrictions for decompressed data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37136

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty CVE-2021-37136 高危 3.6.2.Final 4.0.0 netty-codec: Bzip2Decoder doesn't allow setting size restrictions for decompressed data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37136

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty CVE-2021-37136 高危 3.6.2.Final 4.0.0 netty-codec: Bzip2Decoder doesn't allow setting size restrictions for decompressed data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37136

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty CVE-2021-37136 高危 3.6.2.Final 4.0.0 netty-codec: Bzip2Decoder doesn't allow setting size restrictions for decompressed data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37136

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty CVE-2021-37136 高危 3.6.2.Final 4.0.0 netty-codec: Bzip2Decoder doesn't allow setting size restrictions for decompressed data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37136

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty CVE-2021-37137 高危 3.6.2.Final 4.0.0 netty-codec: SnappyFrameDecoder doesn't restrict chunk length and may buffer skippable chunks in an unnecessary way

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37137

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty CVE-2021-37137 高危 3.6.2.Final 4.0.0 netty-codec: SnappyFrameDecoder doesn't restrict chunk length and may buffer skippable chunks in an unnecessary way

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37137

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty CVE-2021-37137 高危 3.6.2.Final 4.0.0 netty-codec: SnappyFrameDecoder doesn't restrict chunk length and may buffer skippable chunks in an unnecessary way

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37137

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty CVE-2021-37137 高危 3.6.2.Final 4.0.0 netty-codec: SnappyFrameDecoder doesn't restrict chunk length and may buffer skippable chunks in an unnecessary way

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37137

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty CVE-2021-37137 高危 3.6.2.Final 4.0.0 netty-codec: SnappyFrameDecoder doesn't restrict chunk length and may buffer skippable chunks in an unnecessary way

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37137

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty CVE-2021-37137 高危 3.6.2.Final 4.0.0 netty-codec: SnappyFrameDecoder doesn't restrict chunk length and may buffer skippable chunks in an unnecessary way

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37137

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty CVE-2021-37137 高危 3.6.2.Final 4.0.0 netty-codec: SnappyFrameDecoder doesn't restrict chunk length and may buffer skippable chunks in an unnecessary way

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37137

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty CVE-2021-37137 高危 3.6.2.Final 4.0.0 netty-codec: SnappyFrameDecoder doesn't restrict chunk length and may buffer skippable chunks in an unnecessary way

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37137

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty-all CVE-2019-16869 高危 4.0.23.Final 4.1.42.Final netty: HTTP request smuggling by mishandled whitespace before the colon in HTTP headers

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16869

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-09-26 16:15 修改: 2026-06-17 02:22

io.netty:netty-all CVE-2019-16869 高危 4.0.23.Final 4.1.42.Final netty: HTTP request smuggling by mishandled whitespace before the colon in HTTP headers

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16869

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-09-26 16:15 修改: 2026-06-17 02:22

io.netty:netty-all CVE-2019-16869 高危 4.0.52.Final 4.1.42.Final netty: HTTP request smuggling by mishandled whitespace before the colon in HTTP headers

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16869

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-09-26 16:15 修改: 2026-06-17 02:22

io.netty:netty-all CVE-2019-16869 高危 4.1.12.Final 4.1.42.Final netty: HTTP request smuggling by mishandled whitespace before the colon in HTTP headers

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16869

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-09-26 16:15 修改: 2026-06-17 02:22

io.netty:netty-all CVE-2019-16869 高危 4.1.17.Final 4.1.42.Final netty: HTTP request smuggling by mishandled whitespace before the colon in HTTP headers

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-16869

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-09-26 16:15 修改: 2026-06-17 02:22

io.netty:netty-codec CVE-2021-37136 高危 4.0.52.Final 4.1.68.Final netty-codec: Bzip2Decoder doesn't allow setting size restrictions for decompressed data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37136

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty-codec CVE-2021-37137 高危 4.0.52.Final 4.1.68.Final netty-codec: SnappyFrameDecoder doesn't restrict chunk length and may buffer skippable chunks in an unnecessary way

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37137

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty-codec CVE-2026-42583 高危 4.0.52.Final 4.1.133.Final Netty is an asynchronous, event-driven network application framework. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42583

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2026-05-13 19:17 修改: 2026-06-17 10:48

io.netty:netty-codec CVE-2021-37136 高危 4.1.17.Final 4.1.68.Final netty-codec: Bzip2Decoder doesn't allow setting size restrictions for decompressed data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37136

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty-codec CVE-2021-37137 高危 4.1.17.Final 4.1.68.Final netty-codec: SnappyFrameDecoder doesn't restrict chunk length and may buffer skippable chunks in an unnecessary way

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37137

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty-codec CVE-2026-42583 高危 4.1.17.Final 4.1.133.Final Netty is an asynchronous, event-driven network application framework. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42583

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-05-13 19:17 修改: 2026-06-17 10:48

io.netty:netty-codec CVE-2021-37136 高危 4.1.42.Final 4.1.68.Final netty-codec: Bzip2Decoder doesn't allow setting size restrictions for decompressed data

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37136

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty-codec CVE-2021-37137 高危 4.1.42.Final 4.1.68.Final netty-codec: SnappyFrameDecoder doesn't restrict chunk length and may buffer skippable chunks in an unnecessary way

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37137

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-10-19 15:15 修改: 2026-06-17 04:00

io.netty:netty-codec CVE-2026-42583 高危 4.1.42.Final 4.1.133.Final Netty is an asynchronous, event-driven network application framework. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42583

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-05-13 19:17 修改: 2026-06-17 10:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10650 高危 2.4.0 2.9.10.4 A deserialization flaw was discovered in jackson-databind through 2.9. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10650

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-12-26 20:15 修改: 2026-06-17 02:48

io.netty:netty-codec-http CVE-2026-33870 高危 4.0.52.Final 4.1.132.Final, 4.2.10.Final io.netty/netty-codec-http: Netty: Request smuggling via incorrect parsing of HTTP/1.1 chunked transfer encoding extension values

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-33870

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2026-03-27 20:16 修改: 2026-06-17 10:38

io.netty:netty-codec-http CVE-2026-42584 高危 4.0.52.Final 4.2.13.Final, 4.1.133.Final netty: io.netty/netty-codec-http: Netty: Incorrect HTTP response parsing leads to data confusion

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42584

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2026-05-13 19:17 修改: 2026-06-17 10:48

io.netty:netty-codec-http CVE-2026-42587 高危 4.0.52.Final 4.2.13.Final, 4.1.133.Final netty: io.netty/netty-codec-http: io.netty/netty-codec-http2: Netty: Denial of Service via unbounded memory allocation in HTTP content decompression

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42587

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2026-05-13 19:17 修改: 2026-06-17 10:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10650 高危 2.4.0 2.9.10.4 A deserialization flaw was discovered in jackson-databind through 2.9. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10650

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-12-26 20:15 修改: 2026-06-17 02:48

io.netty:netty-codec-http CVE-2026-33870 高危 4.1.17.Final 4.1.132.Final, 4.2.10.Final io.netty/netty-codec-http: Netty: Request smuggling via incorrect parsing of HTTP/1.1 chunked transfer encoding extension values

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-33870

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-03-27 20:16 修改: 2026-06-17 10:38

io.netty:netty-codec-http CVE-2026-42584 高危 4.1.17.Final 4.2.13.Final, 4.1.133.Final netty: io.netty/netty-codec-http: Netty: Incorrect HTTP response parsing leads to data confusion

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42584

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-05-13 19:17 修改: 2026-06-17 10:48

io.netty:netty-codec-http CVE-2026-42587 高危 4.1.17.Final 4.2.13.Final, 4.1.133.Final netty: io.netty/netty-codec-http: io.netty/netty-codec-http2: Netty: Denial of Service via unbounded memory allocation in HTTP content decompression

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42587

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-05-13 19:17 修改: 2026-06-17 10:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10650 高危 2.4.0 2.9.10.4 A deserialization flaw was discovered in jackson-databind through 2.9. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10650

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-12-26 20:15 修改: 2026-06-17 02:48

io.netty:netty-codec-http CVE-2026-33870 高危 4.1.42.Final 4.1.132.Final, 4.2.10.Final io.netty/netty-codec-http: Netty: Request smuggling via incorrect parsing of HTTP/1.1 chunked transfer encoding extension values

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-33870

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-03-27 20:16 修改: 2026-06-17 10:38

io.netty:netty-codec-http CVE-2026-42584 高危 4.1.42.Final 4.2.13.Final, 4.1.133.Final netty: io.netty/netty-codec-http: Netty: Incorrect HTTP response parsing leads to data confusion

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42584

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-05-13 19:17 修改: 2026-06-17 10:48

io.netty:netty-codec-http CVE-2026-42587 高危 4.1.42.Final 4.2.13.Final, 4.1.133.Final netty: io.netty/netty-codec-http: io.netty/netty-codec-http2: Netty: Denial of Service via unbounded memory allocation in HTTP content decompression

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42587

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-05-13 19:17 修改: 2026-06-17 10:48

io.netty:netty-codec-http2 CVE-2025-55163 高危 4.1.42.Final 4.2.4.Final, 4.1.124.Final netty: netty-codec-http2: Netty MadeYouReset HTTP/2 DDoS Vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-55163

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-08-13 15:15 修改: 2026-06-17 09:41

io.netty:netty-codec-http2 CVE-2026-33871 高危 4.1.42.Final 4.1.132.Final, 4.2.11.Final netty: Netty: Denial of Service via HTTP/2 CONTINUATION frame flood

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-33871

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-03-27 20:16 修改: 2026-06-17 10:38

io.netty:netty-codec-http2 CVE-2026-42587 高危 4.1.42.Final 4.2.13.Final, 4.1.133.Final netty: io.netty/netty-codec-http: io.netty/netty-codec-http2: Netty: Denial of Service via unbounded memory allocation in HTTP content decompression

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42587

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-05-13 19:17 修改: 2026-06-17 10:48

io.netty:netty-codec-http2 GHSA-xpw8-rcwv-8f8p 高危 4.1.42.Final 4.1.100.Final io.netty:netty-codec-http2 vulnerable to HTTP/2 Rapid Reset Attack

漏洞详情: https://github.com/advisories/GHSA-xpw8-rcwv-8f8p

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-10-10 22:22 修改: 2023-11-06 22:08

io.netty:netty-handler CVE-2026-44249 高危 4.0.52.Final 4.2.15.Final, 4.1.135.Final netty-handler: netty-handler: IPv6 subnet rule bypass due to incorrect masking operation

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-44249

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2026-06-11 22:16 修改: 2026-06-17 10:50

io.netty:netty-handler CVE-2026-45416 高危 4.0.52.Final 4.2.15.Final, 4.1.135.Final netty-handler: Netty: Denial of Service due to eager buffer allocation in TLS handshake

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-45416

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2026-06-12 15:16 修改: 2026-06-17 10:52

io.netty:netty-handler CVE-2026-50010 高危 4.0.52.Final 4.2.15.Final, 4.1.135.Final netty-handler: Netty: Improper trust manager handling leads to hostname verification bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-50010

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2026-06-12 16:16 修改: 2026-06-17 10:57

io.netty:netty-handler CVE-2020-11612 高危 4.1.17.Final 4.1.46 netty: compression/decompression codecs don't enforce limits on buffer allocation sizes

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-11612

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-04-07 18:15 修改: 2026-06-17 02:50

io.netty:netty-handler CVE-2026-44249 高危 4.1.17.Final 4.2.15.Final, 4.1.135.Final netty-handler: netty-handler: IPv6 subnet rule bypass due to incorrect masking operation

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-44249

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-06-11 22:16 修改: 2026-06-17 10:50

io.netty:netty-handler CVE-2026-45416 高危 4.1.17.Final 4.2.15.Final, 4.1.135.Final netty-handler: Netty: Denial of Service due to eager buffer allocation in TLS handshake

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-45416

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-06-12 15:16 修改: 2026-06-17 10:52

io.netty:netty-handler CVE-2026-50010 高危 4.1.17.Final 4.2.15.Final, 4.1.135.Final netty-handler: Netty: Improper trust manager handling leads to hostname verification bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-50010

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-06-12 16:16 修改: 2026-06-17 10:57

io.netty:netty-handler CVE-2020-11612 高危 4.1.42.Final 4.1.46 netty: compression/decompression codecs don't enforce limits on buffer allocation sizes

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-11612

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-04-07 18:15 修改: 2026-06-17 02:50

io.netty:netty-handler CVE-2026-44249 高危 4.1.42.Final 4.2.15.Final, 4.1.135.Final netty-handler: netty-handler: IPv6 subnet rule bypass due to incorrect masking operation

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-44249

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-06-11 22:16 修改: 2026-06-17 10:50

io.netty:netty-handler CVE-2026-45416 高危 4.1.42.Final 4.2.15.Final, 4.1.135.Final netty-handler: Netty: Denial of Service due to eager buffer allocation in TLS handshake

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-45416

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-06-12 15:16 修改: 2026-06-17 10:52

io.netty:netty-handler CVE-2026-50010 高危 4.1.42.Final 4.2.15.Final, 4.1.135.Final netty-handler: Netty: Improper trust manager handling leads to hostname verification bypass

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-50010

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-06-12 16:16 修改: 2026-06-17 10:57

com.fasterxml.jackson.core:jackson-databind CVE-2020-10650 高危 2.4.0 2.9.10.4 A deserialization flaw was discovered in jackson-databind through 2.9. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10650

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-12-26 20:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10650 高危 2.4.0 2.9.10.4 A deserialization flaw was discovered in jackson-databind through 2.9. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10650

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-12-26 20:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10650 高危 2.4.0 2.9.10.4 A deserialization flaw was discovered in jackson-databind through 2.9. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10650

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-12-26 20:15 修改: 2026-06-17 02:48

log4j:log4j CVE-2021-4104 高危 1.2.15 log4j: Remote code execution in Log4j 1.x when application is configured to use JMSAppender

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-4104

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2021-12-14 12:15 修改: 2026-06-17 04:19

log4j:log4j CVE-2022-23302 高危 1.2.15 log4j: Remote code execution in Log4j 1.x when application is configured to use JMSSink

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23302

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2023-26464 高危 1.2.15 2.0 log4j1-socketappender: DoS via hashmap logging

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26464

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2023-03-10 14:15 修改: 2026-06-17 05:43

com.fasterxml.jackson.core:jackson-databind CVE-2020-10650 高危 2.4.0 2.9.10.4 A deserialization flaw was discovered in jackson-databind through 2.9. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10650

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-26 20:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10650 高危 2.4.0 2.9.10.4 A deserialization flaw was discovered in jackson-databind through 2.9. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10650

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-26 20:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10650 高危 2.4.0 2.9.10.4 A deserialization flaw was discovered in jackson-databind through 2.9. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10650

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-26 20:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10650 高危 2.4.0 2.9.10.4 A deserialization flaw was discovered in jackson-databind through 2.9. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10650

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-26 20:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10650 高危 2.4.0 2.9.10.4 A deserialization flaw was discovered in jackson-databind through 2.9. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10650

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2022-12-26 20:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10650 高危 2.4.0 2.9.10.4 A deserialization flaw was discovered in jackson-databind through 2.9. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10650

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2022-12-26 20:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10673 高危 2.4.0 2.9.10.4, 2.6.7.4 jackson-databind: mishandles the interaction between serialization gadgets and typing which could result in remote command execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10673

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-03-18 22:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10673 高危 2.4.0 2.9.10.4, 2.6.7.4 jackson-databind: mishandles the interaction between serialization gadgets and typing which could result in remote command execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10673

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-03-18 22:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10673 高危 2.4.0 2.9.10.4, 2.6.7.4 jackson-databind: mishandles the interaction between serialization gadgets and typing which could result in remote command execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10673

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-03-18 22:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10673 高危 2.4.0 2.9.10.4, 2.6.7.4 jackson-databind: mishandles the interaction between serialization gadgets and typing which could result in remote command execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10673

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-03-18 22:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10673 高危 2.4.0 2.9.10.4, 2.6.7.4 jackson-databind: mishandles the interaction between serialization gadgets and typing which could result in remote command execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10673

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-03-18 22:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10673 高危 2.4.0 2.9.10.4, 2.6.7.4 jackson-databind: mishandles the interaction between serialization gadgets and typing which could result in remote command execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10673

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-03-18 22:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10673 高危 2.4.0 2.9.10.4, 2.6.7.4 jackson-databind: mishandles the interaction between serialization gadgets and typing which could result in remote command execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10673

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-03-18 22:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10673 高危 2.4.0 2.9.10.4, 2.6.7.4 jackson-databind: mishandles the interaction between serialization gadgets and typing which could result in remote command execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10673

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-03-18 22:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10673 高危 2.4.0 2.9.10.4, 2.6.7.4 jackson-databind: mishandles the interaction between serialization gadgets and typing which could result in remote command execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10673

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-03-18 22:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10673 高危 2.4.0 2.9.10.4, 2.6.7.4 jackson-databind: mishandles the interaction between serialization gadgets and typing which could result in remote command execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10673

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-03-18 22:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10673 高危 2.4.0 2.9.10.4, 2.6.7.4 jackson-databind: mishandles the interaction between serialization gadgets and typing which could result in remote command execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10673

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-03-18 22:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10673 高危 2.4.0 2.9.10.4, 2.6.7.4 jackson-databind: mishandles the interaction between serialization gadgets and typing which could result in remote command execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10673

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2020-03-18 22:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-10673 高危 2.4.0 2.9.10.4, 2.6.7.4 jackson-databind: mishandles the interaction between serialization gadgets and typing which could result in remote command execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10673

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2020-03-18 22:15 修改: 2026-06-17 02:48

com.fasterxml.jackson.core:jackson-databind CVE-2020-24616 高危 2.4.0 2.9.10.6 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to br.com.anteros.dbcp.AnterosDBCPDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24616

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-08-25 18:15 修改: 2026-06-17 03:05

com.fasterxml.jackson.core:jackson-databind CVE-2020-24616 高危 2.4.0 2.9.10.6 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to br.com.anteros.dbcp.AnterosDBCPDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24616

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-08-25 18:15 修改: 2026-06-17 03:05

com.fasterxml.jackson.core:jackson-databind CVE-2020-24616 高危 2.4.0 2.9.10.6 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to br.com.anteros.dbcp.AnterosDBCPDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24616

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-08-25 18:15 修改: 2026-06-17 03:05

com.fasterxml.jackson.core:jackson-databind CVE-2020-24616 高危 2.4.0 2.9.10.6 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to br.com.anteros.dbcp.AnterosDBCPDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24616

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-08-25 18:15 修改: 2026-06-17 03:05

com.fasterxml.jackson.core:jackson-databind CVE-2020-24616 高危 2.4.0 2.9.10.6 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to br.com.anteros.dbcp.AnterosDBCPDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24616

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-08-25 18:15 修改: 2026-06-17 03:05

com.fasterxml.jackson.core:jackson-databind CVE-2020-24616 高危 2.4.0 2.9.10.6 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to br.com.anteros.dbcp.AnterosDBCPDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24616

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-08-25 18:15 修改: 2026-06-17 03:05

com.fasterxml.jackson.core:jackson-databind CVE-2020-24616 高危 2.4.0 2.9.10.6 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to br.com.anteros.dbcp.AnterosDBCPDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24616

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-08-25 18:15 修改: 2026-06-17 03:05

com.fasterxml.jackson.core:jackson-databind CVE-2020-24616 高危 2.4.0 2.9.10.6 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to br.com.anteros.dbcp.AnterosDBCPDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24616

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-08-25 18:15 修改: 2026-06-17 03:05

com.fasterxml.jackson.core:jackson-databind CVE-2020-24616 高危 2.4.0 2.9.10.6 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to br.com.anteros.dbcp.AnterosDBCPDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24616

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-08-25 18:15 修改: 2026-06-17 03:05

com.fasterxml.jackson.core:jackson-databind CVE-2020-24616 高危 2.4.0 2.9.10.6 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to br.com.anteros.dbcp.AnterosDBCPDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24616

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-08-25 18:15 修改: 2026-06-17 03:05

com.fasterxml.jackson.core:jackson-databind CVE-2020-24616 高危 2.4.0 2.9.10.6 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to br.com.anteros.dbcp.AnterosDBCPDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24616

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-08-25 18:15 修改: 2026-06-17 03:05

com.fasterxml.jackson.core:jackson-databind CVE-2020-24616 高危 2.4.0 2.9.10.6 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to br.com.anteros.dbcp.AnterosDBCPDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24616

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2020-08-25 18:15 修改: 2026-06-17 03:05

com.fasterxml.jackson.core:jackson-databind CVE-2020-24616 高危 2.4.0 2.9.10.6 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to br.com.anteros.dbcp.AnterosDBCPDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24616

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2020-08-25 18:15 修改: 2026-06-17 03:05

com.fasterxml.jackson.core:jackson-databind CVE-2020-24750 高危 2.4.0 2.6.7.5, 2.9.10.6 jackson-databind: Serialization gadgets in com.pastdev.httpcomponents.configuration.JndiConfiguration

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24750

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-09-17 19:15 修改: 2026-06-17 03:06

com.fasterxml.jackson.core:jackson-databind CVE-2020-24750 高危 2.4.0 2.6.7.5, 2.9.10.6 jackson-databind: Serialization gadgets in com.pastdev.httpcomponents.configuration.JndiConfiguration

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24750

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-09-17 19:15 修改: 2026-06-17 03:06

com.fasterxml.jackson.core:jackson-databind CVE-2020-24750 高危 2.4.0 2.6.7.5, 2.9.10.6 jackson-databind: Serialization gadgets in com.pastdev.httpcomponents.configuration.JndiConfiguration

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24750

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-09-17 19:15 修改: 2026-06-17 03:06

com.fasterxml.jackson.core:jackson-databind CVE-2020-24750 高危 2.4.0 2.6.7.5, 2.9.10.6 jackson-databind: Serialization gadgets in com.pastdev.httpcomponents.configuration.JndiConfiguration

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24750

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-09-17 19:15 修改: 2026-06-17 03:06

log4j:log4j CVE-2021-4104 高危 1.2.17 log4j: Remote code execution in Log4j 1.x when application is configured to use JMSAppender

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-4104

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-12-14 12:15 修改: 2026-06-17 04:19

log4j:log4j CVE-2021-4104 高危 1.2.17 log4j: Remote code execution in Log4j 1.x when application is configured to use JMSAppender

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-4104

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-12-14 12:15 修改: 2026-06-17 04:19

log4j:log4j CVE-2021-4104 高危 1.2.17 log4j: Remote code execution in Log4j 1.x when application is configured to use JMSAppender

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-4104

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-12-14 12:15 修改: 2026-06-17 04:19

log4j:log4j CVE-2021-4104 高危 1.2.17 log4j: Remote code execution in Log4j 1.x when application is configured to use JMSAppender

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-4104

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-12-14 12:15 修改: 2026-06-17 04:19

log4j:log4j CVE-2021-4104 高危 1.2.17 log4j: Remote code execution in Log4j 1.x when application is configured to use JMSAppender

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-4104

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-12-14 12:15 修改: 2026-06-17 04:19

log4j:log4j CVE-2021-4104 高危 1.2.17 log4j: Remote code execution in Log4j 1.x when application is configured to use JMSAppender

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-4104

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-12-14 12:15 修改: 2026-06-17 04:19

log4j:log4j CVE-2021-4104 高危 1.2.17 log4j: Remote code execution in Log4j 1.x when application is configured to use JMSAppender

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-4104

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-12-14 12:15 修改: 2026-06-17 04:19

log4j:log4j CVE-2021-4104 高危 1.2.17 log4j: Remote code execution in Log4j 1.x when application is configured to use JMSAppender

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-4104

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-12-14 12:15 修改: 2026-06-17 04:19

log4j:log4j CVE-2021-4104 高危 1.2.17 log4j: Remote code execution in Log4j 1.x when application is configured to use JMSAppender

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-4104

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-12-14 12:15 修改: 2026-06-17 04:19

log4j:log4j CVE-2021-4104 高危 1.2.17 log4j: Remote code execution in Log4j 1.x when application is configured to use JMSAppender

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-4104

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-12-14 12:15 修改: 2026-06-17 04:19

log4j:log4j CVE-2021-4104 高危 1.2.17 log4j: Remote code execution in Log4j 1.x when application is configured to use JMSAppender

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-4104

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2021-12-14 12:15 修改: 2026-06-17 04:19

log4j:log4j CVE-2021-4104 高危 1.2.17 log4j: Remote code execution in Log4j 1.x when application is configured to use JMSAppender

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-4104

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2021-12-14 12:15 修改: 2026-06-17 04:19

log4j:log4j CVE-2022-23302 高危 1.2.17 log4j: Remote code execution in Log4j 1.x when application is configured to use JMSSink

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23302

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23302 高危 1.2.17 log4j: Remote code execution in Log4j 1.x when application is configured to use JMSSink

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23302

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23302 高危 1.2.17 log4j: Remote code execution in Log4j 1.x when application is configured to use JMSSink

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23302

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23302 高危 1.2.17 log4j: Remote code execution in Log4j 1.x when application is configured to use JMSSink

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23302

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23302 高危 1.2.17 log4j: Remote code execution in Log4j 1.x when application is configured to use JMSSink

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23302

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23302 高危 1.2.17 log4j: Remote code execution in Log4j 1.x when application is configured to use JMSSink

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23302

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23302 高危 1.2.17 log4j: Remote code execution in Log4j 1.x when application is configured to use JMSSink

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23302

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23302 高危 1.2.17 log4j: Remote code execution in Log4j 1.x when application is configured to use JMSSink

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23302

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23302 高危 1.2.17 log4j: Remote code execution in Log4j 1.x when application is configured to use JMSSink

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23302

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23302 高危 1.2.17 log4j: Remote code execution in Log4j 1.x when application is configured to use JMSSink

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23302

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23302 高危 1.2.17 log4j: Remote code execution in Log4j 1.x when application is configured to use JMSSink

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23302

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2022-23302 高危 1.2.17 log4j: Remote code execution in Log4j 1.x when application is configured to use JMSSink

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23302

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2022-01-18 16:15 修改: 2026-06-17 04:29

log4j:log4j CVE-2023-26464 高危 1.2.17 2.0 log4j1-socketappender: DoS via hashmap logging

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26464

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-03-10 14:15 修改: 2026-06-17 05:43

log4j:log4j CVE-2023-26464 高危 1.2.17 2.0 log4j1-socketappender: DoS via hashmap logging

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26464

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-03-10 14:15 修改: 2026-06-17 05:43

log4j:log4j CVE-2023-26464 高危 1.2.17 2.0 log4j1-socketappender: DoS via hashmap logging

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26464

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-03-10 14:15 修改: 2026-06-17 05:43

log4j:log4j CVE-2023-26464 高危 1.2.17 2.0 log4j1-socketappender: DoS via hashmap logging

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26464

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-03-10 14:15 修改: 2026-06-17 05:43

log4j:log4j CVE-2023-26464 高危 1.2.17 2.0 log4j1-socketappender: DoS via hashmap logging

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26464

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-03-10 14:15 修改: 2026-06-17 05:43

log4j:log4j CVE-2023-26464 高危 1.2.17 2.0 log4j1-socketappender: DoS via hashmap logging

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26464

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-03-10 14:15 修改: 2026-06-17 05:43

log4j:log4j CVE-2023-26464 高危 1.2.17 2.0 log4j1-socketappender: DoS via hashmap logging

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26464

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-03-10 14:15 修改: 2026-06-17 05:43

log4j:log4j CVE-2023-26464 高危 1.2.17 2.0 log4j1-socketappender: DoS via hashmap logging

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26464

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-03-10 14:15 修改: 2026-06-17 05:43

log4j:log4j CVE-2023-26464 高危 1.2.17 2.0 log4j1-socketappender: DoS via hashmap logging

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26464

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-03-10 14:15 修改: 2026-06-17 05:43

log4j:log4j CVE-2023-26464 高危 1.2.17 2.0 log4j1-socketappender: DoS via hashmap logging

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26464

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-03-10 14:15 修改: 2026-06-17 05:43

log4j:log4j CVE-2023-26464 高危 1.2.17 2.0 log4j1-socketappender: DoS via hashmap logging

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26464

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2023-03-10 14:15 修改: 2026-06-17 05:43

log4j:log4j CVE-2023-26464 高危 1.2.17 2.0 log4j1-socketappender: DoS via hashmap logging

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26464

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2023-03-10 14:15 修改: 2026-06-17 05:43

mysql:mysql-connector-java CVE-2023-22102 高危 8.0.15 mysql-connector-java: Connector/J unspecified vulnerability (CPU October 2023)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-22102

镜像层: sha256:6539bc3a62bb0856cca28ecf00a6cf8091a1ef29a62ba2853548c6430cb89d77

发布日期: 2023-10-17 22:15 修改: 2026-06-17 05:34

net.jpountz.lz4:lz4 CVE-2025-12183 高危 1.3.0 lz4-java: lz4-java: Out-of-bounds memory operations lead to denial of service and information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-12183

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-11-28 16:15 修改: 2026-06-17 08:31

net.jpountz.lz4:lz4 CVE-2025-66566 高危 1.3.0 lz4-java: lz4-java: Information Disclosure via Insufficient Output Buffer Clearing

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-66566

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-12-05 18:15 修改: 2026-06-17 09:57

net.minidev:json-smart CVE-2023-1370 高危 2.3 2.4.9 json-smart: Uncontrolled Resource Consumption vulnerability in json-smart (Resource Exhaustion)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-1370

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-03-22 06:15 修改: 2026-06-17 05:27

net.minidev:json-smart CVE-2023-1370 高危 2.3 2.4.9 json-smart: Uncontrolled Resource Consumption vulnerability in json-smart (Resource Exhaustion)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-1370

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-03-22 06:15 修改: 2026-06-17 05:27

net.minidev:json-smart CVE-2023-1370 高危 2.3 2.4.9 json-smart: Uncontrolled Resource Consumption vulnerability in json-smart (Resource Exhaustion)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-1370

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-03-22 06:15 修改: 2026-06-17 05:27

net.minidev:json-smart CVE-2023-1370 高危 2.3 2.4.9 json-smart: Uncontrolled Resource Consumption vulnerability in json-smart (Resource Exhaustion)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-1370

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-03-22 06:15 修改: 2026-06-17 05:27

net.minidev:json-smart CVE-2023-1370 高危 2.3 2.4.9 json-smart: Uncontrolled Resource Consumption vulnerability in json-smart (Resource Exhaustion)

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-1370

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-03-22 06:15 修改: 2026-06-17 05:27

org.apache.ant:ant CVE-2020-11979 高危 1.9.1 1.10.9 ant: insecure temporary file

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-11979

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-10-01 20:15 修改: 2026-06-17 02:51

org.apache.ant:ant CVE-2020-11979 高危 1.9.1 1.10.9 ant: insecure temporary file

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-11979

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-10-01 20:15 修改: 2026-06-17 02:51

com.fasterxml.jackson.core:jackson-databind CVE-2020-24750 高危 2.4.0 2.6.7.5, 2.9.10.6 jackson-databind: Serialization gadgets in com.pastdev.httpcomponents.configuration.JndiConfiguration

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24750

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-09-17 19:15 修改: 2026-06-17 03:06

com.fasterxml.jackson.core:jackson-databind CVE-2020-24750 高危 2.4.0 2.6.7.5, 2.9.10.6 jackson-databind: Serialization gadgets in com.pastdev.httpcomponents.configuration.JndiConfiguration

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24750

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-09-17 19:15 修改: 2026-06-17 03:06

com.fasterxml.jackson.core:jackson-databind CVE-2020-24750 高危 2.4.0 2.6.7.5, 2.9.10.6 jackson-databind: Serialization gadgets in com.pastdev.httpcomponents.configuration.JndiConfiguration

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24750

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-09-17 19:15 修改: 2026-06-17 03:06

com.fasterxml.jackson.core:jackson-databind CVE-2020-24750 高危 2.4.0 2.6.7.5, 2.9.10.6 jackson-databind: Serialization gadgets in com.pastdev.httpcomponents.configuration.JndiConfiguration

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24750

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-09-17 19:15 修改: 2026-06-17 03:06

com.fasterxml.jackson.core:jackson-databind CVE-2020-24750 高危 2.4.0 2.6.7.5, 2.9.10.6 jackson-databind: Serialization gadgets in com.pastdev.httpcomponents.configuration.JndiConfiguration

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24750

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-09-17 19:15 修改: 2026-06-17 03:06

org.apache.avro:avro CVE-2023-39410 高危 1.7.4 1.11.3 apache-avro: Apache Avro Java SDK: Memory when deserializing untrusted data in Avro Java SDK

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39410

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-09-29 17:15 修改: 2026-06-17 06:12

org.apache.avro:avro CVE-2023-39410 高危 1.7.4 1.11.3 apache-avro: Apache Avro Java SDK: Memory when deserializing untrusted data in Avro Java SDK

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39410

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-09-29 17:15 修改: 2026-06-17 06:12

org.apache.avro:avro CVE-2023-39410 高危 1.7.4 1.11.3 apache-avro: Apache Avro Java SDK: Memory when deserializing untrusted data in Avro Java SDK

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39410

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-09-29 17:15 修改: 2026-06-17 06:12

org.apache.avro:avro CVE-2023-39410 高危 1.7.4 1.11.3 apache-avro: Apache Avro Java SDK: Memory when deserializing untrusted data in Avro Java SDK

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39410

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-09-29 17:15 修改: 2026-06-17 06:12

org.apache.avro:avro CVE-2023-39410 高危 1.7.4 1.11.3 apache-avro: Apache Avro Java SDK: Memory when deserializing untrusted data in Avro Java SDK

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39410

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-09-29 17:15 修改: 2026-06-17 06:12

com.fasterxml.jackson.core:jackson-databind CVE-2020-24750 高危 2.4.0 2.6.7.5, 2.9.10.6 jackson-databind: Serialization gadgets in com.pastdev.httpcomponents.configuration.JndiConfiguration

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24750

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-09-17 19:15 修改: 2026-06-17 03:06

com.fasterxml.jackson.core:jackson-databind CVE-2020-24750 高危 2.4.0 2.6.7.5, 2.9.10.6 jackson-databind: Serialization gadgets in com.pastdev.httpcomponents.configuration.JndiConfiguration

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24750

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-09-17 19:15 修改: 2026-06-17 03:06

com.fasterxml.jackson.core:jackson-databind CVE-2020-24750 高危 2.4.0 2.6.7.5, 2.9.10.6 jackson-databind: Serialization gadgets in com.pastdev.httpcomponents.configuration.JndiConfiguration

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24750

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2020-09-17 19:15 修改: 2026-06-17 03:06

com.fasterxml.jackson.core:jackson-databind CVE-2020-24750 高危 2.4.0 2.6.7.5, 2.9.10.6 jackson-databind: Serialization gadgets in com.pastdev.httpcomponents.configuration.JndiConfiguration

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-24750

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2020-09-17 19:15 修改: 2026-06-17 03:06

org.apache.avro:avro CVE-2023-39410 高危 1.7.7 1.11.3 apache-avro: Apache Avro Java SDK: Memory when deserializing untrusted data in Avro Java SDK

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39410

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-09-29 17:15 修改: 2026-06-17 06:12

org.apache.avro:avro CVE-2023-39410 高危 1.7.7 1.11.3 apache-avro: Apache Avro Java SDK: Memory when deserializing untrusted data in Avro Java SDK

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39410

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-09-29 17:15 修改: 2026-06-17 06:12

org.apache.avro:avro CVE-2023-39410 高危 1.7.7 1.11.3 apache-avro: Apache Avro Java SDK: Memory when deserializing untrusted data in Avro Java SDK

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39410

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-09-29 17:15 修改: 2026-06-17 06:12

org.apache.avro:avro CVE-2023-39410 高危 1.7.7 1.11.3 apache-avro: Apache Avro Java SDK: Memory when deserializing untrusted data in Avro Java SDK

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39410

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-09-29 17:15 修改: 2026-06-17 06:12

com.fasterxml.jackson.core:jackson-databind CVE-2020-35490 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35490

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35490 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35490

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35490 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35490

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35490 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35490

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

org.apache.avro:avro CVE-2023-39410 高危 1.8.2 1.11.3 apache-avro: Apache Avro Java SDK: Memory when deserializing untrusted data in Avro Java SDK

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39410

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-09-29 17:15 修改: 2026-06-17 06:12

org.apache.avro:avro CVE-2023-39410 高危 1.8.2 1.11.3 apache-avro: Apache Avro Java SDK: Memory when deserializing untrusted data in Avro Java SDK

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39410

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-09-29 17:15 修改: 2026-06-17 06:12

org.apache.avro:avro CVE-2023-39410 高危 1.8.2 1.11.3 apache-avro: Apache Avro Java SDK: Memory when deserializing untrusted data in Avro Java SDK

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39410

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-09-29 17:15 修改: 2026-06-17 06:12

org.apache.avro:avro CVE-2023-39410 高危 1.8.2 1.11.3 apache-avro: Apache Avro Java SDK: Memory when deserializing untrusted data in Avro Java SDK

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-39410

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-09-29 17:15 修改: 2026-06-17 06:12

org.apache.calcite.avatica:avatica-core CVE-2022-36364 高危 1.11.0 1.22.0 Apache Calcite Avatica JDBC driver arbitrary code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-36364

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-07-28 09:15 修改: 2026-06-17 04:53

com.fasterxml.jackson.core:jackson-databind CVE-2020-35490 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35490

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35490 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35490

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35490 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35490

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35490 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35490

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

org.apache.commons:commons-compress CVE-2021-35515 高危 1.19 1.21 apache-commons-compress: infinite loop when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35515

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35515 高危 1.19 1.21 apache-commons-compress: infinite loop when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35515

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35515 高危 1.19 1.21 apache-commons-compress: infinite loop when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35515

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35515 高危 1.19 1.21 apache-commons-compress: infinite loop when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35515

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35515 高危 1.19 1.21 apache-commons-compress: infinite loop when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35515

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35515 高危 1.19 1.21 apache-commons-compress: infinite loop when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35515

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35516 高危 1.19 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35516

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35516 高危 1.19 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35516

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35516 高危 1.19 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35516

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35516 高危 1.19 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35516

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35516 高危 1.19 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35516

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35516 高危 1.19 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35516

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35517 高危 1.19 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted TAR archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35517

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35517 高危 1.19 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted TAR archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35517

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35517 高危 1.19 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted TAR archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35517

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35517 高危 1.19 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted TAR archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35517

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35517 高危 1.19 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted TAR archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35517

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35517 高危 1.19 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted TAR archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35517

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-36090 高危 1.19 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted ZIP archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-36090

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:58

org.apache.commons:commons-compress CVE-2021-36090 高危 1.19 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted ZIP archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-36090

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:58

org.apache.commons:commons-compress CVE-2021-36090 高危 1.19 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted ZIP archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-36090

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:58

org.apache.commons:commons-compress CVE-2021-36090 高危 1.19 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted ZIP archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-36090

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:58

org.apache.commons:commons-compress CVE-2021-36090 高危 1.19 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted ZIP archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-36090

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:58

org.apache.commons:commons-compress CVE-2021-36090 高危 1.19 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted ZIP archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-36090

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:58

org.apache.commons:commons-compress CVE-2021-35515 高危 1.4.1 1.21 apache-commons-compress: infinite loop when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35515

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35515 高危 1.4.1 1.21 apache-commons-compress: infinite loop when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35515

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35515 高危 1.4.1 1.21 apache-commons-compress: infinite loop when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35515

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35515 高危 1.4.1 1.21 apache-commons-compress: infinite loop when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35515

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35515 高危 1.4.1 1.21 apache-commons-compress: infinite loop when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35515

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35515 高危 1.4.1 1.21 apache-commons-compress: infinite loop when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35515

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35516 高危 1.4.1 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35516

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35516 高危 1.4.1 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35516

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35516 高危 1.4.1 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35516

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35516 高危 1.4.1 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35516

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35516 高危 1.4.1 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35516

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35516 高危 1.4.1 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35516

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35517 高危 1.4.1 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted TAR archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35517

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35517 高危 1.4.1 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted TAR archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35517

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35517 高危 1.4.1 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted TAR archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35517

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35517 高危 1.4.1 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted TAR archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35517

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35517 高危 1.4.1 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted TAR archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35517

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35517 高危 1.4.1 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted TAR archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35517

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-36090 高危 1.4.1 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted ZIP archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-36090

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:58

org.apache.commons:commons-compress CVE-2021-36090 高危 1.4.1 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted ZIP archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-36090

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:58

org.apache.commons:commons-compress CVE-2021-36090 高危 1.4.1 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted ZIP archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-36090

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:58

org.apache.commons:commons-compress CVE-2021-36090 高危 1.4.1 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted ZIP archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-36090

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:58

org.apache.commons:commons-compress CVE-2021-36090 高危 1.4.1 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted ZIP archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-36090

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:58

org.apache.commons:commons-compress CVE-2021-36090 高危 1.4.1 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted ZIP archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-36090

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:58

org.apache.commons:commons-compress CVE-2021-35515 高危 1.8.1 1.21 apache-commons-compress: infinite loop when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35515

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35515 高危 1.8.1 1.21 apache-commons-compress: infinite loop when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35515

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35516 高危 1.8.1 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35516

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35516 高危 1.8.1 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35516

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35517 高危 1.8.1 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted TAR archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35517

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35517 高危 1.8.1 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted TAR archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35517

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-36090 高危 1.8.1 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted ZIP archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-36090

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:58

org.apache.commons:commons-compress CVE-2021-36090 高危 1.8.1 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted ZIP archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-36090

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:58

org.apache.commons:commons-compress CVE-2021-35515 高危 1.9 1.21 apache-commons-compress: infinite loop when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35515

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35515 高危 1.9 1.21 apache-commons-compress: infinite loop when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35515

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35516 高危 1.9 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35516

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35516 高危 1.9 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted 7Z archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35516

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35517 高危 1.9 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted TAR archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35517

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-35517 高危 1.9 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted TAR archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-35517

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:57

org.apache.commons:commons-compress CVE-2021-36090 高危 1.9 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted ZIP archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-36090

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:58

org.apache.commons:commons-compress CVE-2021-36090 高危 1.9 1.21 apache-commons-compress: excessive memory allocation when reading a specially crafted ZIP archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-36090

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-07-13 08:15 修改: 2026-06-17 03:58

org.apache.commons:commons-vfs2 CVE-2025-27553 高危 2.1 2.10.0 apache-commons-vfs: Apache Commons VFS: Possible path traversal issue when using NameScope.DESCENDENT

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-27553

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-03-23 15:15 修改: 2026-06-17 09:03

org.apache.commons:commons-vfs2 CVE-2025-27553 高危 2.1 2.10.0 apache-commons-vfs: Apache Commons VFS: Possible path traversal issue when using NameScope.DESCENDENT

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-27553

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-03-23 15:15 修改: 2026-06-17 09:03

com.fasterxml.jackson.core:jackson-databind CVE-2020-35490 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35490

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35490 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35490

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35490 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35490

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35490 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35490

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35490 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35490

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35491 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35491

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35491 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35491

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35491 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35491

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35491 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35491

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35491 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35491

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35491 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35491

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35491 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35491

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35491 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35491

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35491 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35491

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35491 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35491

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

org.apache.hadoop:hadoop-common CVE-2016-6811 高危 2.7.3 2.7.4 hadoop: privilege escalation to root

漏洞详情: https://avd.aquasec.com/nvd/cve-2016-6811

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-04-11 14:59 修改: 2026-06-17 00:51

org.apache.hadoop:hadoop-common CVE-2016-6811 高危 2.7.3 2.7.4 hadoop: privilege escalation to root

漏洞详情: https://avd.aquasec.com/nvd/cve-2016-6811

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-04-11 14:59 修改: 2026-06-17 00:51

org.apache.hadoop:hadoop-common CVE-2016-6811 高危 2.7.3 2.7.4 hadoop: privilege escalation to root

漏洞详情: https://avd.aquasec.com/nvd/cve-2016-6811

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-04-11 14:59 修改: 2026-06-17 00:51

org.apache.hadoop:hadoop-common CVE-2016-6811 高危 2.7.3 2.7.4 hadoop: privilege escalation to root

漏洞详情: https://avd.aquasec.com/nvd/cve-2016-6811

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-04-11 14:59 修改: 2026-06-17 00:51

org.apache.hadoop:hadoop-common CVE-2017-7669 高危 2.7.3 2.8.1, 3.0.0-alpha3 Apache Hadoop's LinuxContainerExecutor runs docker commands as root with insufficient input validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7669

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-06-05 01:29 修改: 2026-06-17 01:24

org.apache.hadoop:hadoop-common CVE-2017-7669 高危 2.7.3 2.8.1, 3.0.0-alpha3 Apache Hadoop's LinuxContainerExecutor runs docker commands as root with insufficient input validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7669

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-06-05 01:29 修改: 2026-06-17 01:24

org.apache.hadoop:hadoop-common CVE-2017-7669 高危 2.7.3 2.8.1, 3.0.0-alpha3 Apache Hadoop's LinuxContainerExecutor runs docker commands as root with insufficient input validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7669

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-06-05 01:29 修改: 2026-06-17 01:24

org.apache.hadoop:hadoop-common CVE-2017-7669 高危 2.7.3 2.8.1, 3.0.0-alpha3 Apache Hadoop's LinuxContainerExecutor runs docker commands as root with insufficient input validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7669

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-06-05 01:29 修改: 2026-06-17 01:24

org.apache.hadoop:hadoop-common CVE-2020-9492 高危 2.7.3 3.2.2, 3.1.4, 2.10.1 hadoop: WebHDFS client might send SPNEGO authorization header

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9492

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-26 18:16 修改: 2026-06-17 03:28

org.apache.hadoop:hadoop-common CVE-2020-9492 高危 2.7.3 3.2.2, 3.1.4, 2.10.1 hadoop: WebHDFS client might send SPNEGO authorization header

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9492

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-26 18:16 修改: 2026-06-17 03:28

org.apache.hadoop:hadoop-common CVE-2020-9492 高危 2.7.3 3.2.2, 3.1.4, 2.10.1 hadoop: WebHDFS client might send SPNEGO authorization header

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9492

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-26 18:16 修改: 2026-06-17 03:28

org.apache.hadoop:hadoop-common CVE-2020-9492 高危 2.7.3 3.2.2, 3.1.4, 2.10.1 hadoop: WebHDFS client might send SPNEGO authorization header

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9492

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-26 18:16 修改: 2026-06-17 03:28

com.fasterxml.jackson.core:jackson-databind CVE-2020-35491 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35491

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35491 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35491

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35491 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.datasources.SharedPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35491

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2020-12-17 19:15 修改: 2026-06-17 03:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-35728 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.oracle.wls.shaded.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35728

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-27 05:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-35728 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.oracle.wls.shaded.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35728

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-12-27 05:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-35728 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.oracle.wls.shaded.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35728

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-27 05:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-35728 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.oracle.wls.shaded.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35728

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-27 05:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-35728 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.oracle.wls.shaded.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35728

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-27 05:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-35728 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.oracle.wls.shaded.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35728

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-27 05:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-35728 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.oracle.wls.shaded.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35728

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-27 05:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-35728 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.oracle.wls.shaded.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35728

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-27 05:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-35728 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.oracle.wls.shaded.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35728

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-27 05:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-35728 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.oracle.wls.shaded.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35728

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-27 05:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-35728 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.oracle.wls.shaded.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35728

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-27 05:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-35728 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.oracle.wls.shaded.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35728

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2020-12-27 05:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-35728 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to com.oracle.wls.shaded.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-35728

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2020-12-27 05:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36179 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36179

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36179 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36179

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36179 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36179

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36179 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36179

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36179 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36179

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36179 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36179

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36179 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36179

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36179 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36179

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

org.apache.hadoop:hadoop-hdfs-native-client CVE-2025-27821 高危 3.3.0 3.4.2 Apache Hadoop HDFS Native Client has Out-of-bounds Write Vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-27821

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-01-26 10:16 修改: 2026-06-17 09:04

org.apache.hadoop:hadoop-hdfs-native-client CVE-2025-27821 高危 3.3.0 3.4.2 Apache Hadoop HDFS Native Client has Out-of-bounds Write Vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-27821

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-01-26 10:16 修改: 2026-06-17 09:04

org.apache.hadoop:hadoop-yarn-server-common CVE-2021-33036 高危 2.7.3 2.10.2, 3.2.3, 3.3.2 hadoop: privilege escalation via yarn user

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-33036

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-06-15 15:15 修改: 2026-06-17 03:54

org.apache.hadoop:hadoop-yarn-server-common CVE-2021-33036 高危 3.3.0 2.10.2, 3.2.3, 3.3.2 hadoop: privilege escalation via yarn user

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-33036

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-06-15 15:15 修改: 2026-06-17 03:54

org.apache.hadoop:hadoop-yarn-server-common CVE-2021-33036 高危 3.3.0 2.10.2, 3.2.3, 3.3.2 hadoop: privilege escalation via yarn user

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-33036

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-06-15 15:15 修改: 2026-06-17 03:54

org.apache.hadoop:hadoop-yarn-server-common CVE-2021-33036 高危 3.3.0 2.10.2, 3.2.3, 3.3.2 hadoop: privilege escalation via yarn user

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-33036

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-06-15 15:15 修改: 2026-06-17 03:54

org.apache.hive:hive-service CVE-2024-23945 高危 2.3.9 4.0.0 Apache Hive and Spark: CookieSigner exposes the correct signature when message verification fails

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23945

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2024-12-23 16:15 修改: 2026-06-17 07:13

org.apache.hive:hive-service CVE-2024-23945 高危 2.3.9 4.0.0 Apache Hive and Spark: CookieSigner exposes the correct signature when message verification fails

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23945

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2024-12-23 16:15 修改: 2026-06-17 07:13

org.apache.hive:hive-service CVE-2024-23945 高危 3.1.3 4.0.0 Apache Hive and Spark: CookieSigner exposes the correct signature when message verification fails

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23945

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-12-23 16:15 修改: 2026-06-17 07:13

org.apache.hive:hive-service CVE-2024-23945 高危 3.1.3 4.0.0 Apache Hive and Spark: CookieSigner exposes the correct signature when message verification fails

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23945

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-12-23 16:15 修改: 2026-06-17 07:13

com.fasterxml.jackson.core:jackson-databind CVE-2020-36179 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36179

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36179 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36179

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

org.apache.ivy:ivy CVE-2022-37866 高危 2.4.0 2.5.1 Ivy: Ivy Path traversal

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-37866

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-11-07 14:15 修改: 2026-06-17 04:55

org.apache.ivy:ivy CVE-2022-37866 高危 2.4.0 2.5.1 Ivy: Ivy Path traversal

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-37866

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-11-07 14:15 修改: 2026-06-17 04:55

org.apache.ivy:ivy CVE-2022-46751 高危 2.4.0 2.5.2 apache-ivy: XML External Entity vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-46751

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-08-21 07:15 修改: 2026-06-17 05:12

org.apache.ivy:ivy CVE-2022-46751 高危 2.4.0 2.5.2 apache-ivy: XML External Entity vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-46751

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-08-21 07:15 修改: 2026-06-17 05:12

com.fasterxml.jackson.core:jackson-databind CVE-2020-36179 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36179

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36179 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36179

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36179 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36179

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36180 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36180

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36180 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36180

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36180 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36180

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

org.apache.logging.log4j:log4j-core CVE-2021-45105 高危 2.6.2 2.12.3, 2.17.0, 2.3.1 log4j-core: DoS in log4j 2.x with Thread Context Map (MDC) input data contains a recursive lookup and context lookup pattern

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-45105

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-12-18 12:15 修改: 2026-06-17 04:13

org.apache.logging.log4j:log4j-core CVE-2021-45105 高危 2.6.2 2.12.3, 2.17.0, 2.3.1 log4j-core: DoS in log4j 2.x with Thread Context Map (MDC) input data contains a recursive lookup and context lookup pattern

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-45105

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-12-18 12:15 修改: 2026-06-17 04:13

org.apache.mesos:mesos CVE-2017-7687 高危 0.21.1 1.1.3, 1.2.2, 1.3.1 Denial of service in Apache Mesos

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7687

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2017-09-29 01:34 修改: 2026-06-17 01:24

org.apache.mesos:mesos CVE-2017-9790 高危 0.21.1 1.1.3, 1.2.2, 1.3.1 Use after free in Apache Mesos

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-9790

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2017-09-29 01:34 修改: 2026-06-17 01:28

org.apache.mesos:mesos CVE-2018-11793 高危 0.21.1 1.4.3, 1.5.2, 1.6.2, 1.7.1 mesos: stack overflow vulnerability in parser

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11793

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-03-05 21:29 修改: 2026-06-17 01:36

org.apache.mesos:mesos CVE-2019-0204 高危 0.21.1 1.4.3, 1.5.3, 1.6.2, 1.7.2 mesos: docker image code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-0204

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-03-25 22:29 修改: 2026-06-17 02:07

com.fasterxml.jackson.core:jackson-databind CVE-2020-36180 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36180

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36180 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36180

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36180 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36180

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

org.apache.mina:mina-core CVE-2019-0231 高危 2.0.7 2.0.21, 2.1.1 mina-core: Retaining an open socket in close_notify SSL-TLS leading to Information disclosure.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-0231

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2019-10-01 20:15 修改: 2026-06-17 02:08

com.fasterxml.jackson.core:jackson-databind CVE-2020-36180 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36180

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36180 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36180

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36180 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36180

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36180 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36180

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

org.apache.spark:spark-core_2.11 CVE-2017-12612 高危 2.0.0 2.1.2 Apache Spark Deserialization of Untrusted Data vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-12612

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2017-09-13 16:29 修改: 2026-06-17 01:03

org.apache.spark:spark-core_2.11 CVE-2018-11804 高危 2.0.0 Improper Input Validation in Apache Spark

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11804

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-10-24 18:29 修改: 2026-06-17 01:36

org.apache.spark:spark-core_2.11 CVE-2019-10099 高危 2.0.0 2.3.3 Sensitive data written to disk unencrypted in Spark

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10099

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-08-07 17:15 修改: 2026-06-17 02:10

org.apache.spark:spark-core_2.11 CVE-2025-54920 高危 2.0.0 org.apache.spark/spark-core: Apache Spark: Spark History Server Code Execution Vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-54920

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2026-03-16 14:17 修改: 2026-06-17 09:40

com.fasterxml.jackson.core:jackson-databind CVE-2020-36180 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36180

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

org.apache.spark:spark-core_2.11 CVE-2019-10099 高危 2.3.0 2.3.3 Sensitive data written to disk unencrypted in Spark

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10099

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-08-07 17:15 修改: 2026-06-17 02:10

org.apache.spark:spark-core_2.11 CVE-2025-54920 高危 2.3.0 org.apache.spark/spark-core: Apache Spark: Spark History Server Code Execution Vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-54920

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2026-03-16 14:17 修改: 2026-06-17 09:40

org.apache.thrift:libthrift CVE-2018-1320 高危 0.9.3 0.9.3-1, 0.12.0 thrift: SASL negotiation isComplete validation bypass in the org.apache.thrift.transport.TSaslTransport class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-1320

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-01-07 17:29 修改: 2026-06-17 01:51

org.apache.thrift:libthrift CVE-2018-1320 高危 0.9.3 0.9.3-1, 0.12.0 thrift: SASL negotiation isComplete validation bypass in the org.apache.thrift.transport.TSaslTransport class

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-1320

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-01-07 17:29 修改: 2026-06-17 01:51

org.apache.thrift:libthrift CVE-2019-0205 高危 0.9.3 0.13.0 thrift: Endless loop when feed with specific input data

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-0205

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-10-29 19:15 修改: 2026-06-17 02:07

org.apache.thrift:libthrift CVE-2019-0205 高危 0.9.3 0.13.0 thrift: Endless loop when feed with specific input data

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-0205

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-10-29 19:15 修改: 2026-06-17 02:07

org.apache.thrift:libthrift CVE-2020-13949 高危 0.9.3 0.14.0 libthrift: potential DoS when processing untrusted payloads

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13949

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-02-12 20:15 修改: 2026-06-17 02:53

org.apache.thrift:libthrift CVE-2020-13949 高危 0.9.3 0.14.0 libthrift: potential DoS when processing untrusted payloads

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13949

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-02-12 20:15 修改: 2026-06-17 02:53

org.apache.thrift:libthrift CVE-2026-43869 高危 0.9.3 0.23.0 Apache Thrift: Apache Thrift: Security bypass due to improper certificate validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-43869

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2026-05-05 08:16 修改: 2026-06-17 10:50

org.apache.thrift:libthrift CVE-2026-43869 高危 0.9.3 0.23.0 Apache Thrift: Apache Thrift: Security bypass due to improper certificate validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-43869

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2026-05-05 08:16 修改: 2026-06-17 10:50

com.fasterxml.jackson.core:jackson-databind CVE-2020-36180 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36180

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36180 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36180

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

org.apache.velocity:velocity CVE-2020-13936 高危 1.7 velocity: arbitrary code execution when attacker is able to modify templates

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13936

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-03-10 08:15 修改: 2026-06-17 02:53

com.fasterxml.jackson.core:jackson-databind CVE-2020-36181 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36181

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36181 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36181

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36181 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36181

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36181 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36181

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36181 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36181

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36181 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36181

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36181 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36181

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36181 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36181

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36181 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36181

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

org.apache.zookeeper:zookeeper CVE-2017-5637 高危 3.4.6 3.4.10, 3.5.3 zookeeper: Incorrect input validation with wchp/wchc four letter words

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-5637

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2017-10-10 01:30 修改: 2026-06-17 01:20

org.apache.zookeeper:zookeeper CVE-2017-5637 高危 3.4.6 3.4.10, 3.5.3 zookeeper: Incorrect input validation with wchp/wchc four letter words

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-5637

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2017-10-10 01:30 修改: 2026-06-17 01:20

org.apache.zookeeper:zookeeper CVE-2017-5637 高危 3.4.6 3.4.10, 3.5.3 zookeeper: Incorrect input validation with wchp/wchc four letter words

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-5637

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-10-10 01:30 修改: 2026-06-17 01:20

org.apache.zookeeper:zookeeper CVE-2017-5637 高危 3.4.6 3.4.10, 3.5.3 zookeeper: Incorrect input validation with wchp/wchc four letter words

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-5637

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-10-10 01:30 修改: 2026-06-17 01:20

org.apache.zookeeper:zookeeper CVE-2017-5637 高危 3.4.6 3.4.10, 3.5.3 zookeeper: Incorrect input validation with wchp/wchc four letter words

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-5637

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-10-10 01:30 修改: 2026-06-17 01:20

org.apache.zookeeper:zookeeper CVE-2017-5637 高危 3.4.6 3.4.10, 3.5.3 zookeeper: Incorrect input validation with wchp/wchc four letter words

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-5637

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-10-10 01:30 修改: 2026-06-17 01:20

org.apache.zookeeper:zookeeper CVE-2017-5637 高危 3.4.6 3.4.10, 3.5.3 zookeeper: Incorrect input validation with wchp/wchc four letter words

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-5637

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-10-10 01:30 修改: 2026-06-17 01:20

org.apache.zookeeper:zookeeper CVE-2018-8012 高危 3.4.6 3.4.10, 3.5.4-beta zookeeper: No authentication or authorization is enforced when a server joins a quorum

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-8012

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-05-21 19:29 修改: 2026-06-17 02:04

org.apache.zookeeper:zookeeper CVE-2018-8012 高危 3.4.6 3.4.10, 3.5.4-beta zookeeper: No authentication or authorization is enforced when a server joins a quorum

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-8012

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-05-21 19:29 修改: 2026-06-17 02:04

org.apache.zookeeper:zookeeper CVE-2018-8012 高危 3.4.6 3.4.10, 3.5.4-beta zookeeper: No authentication or authorization is enforced when a server joins a quorum

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-8012

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-05-21 19:29 修改: 2026-06-17 02:04

org.apache.zookeeper:zookeeper CVE-2018-8012 高危 3.4.6 3.4.10, 3.5.4-beta zookeeper: No authentication or authorization is enforced when a server joins a quorum

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-8012

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-05-21 19:29 修改: 2026-06-17 02:04

org.apache.zookeeper:zookeeper CVE-2018-8012 高危 3.4.6 3.4.10, 3.5.4-beta zookeeper: No authentication or authorization is enforced when a server joins a quorum

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-8012

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-05-21 19:29 修改: 2026-06-17 02:04

org.apache.zookeeper:zookeeper CVE-2018-8012 高危 3.4.6 3.4.10, 3.5.4-beta zookeeper: No authentication or authorization is enforced when a server joins a quorum

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-8012

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-05-21 19:29 修改: 2026-06-17 02:04

org.apache.zookeeper:zookeeper CVE-2018-8012 高危 3.4.6 3.4.10, 3.5.4-beta zookeeper: No authentication or authorization is enforced when a server joins a quorum

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-8012

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-05-21 19:29 修改: 2026-06-17 02:04

com.fasterxml.jackson.core:jackson-databind CVE-2020-36181 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36181

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36181 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36181

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36181 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36181

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36181 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36181

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

org.asynchttpclient:async-http-client CVE-2026-45300 高危 2.0.37 3.0.10, 2.15.0 The AsyncHttpClient (AHC) library allows Java applications to easily e ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-45300

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2026-06-05 20:17 修改: 2026-06-17 10:51

com.fasterxml.jackson.core:jackson-databind CVE-2020-36182 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36182

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36182 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36182

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36182 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36182

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36182 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36182

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36182 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36182

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36182 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36182

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36182 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36182

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36182 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36182

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36182 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36182

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36182 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36182

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36182 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36182

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36182 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36182

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36182 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36182

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

org.codehaus.jackson:jackson-mapper-asl CVE-2019-10172 高危 1.9.13 jackson-mapper-asl: XML external entity similar to CVE-2016-3720

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10172

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-11-18 17:15 修改: 2026-06-17 02:10

org.codehaus.jackson:jackson-mapper-asl CVE-2019-10172 高危 1.9.13 jackson-mapper-asl: XML external entity similar to CVE-2016-3720

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10172

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-11-18 17:15 修改: 2026-06-17 02:10

org.codehaus.jackson:jackson-mapper-asl CVE-2019-10172 高危 1.9.13 jackson-mapper-asl: XML external entity similar to CVE-2016-3720

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10172

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-11-18 17:15 修改: 2026-06-17 02:10

org.codehaus.jackson:jackson-mapper-asl CVE-2019-10172 高危 1.9.13 jackson-mapper-asl: XML external entity similar to CVE-2016-3720

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10172

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-11-18 17:15 修改: 2026-06-17 02:10

org.codehaus.jackson:jackson-mapper-asl CVE-2019-10172 高危 1.9.13 jackson-mapper-asl: XML external entity similar to CVE-2016-3720

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10172

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-11-18 17:15 修改: 2026-06-17 02:10

org.codehaus.jackson:jackson-mapper-asl CVE-2019-10172 高危 1.9.13 jackson-mapper-asl: XML external entity similar to CVE-2016-3720

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10172

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-11-18 17:15 修改: 2026-06-17 02:10

org.codehaus.jackson:jackson-mapper-asl CVE-2019-10172 高危 1.9.13 jackson-mapper-asl: XML external entity similar to CVE-2016-3720

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10172

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-11-18 17:15 修改: 2026-06-17 02:10

org.codehaus.jackson:jackson-mapper-asl CVE-2019-10172 高危 1.9.13 jackson-mapper-asl: XML external entity similar to CVE-2016-3720

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10172

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-11-18 17:15 修改: 2026-06-17 02:10

org.codehaus.jackson:jackson-mapper-asl CVE-2019-10172 高危 1.9.13 jackson-mapper-asl: XML external entity similar to CVE-2016-3720

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10172

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-11-18 17:15 修改: 2026-06-17 02:10

org.codehaus.jackson:jackson-mapper-asl CVE-2019-10172 高危 1.9.13 jackson-mapper-asl: XML external entity similar to CVE-2016-3720

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10172

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-11-18 17:15 修改: 2026-06-17 02:10

org.codehaus.jackson:jackson-mapper-asl CVE-2019-10172 高危 1.9.13 jackson-mapper-asl: XML external entity similar to CVE-2016-3720

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10172

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-11-18 17:15 修改: 2026-06-17 02:10

org.codehaus.jackson:jackson-mapper-asl CVE-2019-10172 高危 1.9.13 jackson-mapper-asl: XML external entity similar to CVE-2016-3720

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10172

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-11-18 17:15 修改: 2026-06-17 02:10

org.codehaus.jettison:jettison CVE-2022-40150 高危 1.1 1.5.2 jettison: memory exhaustion via user-supplied XML or JSON data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40150

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

org.codehaus.jettison:jettison CVE-2022-40150 高危 1.1 1.5.2 jettison: memory exhaustion via user-supplied XML or JSON data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40150

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

org.codehaus.jettison:jettison CVE-2022-40150 高危 1.1 1.5.2 jettison: memory exhaustion via user-supplied XML or JSON data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40150

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

org.codehaus.jettison:jettison CVE-2022-40150 高危 1.1 1.5.2 jettison: memory exhaustion via user-supplied XML or JSON data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40150

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

org.codehaus.jettison:jettison CVE-2022-40150 高危 1.1 1.5.2 jettison: memory exhaustion via user-supplied XML or JSON data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40150

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

org.codehaus.jettison:jettison CVE-2022-40150 高危 1.1 1.5.2 jettison: memory exhaustion via user-supplied XML or JSON data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40150

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

org.codehaus.jettison:jettison CVE-2022-40150 高危 1.1 1.5.2 jettison: memory exhaustion via user-supplied XML or JSON data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40150

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

org.codehaus.jettison:jettison CVE-2022-40150 高危 1.1 1.5.2 jettison: memory exhaustion via user-supplied XML or JSON data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40150

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

org.codehaus.jettison:jettison CVE-2022-40150 高危 1.1 1.5.2 jettison: memory exhaustion via user-supplied XML or JSON data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40150

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

org.codehaus.jettison:jettison CVE-2022-40150 高危 1.1 1.5.2 jettison: memory exhaustion via user-supplied XML or JSON data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40150

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

org.codehaus.jettison:jettison CVE-2022-40150 高危 1.1 1.5.2 jettison: memory exhaustion via user-supplied XML or JSON data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40150

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

org.codehaus.jettison:jettison CVE-2022-40150 高危 1.1 1.5.2 jettison: memory exhaustion via user-supplied XML or JSON data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40150

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

org.codehaus.jettison:jettison CVE-2022-45685 高危 1.1 1.5.2 jettison: stack overflow in JSONObject() allows attackers to cause a Denial of Service (DoS) via crafted JSON data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-45685

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-12-13 15:15 修改: 2026-06-17 05:10

org.codehaus.jettison:jettison CVE-2022-45685 高危 1.1 1.5.2 jettison: stack overflow in JSONObject() allows attackers to cause a Denial of Service (DoS) via crafted JSON data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-45685

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-12-13 15:15 修改: 2026-06-17 05:10

org.codehaus.jettison:jettison CVE-2022-45685 高危 1.1 1.5.2 jettison: stack overflow in JSONObject() allows attackers to cause a Denial of Service (DoS) via crafted JSON data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-45685

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-12-13 15:15 修改: 2026-06-17 05:10

org.codehaus.jettison:jettison CVE-2022-45685 高危 1.1 1.5.2 jettison: stack overflow in JSONObject() allows attackers to cause a Denial of Service (DoS) via crafted JSON data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-45685

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-12-13 15:15 修改: 2026-06-17 05:10

org.codehaus.jettison:jettison CVE-2022-45685 高危 1.1 1.5.2 jettison: stack overflow in JSONObject() allows attackers to cause a Denial of Service (DoS) via crafted JSON data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-45685

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-12-13 15:15 修改: 2026-06-17 05:10

org.codehaus.jettison:jettison CVE-2022-45685 高危 1.1 1.5.2 jettison: stack overflow in JSONObject() allows attackers to cause a Denial of Service (DoS) via crafted JSON data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-45685

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-12-13 15:15 修改: 2026-06-17 05:10

org.codehaus.jettison:jettison CVE-2022-45685 高危 1.1 1.5.2 jettison: stack overflow in JSONObject() allows attackers to cause a Denial of Service (DoS) via crafted JSON data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-45685

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-12-13 15:15 修改: 2026-06-17 05:10

org.codehaus.jettison:jettison CVE-2022-45685 高危 1.1 1.5.2 jettison: stack overflow in JSONObject() allows attackers to cause a Denial of Service (DoS) via crafted JSON data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-45685

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-13 15:15 修改: 2026-06-17 05:10

org.codehaus.jettison:jettison CVE-2022-45685 高危 1.1 1.5.2 jettison: stack overflow in JSONObject() allows attackers to cause a Denial of Service (DoS) via crafted JSON data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-45685

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-13 15:15 修改: 2026-06-17 05:10

org.codehaus.jettison:jettison CVE-2022-45685 高危 1.1 1.5.2 jettison: stack overflow in JSONObject() allows attackers to cause a Denial of Service (DoS) via crafted JSON data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-45685

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-13 15:15 修改: 2026-06-17 05:10

org.codehaus.jettison:jettison CVE-2022-45685 高危 1.1 1.5.2 jettison: stack overflow in JSONObject() allows attackers to cause a Denial of Service (DoS) via crafted JSON data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-45685

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-13 15:15 修改: 2026-06-17 05:10

org.codehaus.jettison:jettison CVE-2022-45685 高危 1.1 1.5.2 jettison: stack overflow in JSONObject() allows attackers to cause a Denial of Service (DoS) via crafted JSON data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-45685

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2022-12-13 15:15 修改: 2026-06-17 05:10

org.codehaus.jettison:jettison CVE-2022-45693 高危 1.1 1.5.2 jettison: If the value in map is the map's self, the new new JSONObject(map) cause StackOverflowError which may lead to dos

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-45693

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-12-13 15:15 修改: 2026-06-17 05:10

org.codehaus.jettison:jettison CVE-2022-45693 高危 1.1 1.5.2 jettison: If the value in map is the map's self, the new new JSONObject(map) cause StackOverflowError which may lead to dos

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-45693

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-12-13 15:15 修改: 2026-06-17 05:10

org.codehaus.jettison:jettison CVE-2022-45693 高危 1.1 1.5.2 jettison: If the value in map is the map's self, the new new JSONObject(map) cause StackOverflowError which may lead to dos

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-45693

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-12-13 15:15 修改: 2026-06-17 05:10

org.codehaus.jettison:jettison CVE-2022-45693 高危 1.1 1.5.2 jettison: If the value in map is the map's self, the new new JSONObject(map) cause StackOverflowError which may lead to dos

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-45693

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-12-13 15:15 修改: 2026-06-17 05:10

org.codehaus.jettison:jettison CVE-2022-45693 高危 1.1 1.5.2 jettison: If the value in map is the map's self, the new new JSONObject(map) cause StackOverflowError which may lead to dos

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-45693

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-12-13 15:15 修改: 2026-06-17 05:10

org.codehaus.jettison:jettison CVE-2022-45693 高危 1.1 1.5.2 jettison: If the value in map is the map's self, the new new JSONObject(map) cause StackOverflowError which may lead to dos

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-45693

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-12-13 15:15 修改: 2026-06-17 05:10

org.codehaus.jettison:jettison CVE-2022-45693 高危 1.1 1.5.2 jettison: If the value in map is the map's self, the new new JSONObject(map) cause StackOverflowError which may lead to dos

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-45693

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-12-13 15:15 修改: 2026-06-17 05:10

org.codehaus.jettison:jettison CVE-2022-45693 高危 1.1 1.5.2 jettison: If the value in map is the map's self, the new new JSONObject(map) cause StackOverflowError which may lead to dos

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-45693

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-13 15:15 修改: 2026-06-17 05:10

org.codehaus.jettison:jettison CVE-2022-45693 高危 1.1 1.5.2 jettison: If the value in map is the map's self, the new new JSONObject(map) cause StackOverflowError which may lead to dos

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-45693

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-13 15:15 修改: 2026-06-17 05:10

org.codehaus.jettison:jettison CVE-2022-45693 高危 1.1 1.5.2 jettison: If the value in map is the map's self, the new new JSONObject(map) cause StackOverflowError which may lead to dos

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-45693

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-13 15:15 修改: 2026-06-17 05:10

org.codehaus.jettison:jettison CVE-2022-45693 高危 1.1 1.5.2 jettison: If the value in map is the map's self, the new new JSONObject(map) cause StackOverflowError which may lead to dos

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-45693

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-13 15:15 修改: 2026-06-17 05:10

org.codehaus.jettison:jettison CVE-2022-45693 高危 1.1 1.5.2 jettison: If the value in map is the map's self, the new new JSONObject(map) cause StackOverflowError which may lead to dos

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-45693

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2022-12-13 15:15 修改: 2026-06-17 05:10

org.codehaus.jettison:jettison CVE-2023-1436 高危 1.1 1.5.4 jettison: Uncontrolled Recursion in JSONArray

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-1436

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-03-22 06:15 修改: 2026-06-17 05:27

org.codehaus.jettison:jettison CVE-2023-1436 高危 1.1 1.5.4 jettison: Uncontrolled Recursion in JSONArray

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-1436

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-03-22 06:15 修改: 2026-06-17 05:27

org.codehaus.jettison:jettison CVE-2023-1436 高危 1.1 1.5.4 jettison: Uncontrolled Recursion in JSONArray

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-1436

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-03-22 06:15 修改: 2026-06-17 05:27

org.codehaus.jettison:jettison CVE-2023-1436 高危 1.1 1.5.4 jettison: Uncontrolled Recursion in JSONArray

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-1436

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-03-22 06:15 修改: 2026-06-17 05:27

org.codehaus.jettison:jettison CVE-2023-1436 高危 1.1 1.5.4 jettison: Uncontrolled Recursion in JSONArray

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-1436

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-03-22 06:15 修改: 2026-06-17 05:27

org.codehaus.jettison:jettison CVE-2023-1436 高危 1.1 1.5.4 jettison: Uncontrolled Recursion in JSONArray

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-1436

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-03-22 06:15 修改: 2026-06-17 05:27

org.codehaus.jettison:jettison CVE-2023-1436 高危 1.1 1.5.4 jettison: Uncontrolled Recursion in JSONArray

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-1436

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-03-22 06:15 修改: 2026-06-17 05:27

org.codehaus.jettison:jettison CVE-2023-1436 高危 1.1 1.5.4 jettison: Uncontrolled Recursion in JSONArray

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-1436

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-03-22 06:15 修改: 2026-06-17 05:27

org.codehaus.jettison:jettison CVE-2023-1436 高危 1.1 1.5.4 jettison: Uncontrolled Recursion in JSONArray

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-1436

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-03-22 06:15 修改: 2026-06-17 05:27

org.codehaus.jettison:jettison CVE-2023-1436 高危 1.1 1.5.4 jettison: Uncontrolled Recursion in JSONArray

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-1436

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-03-22 06:15 修改: 2026-06-17 05:27

org.codehaus.jettison:jettison CVE-2023-1436 高危 1.1 1.5.4 jettison: Uncontrolled Recursion in JSONArray

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-1436

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-03-22 06:15 修改: 2026-06-17 05:27

org.codehaus.jettison:jettison CVE-2023-1436 高危 1.1 1.5.4 jettison: Uncontrolled Recursion in JSONArray

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-1436

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2023-03-22 06:15 修改: 2026-06-17 05:27

com.fasterxml.jackson.core:jackson-databind CVE-2020-36183 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36183

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

org.codehaus.plexus:plexus-utils CVE-2022-4244 高危 3.0.15 3.0.24 codehaus-plexus: Directory Traversal

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-4244

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-09-25 20:15 修改: 2026-06-17 05:20

org.codehaus.plexus:plexus-utils CVE-2025-67030 高危 3.0.15 4.0.3, 3.6.1 org.codehaus.plexus:plexus-utils: Plexus-utils: Directory Traversal in extractFile method

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-67030

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2026-03-25 18:16 修改: 2026-06-17 09:57

org.eclipse.jetty:jetty-http CVE-2026-2332 高危 9.4.20.v20190813 12.1.7, 12.0.33 org.eclipse.jetty/jetty-http: HTTP request smuggling via chunked extension quoted-string parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-2332

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-04-14 12:16 修改: 2026-06-17 10:30

org.eclipse.jetty:jetty-http CVE-2026-2332 高危 9.4.20.v20190813 12.1.7, 12.0.33 org.eclipse.jetty/jetty-http: HTTP request smuggling via chunked extension quoted-string parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-2332

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-04-14 12:16 修改: 2026-06-17 10:30

org.eclipse.jetty:jetty-http CVE-2026-2332 高危 9.4.20.v20190813 12.1.7, 12.0.33 org.eclipse.jetty/jetty-http: HTTP request smuggling via chunked extension quoted-string parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-2332

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-04-14 12:16 修改: 2026-06-17 10:30

org.eclipse.jetty:jetty-http CVE-2026-2332 高危 9.4.20.v20190813 12.1.7, 12.0.33 org.eclipse.jetty/jetty-http: HTTP request smuggling via chunked extension quoted-string parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-2332

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-04-14 12:16 修改: 2026-06-17 10:30

com.fasterxml.jackson.core:jackson-databind CVE-2020-36183 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36183

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36183 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36183

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36183 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36183

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36183 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36183

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

org.eclipse.jetty:jetty-server CVE-2015-2080 高危 7.6.0.v20120127 9.2.9.v20150224 jetty: remote unauthenticated credential exposure

漏洞详情: https://avd.aquasec.com/nvd/cve-2015-2080

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2016-10-07 14:59 修改: 2026-05-06 22:30

org.eclipse.jetty:jetty-server CVE-2015-2080 高危 7.6.0.v20120127 9.2.9.v20150224 jetty: remote unauthenticated credential exposure

漏洞详情: https://avd.aquasec.com/nvd/cve-2015-2080

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2016-10-07 14:59 修改: 2026-05-06 22:30

org.eclipse.jetty:jetty-server CVE-2017-7656 高危 7.6.0.v20120127 9.3.24.v20180605, 9.4.11.v20180605 jetty: HTTP request smuggling using the range header

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7656

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-06-26 15:29 修改: 2026-06-17 01:24

org.eclipse.jetty:jetty-server CVE-2017-7656 高危 7.6.0.v20120127 9.3.24.v20180605, 9.4.11.v20180605 jetty: HTTP request smuggling using the range header

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7656

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-06-26 15:29 修改: 2026-06-17 01:24

org.eclipse.jetty:jetty-server CVE-2017-9735 高危 7.6.0.v20120127 9.4.6.v20170531, 9.3.20.v20170531, 9.2.22.v20170606 jetty: Timing channel attack in util/security/Password.java

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-9735

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2017-06-16 21:29 修改: 2026-06-17 01:28

org.eclipse.jetty:jetty-server CVE-2017-9735 高危 7.6.0.v20120127 9.4.6.v20170531, 9.3.20.v20170531, 9.2.22.v20170606 jetty: Timing channel attack in util/security/Password.java

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-9735

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2017-06-16 21:29 修改: 2026-06-17 01:28

org.eclipse.jetty:jetty-server CVE-2021-28165 高危 7.6.0.v20120127 9.4.39, 10.0.2, 11.0.2 jetty: Resource exhaustion when receiving an invalid large TLS frame

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-28165

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-04-01 15:15 修改: 2026-06-17 03:45

org.eclipse.jetty:jetty-server CVE-2021-28165 高危 7.6.0.v20120127 9.4.39, 10.0.2, 11.0.2 jetty: Resource exhaustion when receiving an invalid large TLS frame

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-28165

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-04-01 15:15 修改: 2026-06-17 03:45

com.fasterxml.jackson.core:jackson-databind CVE-2020-36183 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36183

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36183 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36183

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

org.eclipse.jetty:jetty-server CVE-2017-7656 高危 9.2.16.v20160414 9.3.24.v20180605, 9.4.11.v20180605 jetty: HTTP request smuggling using the range header

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7656

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-06-26 15:29 修改: 2026-06-17 01:24

org.eclipse.jetty:jetty-server CVE-2017-9735 高危 9.2.16.v20160414 9.4.6.v20170531, 9.3.20.v20170531, 9.2.22.v20170606 jetty: Timing channel attack in util/security/Password.java

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-9735

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2017-06-16 21:29 修改: 2026-06-17 01:28

org.eclipse.jetty:jetty-server CVE-2021-28165 高危 9.2.16.v20160414 9.4.39, 10.0.2, 11.0.2 jetty: Resource exhaustion when receiving an invalid large TLS frame

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-28165

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-04-01 15:15 修改: 2026-06-17 03:45

com.fasterxml.jackson.core:jackson-databind CVE-2020-36183 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36183

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36183 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36183

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

org.eclipse.jetty:jetty-server CVE-2015-2080 高危 9.2.5.v20141112 9.2.9.v20150224 jetty: remote unauthenticated credential exposure

漏洞详情: https://avd.aquasec.com/nvd/cve-2015-2080

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2016-10-07 14:59 修改: 2026-05-06 22:30

org.eclipse.jetty:jetty-server CVE-2017-7656 高危 9.2.5.v20141112 9.3.24.v20180605, 9.4.11.v20180605 jetty: HTTP request smuggling using the range header

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7656

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-06-26 15:29 修改: 2026-06-17 01:24

org.eclipse.jetty:jetty-server CVE-2017-9735 高危 9.2.5.v20141112 9.4.6.v20170531, 9.3.20.v20170531, 9.2.22.v20170606 jetty: Timing channel attack in util/security/Password.java

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-9735

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2017-06-16 21:29 修改: 2026-06-17 01:28

org.eclipse.jetty:jetty-server CVE-2021-28165 高危 9.2.5.v20141112 9.4.39, 10.0.2, 11.0.2 jetty: Resource exhaustion when receiving an invalid large TLS frame

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-28165

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-04-01 15:15 修改: 2026-06-17 03:45

com.fasterxml.jackson.core:jackson-databind CVE-2020-36183 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36183

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36183 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36183

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36183 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36183

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36183 高危 2.4.0 2.9.10.8, 2.6.7.5 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache.xalan.lib.sql.JNDIConnectionPool

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36183

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2021-01-07 00:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36184 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36184

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36184 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36184

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36184 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36184

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36184 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36184

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

org.eclipse.jetty:jetty-server CVE-2017-7656 高危 9.3.20.v20170531 9.3.24.v20180605, 9.4.11.v20180605 jetty: HTTP request smuggling using the range header

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7656

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-06-26 15:29 修改: 2026-06-17 01:24

org.eclipse.jetty:jetty-server CVE-2017-7656 高危 9.3.20.v20170531 9.3.24.v20180605, 9.4.11.v20180605 jetty: HTTP request smuggling using the range header

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7656

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-06-26 15:29 修改: 2026-06-17 01:24

org.eclipse.jetty:jetty-server CVE-2017-7656 高危 9.3.20.v20170531 9.3.24.v20180605, 9.4.11.v20180605 jetty: HTTP request smuggling using the range header

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7656

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-06-26 15:29 修改: 2026-06-17 01:24

org.eclipse.jetty:jetty-server CVE-2017-7656 高危 9.3.20.v20170531 9.3.24.v20180605, 9.4.11.v20180605 jetty: HTTP request smuggling using the range header

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7656

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-06-26 15:29 修改: 2026-06-17 01:24

org.eclipse.jetty:jetty-server CVE-2018-12545 高危 9.3.20.v20170531 9.4.12.v20180830, 9.3.25.v20180904 jetty: large settings frames causing denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12545

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-03-27 20:29 修改: 2026-06-17 01:37

org.eclipse.jetty:jetty-server CVE-2018-12545 高危 9.3.20.v20170531 9.4.12.v20180830, 9.3.25.v20180904 jetty: large settings frames causing denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12545

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-03-27 20:29 修改: 2026-06-17 01:37

org.eclipse.jetty:jetty-server CVE-2018-12545 高危 9.3.20.v20170531 9.4.12.v20180830, 9.3.25.v20180904 jetty: large settings frames causing denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12545

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-03-27 20:29 修改: 2026-06-17 01:37

org.eclipse.jetty:jetty-server CVE-2018-12545 高危 9.3.20.v20170531 9.4.12.v20180830, 9.3.25.v20180904 jetty: large settings frames causing denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12545

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-03-27 20:29 修改: 2026-06-17 01:37

org.eclipse.jetty:jetty-server CVE-2021-28165 高危 9.3.20.v20170531 9.4.39, 10.0.2, 11.0.2 jetty: Resource exhaustion when receiving an invalid large TLS frame

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-28165

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-04-01 15:15 修改: 2026-06-17 03:45

org.eclipse.jetty:jetty-server CVE-2021-28165 高危 9.3.20.v20170531 9.4.39, 10.0.2, 11.0.2 jetty: Resource exhaustion when receiving an invalid large TLS frame

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-28165

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-04-01 15:15 修改: 2026-06-17 03:45

org.eclipse.jetty:jetty-server CVE-2021-28165 高危 9.3.20.v20170531 9.4.39, 10.0.2, 11.0.2 jetty: Resource exhaustion when receiving an invalid large TLS frame

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-28165

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-04-01 15:15 修改: 2026-06-17 03:45

org.eclipse.jetty:jetty-server CVE-2021-28165 高危 9.3.20.v20170531 9.4.39, 10.0.2, 11.0.2 jetty: Resource exhaustion when receiving an invalid large TLS frame

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-28165

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-04-01 15:15 修改: 2026-06-17 03:45

org.eclipse.jetty:jetty-server CVE-2021-28165 高危 9.4.20.v20190813 9.4.39, 10.0.2, 11.0.2 jetty: Resource exhaustion when receiving an invalid large TLS frame

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-28165

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-04-01 15:15 修改: 2026-06-17 03:45

org.eclipse.jetty:jetty-server CVE-2021-28165 高危 9.4.20.v20190813 9.4.39, 10.0.2, 11.0.2 jetty: Resource exhaustion when receiving an invalid large TLS frame

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-28165

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-04-01 15:15 修改: 2026-06-17 03:45

org.eclipse.jetty:jetty-server CVE-2021-28165 高危 9.4.20.v20190813 9.4.39, 10.0.2, 11.0.2 jetty: Resource exhaustion when receiving an invalid large TLS frame

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-28165

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-04-01 15:15 修改: 2026-06-17 03:45

org.eclipse.jetty:jetty-server CVE-2021-28165 高危 9.4.20.v20190813 9.4.39, 10.0.2, 11.0.2 jetty: Resource exhaustion when receiving an invalid large TLS frame

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-28165

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-04-01 15:15 修改: 2026-06-17 03:45

org.eclipse.jetty:jetty-server CVE-2024-13009 高危 9.4.20.v20190813 9.4.57.v20241219 jetty-server: Jetty: Gzip Request Body Buffer Corruption

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-13009

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-05-08 18:15 修改: 2026-06-17 07:00

org.eclipse.jetty:jetty-server CVE-2024-13009 高危 9.4.20.v20190813 9.4.57.v20241219 jetty-server: Jetty: Gzip Request Body Buffer Corruption

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-13009

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-05-08 18:15 修改: 2026-06-17 07:00

org.eclipse.jetty:jetty-server CVE-2024-13009 高危 9.4.20.v20190813 9.4.57.v20241219 jetty-server: Jetty: Gzip Request Body Buffer Corruption

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-13009

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-05-08 18:15 修改: 2026-06-17 07:00

org.eclipse.jetty:jetty-server CVE-2024-13009 高危 9.4.20.v20190813 9.4.57.v20241219 jetty-server: Jetty: Gzip Request Body Buffer Corruption

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-13009

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-05-08 18:15 修改: 2026-06-17 07:00

org.eclipse.jetty:jetty-webapp CVE-2020-27216 高危 7.6.0.v20120127 9.4.33.v20201020, 10.0.0.beta3, 11.0.0.beta3 jetty: local temporary directory hijacking vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-27216

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-10-23 13:15 修改: 2026-06-17 03:08

org.eclipse.jetty:jetty-webapp CVE-2020-27216 高危 7.6.0.v20120127 9.4.33.v20201020, 10.0.0.beta3, 11.0.0.beta3 jetty: local temporary directory hijacking vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-27216

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-10-23 13:15 修改: 2026-06-17 03:08

org.eclipse.jetty:jetty-webapp CVE-2020-27216 高危 9.3.20.v20170531 9.4.33.v20201020, 10.0.0.beta3, 11.0.0.beta3 jetty: local temporary directory hijacking vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-27216

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-10-23 13:15 修改: 2026-06-17 03:08

org.eclipse.jetty:jetty-webapp CVE-2020-27216 高危 9.3.20.v20170531 9.4.33.v20201020, 10.0.0.beta3, 11.0.0.beta3 jetty: local temporary directory hijacking vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-27216

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-10-23 13:15 修改: 2026-06-17 03:08

org.eclipse.jetty:jetty-webapp CVE-2020-27216 高危 9.3.20.v20170531 9.4.33.v20201020, 10.0.0.beta3, 11.0.0.beta3 jetty: local temporary directory hijacking vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-27216

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-10-23 13:15 修改: 2026-06-17 03:08

org.eclipse.jetty:jetty-webapp CVE-2020-27216 高危 9.4.20.v20190813 9.4.33.v20201020, 10.0.0.beta3, 11.0.0.beta3 jetty: local temporary directory hijacking vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-27216

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-10-23 13:15 修改: 2026-06-17 03:08

org.eclipse.jetty:jetty-webapp CVE-2020-27216 高危 9.4.20.v20190813 9.4.33.v20201020, 10.0.0.beta3, 11.0.0.beta3 jetty: local temporary directory hijacking vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-27216

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-10-23 13:15 修改: 2026-06-17 03:08

org.eclipse.jetty:jetty-webapp CVE-2020-27216 高危 9.4.20.v20190813 9.4.33.v20201020, 10.0.0.beta3, 11.0.0.beta3 jetty: local temporary directory hijacking vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-27216

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-10-23 13:15 修改: 2026-06-17 03:08

org.eclipse.jetty:jetty-webapp CVE-2020-27216 高危 9.4.20.v20190813 9.4.33.v20201020, 10.0.0.beta3, 11.0.0.beta3 jetty: local temporary directory hijacking vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-27216

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-10-23 13:15 修改: 2026-06-17 03:08

org.elasticsearch:elasticsearch CVE-2023-31418 高危 7.10.2 7.17.13, 8.9.0 elasticsearch: uncontrolled resource consumption

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-31418

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2023-10-26 18:15 修改: 2026-06-17 05:56

org.elasticsearch:elasticsearch CVE-2023-31418 高危 7.10.2 7.17.13, 8.9.0 elasticsearch: uncontrolled resource consumption

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-31418

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2023-10-26 18:15 修改: 2026-06-17 05:56

com.fasterxml.jackson.core:jackson-databind CVE-2020-36184 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36184

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36184 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36184

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

org.jdom:jdom CVE-2021-33813 高危 1.1 jdom: XXE allows attackers to cause a DoS via a crafted HTTP request

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-33813

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-06-16 12:15 修改: 2026-06-17 03:55

org.jline:jline-remote-telnet GHSA-2r2c-cx56-8933 高危 3.9.0 4.2.1 JLine3 Telnet server: Unauthenticated Remote DoS via Unbounded Telnet NAWS Terminal Geometry

漏洞详情: https://github.com/advisories/GHSA-2r2c-cx56-8933

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-06-18 13:07 修改: 2026-06-18 13:07

org.jline:jline-remote-telnet GHSA-2r2c-cx56-8933 高危 3.9.0 4.2.1 JLine3 Telnet server: Unauthenticated Remote DoS via Unbounded Telnet NAWS Terminal Geometry

漏洞详情: https://github.com/advisories/GHSA-2r2c-cx56-8933

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-06-18 13:07 修改: 2026-06-18 13:07

org.jline:jline-remote-telnet GHSA-2r2c-cx56-8933 高危 3.9.0 4.2.1 JLine3 Telnet server: Unauthenticated Remote DoS via Unbounded Telnet NAWS Terminal Geometry

漏洞详情: https://github.com/advisories/GHSA-2r2c-cx56-8933

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-06-18 13:07 修改: 2026-06-18 13:07

org.jline:jline-remote-telnet GHSA-47qp-hqvx-6r3f 高危 3.9.0 4.2.1 JLine3 Telnet server: Unauthenticated Remote Memory Exhaustion via Unbounded Telnet NEW-ENVIRON Variables

漏洞详情: https://github.com/advisories/GHSA-47qp-hqvx-6r3f

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-06-18 13:07 修改: 2026-06-18 13:07

org.jline:jline-remote-telnet GHSA-47qp-hqvx-6r3f 高危 3.9.0 4.2.1 JLine3 Telnet server: Unauthenticated Remote Memory Exhaustion via Unbounded Telnet NEW-ENVIRON Variables

漏洞详情: https://github.com/advisories/GHSA-47qp-hqvx-6r3f

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-06-18 13:07 修改: 2026-06-18 13:07

org.jline:jline-remote-telnet GHSA-47qp-hqvx-6r3f 高危 3.9.0 4.2.1 JLine3 Telnet server: Unauthenticated Remote Memory Exhaustion via Unbounded Telnet NEW-ENVIRON Variables

漏洞详情: https://github.com/advisories/GHSA-47qp-hqvx-6r3f

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-06-18 13:07 修改: 2026-06-18 13:07

org.lz4:lz4-java CVE-2025-12183 高危 1.4.0 1.8.1 lz4-java: lz4-java: Out-of-bounds memory operations lead to denial of service and information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-12183

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-11-28 16:15 修改: 2026-06-17 08:31

org.lz4:lz4-java CVE-2025-66566 高危 1.4.0 lz4-java: lz4-java: Information Disclosure via Insufficient Output Buffer Clearing

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-66566

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-12-05 18:15 修改: 2026-06-17 09:57

org.lz4:lz4-java CVE-2025-12183 高危 1.6.0 1.8.1 lz4-java: lz4-java: Out-of-bounds memory operations lead to denial of service and information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-12183

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-11-28 16:15 修改: 2026-06-17 08:31

org.lz4:lz4-java CVE-2025-66566 高危 1.6.0 lz4-java: lz4-java: Information Disclosure via Insufficient Output Buffer Clearing

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-66566

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-12-05 18:15 修改: 2026-06-17 09:57

com.fasterxml.jackson.core:jackson-databind CVE-2020-36184 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36184

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

com.fasterxml.jackson.core:jackson-databind CVE-2020-36184 高危 2.4.0 2.9.10.8 jackson-databind: mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.datasources.PerUserPoolDataSource

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-36184

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-01-06 23:15 修改: 2026-06-17 03:14

org.postgresql:postgresql CVE-2022-21724 高危 9.4.1208.jre7 42.2.25, 42.3.2 jdbc-postgresql: Unchecked Class Instantiation when providing Plugin Classes

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-21724

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-02-02 12:15 修改: 2026-06-17 04:26

org.postgresql:postgresql CVE-2022-21724 高危 9.4.1208.jre7 42.2.25, 42.3.2 jdbc-postgresql: Unchecked Class Instantiation when providing Plugin Classes

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-21724

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-02-02 12:15 修改: 2026-06-17 04:26

org.postgresql:postgresql CVE-2022-31197 高危 9.4.1208.jre7 42.2.26, 42.4.1, 42.3.7 postgresql: SQL Injection in ResultSet.refreshRow() with malicious column names

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-31197

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-08-03 19:15 修改: 2026-06-17 04:45

org.postgresql:postgresql CVE-2022-31197 高危 9.4.1208.jre7 42.2.26, 42.4.1, 42.3.7 postgresql: SQL Injection in ResultSet.refreshRow() with malicious column names

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-31197

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-08-03 19:15 修改: 2026-06-17 04:45

org.scala-lang:scala-compiler CVE-2017-15288 高危 2.11.0 2.10.7, 2.11.12, 2.12.4 scala: Privilege escalation in Scala compilation daemon

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-15288

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2017-11-15 16:29 修改: 2026-06-17 01:07

org.scala-lang:scala-compiler CVE-2017-15288 高危 2.11.0 2.10.7, 2.11.12, 2.12.4 scala: Privilege escalation in Scala compilation daemon

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-15288

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2017-11-15 16:29 修改: 2026-06-17 01:07

org.xerial.snappy:snappy-java CVE-2023-34455 高危 1.0.4.1 1.1.10.1 snappy-java: Unchecked chunk length leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34455

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-06-15 18:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-34455 高危 1.0.4.1 1.1.10.1 snappy-java: Unchecked chunk length leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34455

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-06-15 18:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-34455 高危 1.0.4.1 1.1.10.1 snappy-java: Unchecked chunk length leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34455

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-06-15 18:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-34455 高危 1.0.4.1 1.1.10.1 snappy-java: Unchecked chunk length leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34455

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-06-15 18:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-34455 高危 1.0.4.1 1.1.10.1 snappy-java: Unchecked chunk length leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34455

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-06-15 18:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-43642 高危 1.0.4.1 1.1.10.4 snappy-java: Missing upper bound check on chunk length in snappy-java can lead to Denial of Service (DoS) impact

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-43642

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-09-25 20:15 修改: 2026-06-17 06:26

org.xerial.snappy:snappy-java CVE-2023-43642 高危 1.0.4.1 1.1.10.4 snappy-java: Missing upper bound check on chunk length in snappy-java can lead to Denial of Service (DoS) impact

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-43642

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-09-25 20:15 修改: 2026-06-17 06:26

org.xerial.snappy:snappy-java CVE-2023-43642 高危 1.0.4.1 1.1.10.4 snappy-java: Missing upper bound check on chunk length in snappy-java can lead to Denial of Service (DoS) impact

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-43642

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-09-25 20:15 修改: 2026-06-17 06:26

org.xerial.snappy:snappy-java CVE-2023-43642 高危 1.0.4.1 1.1.10.4 snappy-java: Missing upper bound check on chunk length in snappy-java can lead to Denial of Service (DoS) impact

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-43642

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-09-25 20:15 修改: 2026-06-17 06:26

org.xerial.snappy:snappy-java CVE-2023-43642 高危 1.0.4.1 1.1.10.4 snappy-java: Missing upper bound check on chunk length in snappy-java can lead to Denial of Service (DoS) impact

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-43642

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-09-25 20:15 修改: 2026-06-17 06:26

org.xerial.snappy:snappy-java CVE-2023-34455 高危 1.0.5 1.1.10.1 snappy-java: Unchecked chunk length leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34455

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-06-15 18:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-34455 高危 1.0.5 1.1.10.1 snappy-java: Unchecked chunk length leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34455

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-06-15 18:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-34455 高危 1.0.5 1.1.10.1 snappy-java: Unchecked chunk length leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34455

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-06-15 18:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-34455 高危 1.0.5 1.1.10.1 snappy-java: Unchecked chunk length leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34455

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-06-15 18:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-43642 高危 1.0.5 1.1.10.4 snappy-java: Missing upper bound check on chunk length in snappy-java can lead to Denial of Service (DoS) impact

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-43642

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-09-25 20:15 修改: 2026-06-17 06:26

org.xerial.snappy:snappy-java CVE-2023-43642 高危 1.0.5 1.1.10.4 snappy-java: Missing upper bound check on chunk length in snappy-java can lead to Denial of Service (DoS) impact

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-43642

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-09-25 20:15 修改: 2026-06-17 06:26

org.xerial.snappy:snappy-java CVE-2023-43642 高危 1.0.5 1.1.10.4 snappy-java: Missing upper bound check on chunk length in snappy-java can lead to Denial of Service (DoS) impact

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-43642

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-09-25 20:15 修改: 2026-06-17 06:26

org.xerial.snappy:snappy-java CVE-2023-43642 高危 1.0.5 1.1.10.4 snappy-java: Missing upper bound check on chunk length in snappy-java can lead to Denial of Service (DoS) impact

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-43642

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-09-25 20:15 修改: 2026-06-17 06:26

org.xerial.snappy:snappy-java CVE-2023-34455 高危 1.1.1.3 1.1.10.1 snappy-java: Unchecked chunk length leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34455

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-06-15 18:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-43642 高危 1.1.1.3 1.1.10.4 snappy-java: Missing upper bound check on chunk length in snappy-java can lead to Denial of Service (DoS) impact

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-43642

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-09-25 20:15 修改: 2026-06-17 06:26

org.xerial.snappy:snappy-java CVE-2023-34455 高危 1.1.4 1.1.10.1 snappy-java: Unchecked chunk length leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34455

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-06-15 18:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-43642 高危 1.1.4 1.1.10.4 snappy-java: Missing upper bound check on chunk length in snappy-java can lead to Denial of Service (DoS) impact

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-43642

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-09-25 20:15 修改: 2026-06-17 06:26

org.yaml:snakeyaml CVE-2017-18640 高危 1.16 1.26 snakeyaml: Billion laughs attack via alias feature

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-18640

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-12-12 03:15 修改: 2026-06-17 01:13

org.yaml:snakeyaml CVE-2017-18640 高危 1.16 1.26 snakeyaml: Billion laughs attack via alias feature

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-18640

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-12-12 03:15 修改: 2026-06-17 01:13

org.yaml:snakeyaml CVE-2022-1471 高危 1.16 2.0 SnakeYaml: Constructor Deserialization Remote Code Execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1471

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-01 11:15 修改: 2026-06-17 04:22

org.yaml:snakeyaml CVE-2022-1471 高危 1.16 2.0 SnakeYaml: Constructor Deserialization Remote Code Execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-1471

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-01 11:15 修改: 2026-06-17 04:22

org.yaml:snakeyaml CVE-2022-25857 高危 1.16 1.31 snakeyaml: Denial of Service due to missing nested depth limitation for collections

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25857

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-08-30 05:15 修改: 2026-06-17 04:34

org.yaml:snakeyaml CVE-2022-25857 高危 1.16 1.31 snakeyaml: Denial of Service due to missing nested depth limitation for collections

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-25857

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-08-30 05:15 修改: 2026-06-17 04:34

software.amazon.ion:ion-java CVE-2024-21634 高危 1.0.2 1.10.5 ion-java: ion-java: Ion Java StackOverflow vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-21634

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-01-03 23:15 修改: 2026-06-17 07:09

xerces:xercesImpl CVE-2012-0881 高危 2.9.1 2.12.0 xml: xerces-j2 hash table collisions CPU usage DoS (oCERT-2011-003)

漏洞详情: https://avd.aquasec.com/nvd/cve-2012-0881

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2017-10-30 16:29 修改: 2025-04-20 01:37

xerces:xercesImpl CVE-2012-0881 高危 2.9.1 2.12.0 xml: xerces-j2 hash table collisions CPU usage DoS (oCERT-2011-003)

漏洞详情: https://avd.aquasec.com/nvd/cve-2012-0881

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-10-30 16:29 修改: 2025-04-20 01:37

xerces:xercesImpl CVE-2012-0881 高危 2.9.1 2.12.0 xml: xerces-j2 hash table collisions CPU usage DoS (oCERT-2011-003)

漏洞详情: https://avd.aquasec.com/nvd/cve-2012-0881

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-10-30 16:29 修改: 2025-04-20 01:37

xerces:xercesImpl CVE-2013-4002 高危 2.9.1 2.12.0 OpenJDK: XML parsing Denial of Service (JAXP, 8017298)

漏洞详情: https://avd.aquasec.com/nvd/cve-2013-4002

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2013-07-23 11:03 修改: 2026-04-29 01:13

xerces:xercesImpl CVE-2013-4002 高危 2.9.1 2.12.0 OpenJDK: XML parsing Denial of Service (JAXP, 8017298)

漏洞详情: https://avd.aquasec.com/nvd/cve-2013-4002

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2013-07-23 11:03 修改: 2026-04-29 01:13

xerces:xercesImpl CVE-2013-4002 高危 2.9.1 2.12.0 OpenJDK: XML parsing Denial of Service (JAXP, 8017298)

漏洞详情: https://avd.aquasec.com/nvd/cve-2013-4002

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2013-07-23 11:03 修改: 2026-04-29 01:13

org.apache.calcite:calcite-druid CVE-2020-13955 中危 1.16.0 1.26.0 Missing Authentication for Critical Function in Apache Calcite

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13955

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-10-09 13:15 修改: 2026-06-17 02:53

commons-lang:commons-lang CVE-2025-48924 中危 2.6 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

commons-lang:commons-lang CVE-2025-48924 中危 2.6 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

commons-net:commons-net CVE-2021-37533 中危 3.1 3.9.0 apache-commons-net: FTP client trusts the host from PASV response by default

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37533

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-12-03 15:15 修改: 2026-06-17 04:00

commons-net:commons-net CVE-2021-37533 中危 3.1 3.9.0 apache-commons-net: FTP client trusts the host from PASV response by default

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37533

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-12-03 15:15 修改: 2026-06-17 04:00

commons-net:commons-net CVE-2021-37533 中危 3.1 3.9.0 apache-commons-net: FTP client trusts the host from PASV response by default

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37533

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-12-03 15:15 修改: 2026-06-17 04:00

commons-net:commons-net CVE-2021-37533 中危 3.1 3.9.0 apache-commons-net: FTP client trusts the host from PASV response by default

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37533

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-12-03 15:15 修改: 2026-06-17 04:00

commons-net:commons-net CVE-2021-37533 中危 3.6 3.9.0 apache-commons-net: FTP client trusts the host from PASV response by default

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37533

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-03 15:15 修改: 2026-06-17 04:00

commons-net:commons-net CVE-2021-37533 中危 3.6 3.9.0 apache-commons-net: FTP client trusts the host from PASV response by default

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37533

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-03 15:15 修改: 2026-06-17 04:00

commons-net:commons-net CVE-2021-37533 中危 3.6 3.9.0 apache-commons-net: FTP client trusts the host from PASV response by default

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37533

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-03 15:15 修改: 2026-06-17 04:00

commons-net:commons-net CVE-2021-37533 中危 3.6 3.9.0 apache-commons-net: FTP client trusts the host from PASV response by default

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-37533

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-12-03 15:15 修改: 2026-06-17 04:00

com.google.guava:guava CVE-2018-10237 中危 11.0.2 24.1.1-android guava: Unbounded memory allocation in AtomicDoubleArray and CompoundOrdering classes allow remote attackers to cause a denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-10237

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-04-26 21:29 修改: 2026-06-17 01:33

com.google.guava:guava CVE-2018-10237 中危 11.0.2 24.1.1-android guava: Unbounded memory allocation in AtomicDoubleArray and CompoundOrdering classes allow remote attackers to cause a denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-10237

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-04-26 21:29 修改: 2026-06-17 01:33

com.google.guava:guava CVE-2018-10237 中危 11.0.2 24.1.1-android guava: Unbounded memory allocation in AtomicDoubleArray and CompoundOrdering classes allow remote attackers to cause a denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-10237

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-04-26 21:29 修改: 2026-06-17 01:33

com.google.guava:guava CVE-2018-10237 中危 11.0.2 24.1.1-android guava: Unbounded memory allocation in AtomicDoubleArray and CompoundOrdering classes allow remote attackers to cause a denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-10237

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-04-26 21:29 修改: 2026-06-17 01:33

com.google.guava:guava CVE-2018-10237 中危 11.0.2 24.1.1-android guava: Unbounded memory allocation in AtomicDoubleArray and CompoundOrdering classes allow remote attackers to cause a denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-10237

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-04-26 21:29 修改: 2026-06-17 01:33

com.google.guava:guava CVE-2018-10237 中危 11.0.2 24.1.1-android guava: Unbounded memory allocation in AtomicDoubleArray and CompoundOrdering classes allow remote attackers to cause a denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-10237

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-04-26 21:29 修改: 2026-06-17 01:33

com.google.guava:guava CVE-2018-10237 中危 11.0.2 24.1.1-android guava: Unbounded memory allocation in AtomicDoubleArray and CompoundOrdering classes allow remote attackers to cause a denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-10237

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2018-04-26 21:29 修改: 2026-06-17 01:33

com.google.guava:guava CVE-2023-2976 中危 11.0.2 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

com.google.guava:guava CVE-2023-2976 中危 11.0.2 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

com.google.guava:guava CVE-2023-2976 中危 11.0.2 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

com.google.guava:guava CVE-2023-2976 中危 11.0.2 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

com.google.guava:guava CVE-2023-2976 中危 11.0.2 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

com.google.guava:guava CVE-2023-2976 中危 11.0.2 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

com.google.guava:guava CVE-2023-2976 中危 11.0.2 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

org.apache.commons:commons-compress CVE-2024-25710 中危 1.19 1.26.0 commons-compress: Denial of service caused by an infinite loop for a corrupted DUMP file

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-25710

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-02-19 09:15 修改: 2026-06-17 07:16

org.apache.commons:commons-compress CVE-2024-25710 中危 1.19 1.26.0 commons-compress: Denial of service caused by an infinite loop for a corrupted DUMP file

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-25710

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-02-19 09:15 修改: 2026-06-17 07:16

org.apache.commons:commons-compress CVE-2024-25710 中危 1.19 1.26.0 commons-compress: Denial of service caused by an infinite loop for a corrupted DUMP file

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-25710

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-02-19 09:15 修改: 2026-06-17 07:16

org.apache.commons:commons-compress CVE-2024-25710 中危 1.19 1.26.0 commons-compress: Denial of service caused by an infinite loop for a corrupted DUMP file

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-25710

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-02-19 09:15 修改: 2026-06-17 07:16

org.apache.commons:commons-compress CVE-2024-25710 中危 1.19 1.26.0 commons-compress: Denial of service caused by an infinite loop for a corrupted DUMP file

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-25710

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-02-19 09:15 修改: 2026-06-17 07:16

org.apache.commons:commons-compress CVE-2024-25710 中危 1.19 1.26.0 commons-compress: Denial of service caused by an infinite loop for a corrupted DUMP file

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-25710

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-02-19 09:15 修改: 2026-06-17 07:16

com.google.guava:guava CVE-2023-2976 中危 11.0.2 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

com.google.guava:guava CVE-2023-2976 中危 11.0.2 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

io.netty:netty CVE-2019-20445 中危 3.10.4.Final 4.0.0 netty: HttpObjectDecoder.java allows Content-Length header to accompanied by second Content-Length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20445

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty CVE-2021-21290 中危 3.10.4.Final 4.0.0 netty: Information disclosure via the local system temporary directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21290

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-02-08 20:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21295 中危 3.10.4.Final 4.0.0 netty: possible request smuggling in HTTP/2 due missing validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21295

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-03-09 19:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21409 中危 3.10.4.Final 4.0.0 netty: Request smuggling via content-length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21409

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-03-30 15:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-43797 中危 3.10.4.Final 4.0.0 netty: control chars in header names may lead to HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-43797

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-12-09 19:15 修改: 2026-06-17 04:11

com.google.guava:guava CVE-2023-2976 中危 11.0.2 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

com.google.guava:guava CVE-2018-10237 中危 14.0.1 24.1.1-android guava: Unbounded memory allocation in AtomicDoubleArray and CompoundOrdering classes allow remote attackers to cause a denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-10237

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-04-26 21:29 修改: 2026-06-17 01:33

com.google.guava:guava CVE-2018-10237 中危 14.0.1 24.1.1-android guava: Unbounded memory allocation in AtomicDoubleArray and CompoundOrdering classes allow remote attackers to cause a denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-10237

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-04-26 21:29 修改: 2026-06-17 01:33

io.netty:netty CVE-2019-20445 中危 3.10.5.Final 4.0.0 netty: HttpObjectDecoder.java allows Content-Length header to accompanied by second Content-Length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20445

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty CVE-2021-21290 中危 3.10.5.Final 4.0.0 netty: Information disclosure via the local system temporary directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21290

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-02-08 20:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21295 中危 3.10.5.Final 4.0.0 netty: possible request smuggling in HTTP/2 due missing validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21295

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-03-09 19:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21409 中危 3.10.5.Final 4.0.0 netty: Request smuggling via content-length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21409

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-03-30 15:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-43797 中危 3.10.5.Final 4.0.0 netty: control chars in header names may lead to HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-43797

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-12-09 19:15 修改: 2026-06-17 04:11

com.google.guava:guava CVE-2018-10237 中危 14.0.1 24.1.1-android guava: Unbounded memory allocation in AtomicDoubleArray and CompoundOrdering classes allow remote attackers to cause a denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-10237

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-04-26 21:29 修改: 2026-06-17 01:33

com.google.guava:guava CVE-2018-10237 中危 14.0.1 24.1.1-android guava: Unbounded memory allocation in AtomicDoubleArray and CompoundOrdering classes allow remote attackers to cause a denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-10237

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-04-26 21:29 修改: 2026-06-17 01:33

com.google.guava:guava CVE-2023-2976 中危 14.0.1 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

com.google.guava:guava CVE-2023-2976 中危 14.0.1 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

com.google.guava:guava CVE-2023-2976 中危 14.0.1 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

com.google.guava:guava CVE-2023-2976 中危 14.0.1 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

com.google.guava:guava CVE-2018-10237 中危 16.0.1 24.1.1-android guava: Unbounded memory allocation in AtomicDoubleArray and CompoundOrdering classes allow remote attackers to cause a denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-10237

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-04-26 21:29 修改: 2026-06-17 01:33

com.google.guava:guava CVE-2018-10237 中危 16.0.1 24.1.1-android guava: Unbounded memory allocation in AtomicDoubleArray and CompoundOrdering classes allow remote attackers to cause a denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-10237

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-04-26 21:29 修改: 2026-06-17 01:33

com.google.guava:guava CVE-2023-2976 中危 16.0.1 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

org.apache.commons:commons-compress CVE-2024-25710 中危 1.4.1 1.26.0 commons-compress: Denial of service caused by an infinite loop for a corrupted DUMP file

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-25710

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-02-19 09:15 修改: 2026-06-17 07:16

org.apache.commons:commons-compress CVE-2024-25710 中危 1.4.1 1.26.0 commons-compress: Denial of service caused by an infinite loop for a corrupted DUMP file

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-25710

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-02-19 09:15 修改: 2026-06-17 07:16

org.apache.commons:commons-compress CVE-2024-25710 中危 1.4.1 1.26.0 commons-compress: Denial of service caused by an infinite loop for a corrupted DUMP file

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-25710

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-02-19 09:15 修改: 2026-06-17 07:16

org.apache.commons:commons-compress CVE-2024-25710 中危 1.4.1 1.26.0 commons-compress: Denial of service caused by an infinite loop for a corrupted DUMP file

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-25710

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-02-19 09:15 修改: 2026-06-17 07:16

org.apache.commons:commons-compress CVE-2024-25710 中危 1.4.1 1.26.0 commons-compress: Denial of service caused by an infinite loop for a corrupted DUMP file

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-25710

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-02-19 09:15 修改: 2026-06-17 07:16

org.apache.commons:commons-compress CVE-2024-25710 中危 1.4.1 1.26.0 commons-compress: Denial of service caused by an infinite loop for a corrupted DUMP file

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-25710

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-02-19 09:15 修改: 2026-06-17 07:16

com.google.guava:guava CVE-2023-2976 中危 16.0.1 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

com.google.guava:guava CVE-2018-10237 中危 18.0 24.1.1-android guava: Unbounded memory allocation in AtomicDoubleArray and CompoundOrdering classes allow remote attackers to cause a denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-10237

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2018-04-26 21:29 修改: 2026-06-17 01:33

com.google.guava:guava CVE-2023-2976 中危 18.0 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

com.google.guava:guava CVE-2018-10237 中危 19.0 24.1.1-android guava: Unbounded memory allocation in AtomicDoubleArray and CompoundOrdering classes allow remote attackers to cause a denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-10237

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-04-26 21:29 修改: 2026-06-17 01:33

com.google.guava:guava CVE-2018-10237 中危 19.0 24.1.1-android guava: Unbounded memory allocation in AtomicDoubleArray and CompoundOrdering classes allow remote attackers to cause a denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-10237

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-04-26 21:29 修改: 2026-06-17 01:33

com.google.guava:guava CVE-2023-2976 中危 19.0 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

io.netty:netty CVE-2019-20445 中危 3.10.6.Final 4.0.0 netty: HttpObjectDecoder.java allows Content-Length header to accompanied by second Content-Length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20445

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty CVE-2019-20445 中危 3.10.6.Final 4.0.0 netty: HttpObjectDecoder.java allows Content-Length header to accompanied by second Content-Length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20445

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

org.apache.commons:commons-compress CVE-2018-11771 中危 1.8.1 1.18 apache-commons-compress: ZipArchiveInputStream.read() fails to identify correct EOF allowing for DoS via crafted zip

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11771

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2018-08-16 15:29 修改: 2026-06-17 01:36

org.apache.commons:commons-compress CVE-2018-11771 中危 1.8.1 1.18 apache-commons-compress: ZipArchiveInputStream.read() fails to identify correct EOF allowing for DoS via crafted zip

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11771

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2018-08-16 15:29 修改: 2026-06-17 01:36

org.apache.commons:commons-compress CVE-2024-25710 中危 1.8.1 1.26.0 commons-compress: Denial of service caused by an infinite loop for a corrupted DUMP file

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-25710

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2024-02-19 09:15 修改: 2026-06-17 07:16

org.apache.commons:commons-compress CVE-2024-25710 中危 1.8.1 1.26.0 commons-compress: Denial of service caused by an infinite loop for a corrupted DUMP file

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-25710

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2024-02-19 09:15 修改: 2026-06-17 07:16

io.netty:netty CVE-2019-20445 中危 3.10.6.Final 4.0.0 netty: HttpObjectDecoder.java allows Content-Length header to accompanied by second Content-Length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20445

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty CVE-2019-20445 中危 3.10.6.Final 4.0.0 netty: HttpObjectDecoder.java allows Content-Length header to accompanied by second Content-Length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20445

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty CVE-2019-20445 中危 3.10.6.Final 4.0.0 netty: HttpObjectDecoder.java allows Content-Length header to accompanied by second Content-Length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20445

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty CVE-2021-21290 中危 3.10.6.Final 4.0.0 netty: Information disclosure via the local system temporary directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21290

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-02-08 20:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21290 中危 3.10.6.Final 4.0.0 netty: Information disclosure via the local system temporary directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21290

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-02-08 20:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21290 中危 3.10.6.Final 4.0.0 netty: Information disclosure via the local system temporary directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21290

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-02-08 20:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21290 中危 3.10.6.Final 4.0.0 netty: Information disclosure via the local system temporary directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21290

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2021-02-08 20:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21290 中危 3.10.6.Final 4.0.0 netty: Information disclosure via the local system temporary directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21290

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2021-02-08 20:15 修改: 2026-06-17 03:35

org.apache.commons:commons-compress CVE-2018-11771 中危 1.9 1.18 apache-commons-compress: ZipArchiveInputStream.read() fails to identify correct EOF allowing for DoS via crafted zip

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11771

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-08-16 15:29 修改: 2026-06-17 01:36

org.apache.commons:commons-compress CVE-2018-11771 中危 1.9 1.18 apache-commons-compress: ZipArchiveInputStream.read() fails to identify correct EOF allowing for DoS via crafted zip

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11771

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-08-16 15:29 修改: 2026-06-17 01:36

org.apache.commons:commons-compress CVE-2024-25710 中危 1.9 1.26.0 commons-compress: Denial of service caused by an infinite loop for a corrupted DUMP file

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-25710

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2024-02-19 09:15 修改: 2026-06-17 07:16

org.apache.commons:commons-compress CVE-2024-25710 中危 1.9 1.26.0 commons-compress: Denial of service caused by an infinite loop for a corrupted DUMP file

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-25710

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2024-02-19 09:15 修改: 2026-06-17 07:16

org.apache.commons:commons-configuration2 CVE-2024-29131 中危 2.1.1 2.10.1 commons-configuration: StackOverflowError adding property in AbstractListDelimiterHandler.flattenIterator()

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-29131

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-03-21 09:15 修改: 2026-06-17 07:22

org.apache.commons:commons-configuration2 CVE-2024-29131 中危 2.1.1 2.10.1 commons-configuration: StackOverflowError adding property in AbstractListDelimiterHandler.flattenIterator()

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-29131

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-03-21 09:15 修改: 2026-06-17 07:22

org.apache.commons:commons-configuration2 CVE-2024-29131 中危 2.1.1 2.10.1 commons-configuration: StackOverflowError adding property in AbstractListDelimiterHandler.flattenIterator()

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-29131

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-03-21 09:15 修改: 2026-06-17 07:22

org.apache.commons:commons-configuration2 CVE-2024-29131 中危 2.1.1 2.10.1 commons-configuration: StackOverflowError adding property in AbstractListDelimiterHandler.flattenIterator()

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-29131

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-03-21 09:15 修改: 2026-06-17 07:22

org.apache.commons:commons-configuration2 CVE-2024-29131 中危 2.1.1 2.10.1 commons-configuration: StackOverflowError adding property in AbstractListDelimiterHandler.flattenIterator()

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-29131

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-03-21 09:15 修改: 2026-06-17 07:22

org.apache.commons:commons-configuration2 CVE-2024-29133 中危 2.1.1 2.10.1 commons-configuration: StackOverflowError calling ListDelimiterHandler.flatten(Object, int) with a cyclical object tree

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-29133

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-03-21 09:15 修改: 2026-06-17 07:22

org.apache.commons:commons-configuration2 CVE-2024-29133 中危 2.1.1 2.10.1 commons-configuration: StackOverflowError calling ListDelimiterHandler.flatten(Object, int) with a cyclical object tree

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-29133

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-03-21 09:15 修改: 2026-06-17 07:22

org.apache.commons:commons-configuration2 CVE-2024-29133 中危 2.1.1 2.10.1 commons-configuration: StackOverflowError calling ListDelimiterHandler.flatten(Object, int) with a cyclical object tree

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-29133

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-03-21 09:15 修改: 2026-06-17 07:22

org.apache.commons:commons-configuration2 CVE-2024-29133 中危 2.1.1 2.10.1 commons-configuration: StackOverflowError calling ListDelimiterHandler.flatten(Object, int) with a cyclical object tree

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-29133

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-03-21 09:15 修改: 2026-06-17 07:22

org.apache.commons:commons-configuration2 CVE-2024-29133 中危 2.1.1 2.10.1 commons-configuration: StackOverflowError calling ListDelimiterHandler.flatten(Object, int) with a cyclical object tree

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-29133

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-03-21 09:15 修改: 2026-06-17 07:22

org.apache.commons:commons-configuration2 CVE-2024-29131 中危 2.8.0 2.10.1 commons-configuration: StackOverflowError adding property in AbstractListDelimiterHandler.flattenIterator()

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-29131

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2024-03-21 09:15 修改: 2026-06-17 07:22

org.apache.commons:commons-configuration2 CVE-2024-29131 中危 2.8.0 2.10.1 commons-configuration: StackOverflowError adding property in AbstractListDelimiterHandler.flattenIterator()

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-29131

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2024-03-21 09:15 修改: 2026-06-17 07:22

org.apache.commons:commons-configuration2 CVE-2024-29133 中危 2.8.0 2.10.1 commons-configuration: StackOverflowError calling ListDelimiterHandler.flatten(Object, int) with a cyclical object tree

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-29133

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2024-03-21 09:15 修改: 2026-06-17 07:22

org.apache.commons:commons-configuration2 CVE-2024-29133 中危 2.8.0 2.10.1 commons-configuration: StackOverflowError calling ListDelimiterHandler.flatten(Object, int) with a cyclical object tree

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-29133

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2024-03-21 09:15 修改: 2026-06-17 07:22

org.apache.commons:commons-configuration2 CVE-2026-45205 中危 2.8.0 2.15.0 Uncontrolled Recursion vulnerability in Apache Commons. When processi ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-45205

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2026-05-14 12:16 修改: 2026-06-17 10:51

org.apache.commons:commons-configuration2 CVE-2026-45205 中危 2.8.0 2.15.0 Uncontrolled Recursion vulnerability in Apache Commons. When processi ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-45205

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2026-05-14 12:16 修改: 2026-06-17 10:51

org.apache.commons:commons-lang3 CVE-2025-48924 中危 3.1 3.18.0 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

org.apache.commons:commons-lang3 CVE-2025-48924 中危 3.1 3.18.0 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

org.apache.commons:commons-lang3 CVE-2025-48924 中危 3.1 3.18.0 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

org.apache.commons:commons-lang3 CVE-2025-48924 中危 3.1 3.18.0 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

org.apache.commons:commons-lang3 CVE-2025-48924 中危 3.3.2 3.18.0 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

org.apache.commons:commons-lang3 CVE-2025-48924 中危 3.3.2 3.18.0 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

org.apache.commons:commons-lang3 CVE-2025-48924 中危 3.3.2 3.18.0 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

org.apache.commons:commons-lang3 CVE-2025-48924 中危 3.7 3.18.0 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

org.apache.commons:commons-lang3 CVE-2025-48924 中危 3.7 3.18.0 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

org.apache.commons:commons-lang3 CVE-2025-48924 中危 3.7 3.18.0 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

org.apache.commons:commons-lang3 CVE-2025-48924 中危 3.7 3.18.0 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

org.apache.commons:commons-lang3 CVE-2025-48924 中危 3.9 3.18.0 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

org.apache.commons:commons-lang3 CVE-2025-48924 中危 3.9 3.18.0 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

org.apache.commons:commons-lang3 CVE-2025-48924 中危 3.9 3.18.0 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

org.apache.commons:commons-lang3 CVE-2025-48924 中危 3.9 3.18.0 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

io.netty:netty CVE-2021-21295 中危 3.10.6.Final 4.0.0 netty: possible request smuggling in HTTP/2 due missing validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21295

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-03-09 19:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21295 中危 3.10.6.Final 4.0.0 netty: possible request smuggling in HTTP/2 due missing validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21295

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-03-09 19:15 修改: 2026-06-17 03:35

org.apache.commons:commons-vfs2 CVE-2025-30474 中危 2.1 2.10.0 Exposure of Sensitive Information to an Unauthorized Actor vulnerabili ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-30474

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-03-23 15:15 修改: 2026-06-17 09:08

org.apache.commons:commons-vfs2 CVE-2025-30474 中危 2.1 2.10.0 Exposure of Sensitive Information to an Unauthorized Actor vulnerabili ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-30474

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-03-23 15:15 修改: 2026-06-17 09:08

io.netty:netty CVE-2021-21295 中危 3.10.6.Final 4.0.0 netty: possible request smuggling in HTTP/2 due missing validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21295

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-03-09 19:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21295 中危 3.10.6.Final 4.0.0 netty: possible request smuggling in HTTP/2 due missing validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21295

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2021-03-09 19:15 修改: 2026-06-17 03:35

org.apache.derby:derby CVE-2018-1313 中危 10.10.2.0 10.14.2.0 derby: Externally-controlled input vulnerability allows remote attacker to boot a database under attacker's control

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-1313

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-05-07 13:29 修改: 2026-06-17 01:50

io.netty:netty CVE-2021-21295 中危 3.10.6.Final 4.0.0 netty: possible request smuggling in HTTP/2 due missing validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21295

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2021-03-09 19:15 修改: 2026-06-17 03:35

org.apache.derby:derby CVE-2018-1313 中危 10.14.1.0 10.14.2.0 derby: Externally-controlled input vulnerability allows remote attacker to boot a database under attacker's control

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-1313

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-05-07 13:29 修改: 2026-06-17 01:50

io.netty:netty CVE-2021-21409 中危 3.10.6.Final 4.0.0 netty: Request smuggling via content-length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21409

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-03-30 15:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21409 中危 3.10.6.Final 4.0.0 netty: Request smuggling via content-length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21409

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-03-30 15:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21409 中危 3.10.6.Final 4.0.0 netty: Request smuggling via content-length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21409

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-03-30 15:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21409 中危 3.10.6.Final 4.0.0 netty: Request smuggling via content-length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21409

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2021-03-30 15:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21409 中危 3.10.6.Final 4.0.0 netty: Request smuggling via content-length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21409

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2021-03-30 15:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-43797 中危 3.10.6.Final 4.0.0 netty: control chars in header names may lead to HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-43797

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-12-09 19:15 修改: 2026-06-17 04:11

io.netty:netty CVE-2021-43797 中危 3.10.6.Final 4.0.0 netty: control chars in header names may lead to HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-43797

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-12-09 19:15 修改: 2026-06-17 04:11

io.netty:netty CVE-2021-43797 中危 3.10.6.Final 4.0.0 netty: control chars in header names may lead to HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-43797

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-12-09 19:15 修改: 2026-06-17 04:11

io.netty:netty CVE-2021-43797 中危 3.10.6.Final 4.0.0 netty: control chars in header names may lead to HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-43797

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2021-12-09 19:15 修改: 2026-06-17 04:11

io.netty:netty CVE-2021-43797 中危 3.10.6.Final 4.0.0 netty: control chars in header names may lead to HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-43797

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2021-12-09 19:15 修改: 2026-06-17 04:11

com.google.guava:guava CVE-2023-2976 中危 19.0 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

com.google.guava:guava CVE-2018-10237 中危 20.0 24.1.1-android guava: Unbounded memory allocation in AtomicDoubleArray and CompoundOrdering classes allow remote attackers to cause a denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-10237

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2018-04-26 21:29 修改: 2026-06-17 01:33

com.google.guava:guava CVE-2023-2976 中危 20.0 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

com.google.guava:guava CVE-2018-10237 中危 22.0 24.1.1-android guava: Unbounded memory allocation in AtomicDoubleArray and CompoundOrdering classes allow remote attackers to cause a denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-10237

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-04-26 21:29 修改: 2026-06-17 01:33

com.google.guava:guava CVE-2023-2976 中危 22.0 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

com.google.guava:guava CVE-2023-2976 中危 27.0-jre 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

com.google.guava:guava CVE-2023-2976 中危 27.0-jre 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

com.google.guava:guava CVE-2023-2976 中危 27.0-jre 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

com.google.guava:guava CVE-2023-2976 中危 27.0-jre 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

com.google.guava:guava CVE-2023-2976 中危 27.0-jre 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

com.google.guava:guava CVE-2023-2976 中危 27.0-jre 32.0.0-android guava: insecure temporary directory creation

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-2976

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2023-06-14 18:15 修改: 2026-06-17 05:53

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.6.3 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.6.3 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.6.3 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.6.3 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.2.3 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.10.3 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.10.3 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

com.fasterxml.jackson.core:jackson-databind CVE-2019-12384 中危 2.6.3 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: failure to block the logback-core class from polymorphic deserialization leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12384

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-06-24 16:15 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12384 中危 2.6.3 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: failure to block the logback-core class from polymorphic deserialization leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12384

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-06-24 16:15 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12814 中危 2.6.3 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server via crafted JSON message.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12814

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-06-19 14:15 修改: 2026-06-17 02:15

com.fasterxml.jackson.core:jackson-databind CVE-2019-12814 中危 2.6.3 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server via crafted JSON message.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12814

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-06-19 14:15 修改: 2026-06-17 02:15

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.6.5 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.6.5 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.6.5 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.6.5 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.6.5 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.6.5 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.10.3 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.6.7 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.6.7 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.10.3 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

io.netty:netty CVE-2014-0193 中危 3.6.2.Final 3.6.9.Final, 3.7.1.Final, 3.8.2.Final, 3.9.1.Final, 4.0.19.Final netty: DoS via memory exhaustion during data aggregation

漏洞详情: https://avd.aquasec.com/nvd/cve-2014-0193

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2014-05-06 14:55 修改: 2026-05-06 22:30

io.netty:netty CVE-2014-0193 中危 3.6.2.Final 3.6.9.Final, 3.7.1.Final, 3.8.2.Final, 3.9.1.Final, 4.0.19.Final netty: DoS via memory exhaustion during data aggregation

漏洞详情: https://avd.aquasec.com/nvd/cve-2014-0193

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2014-05-06 14:55 修改: 2026-05-06 22:30

io.netty:netty CVE-2014-0193 中危 3.6.2.Final 3.6.9.Final, 3.7.1.Final, 3.8.2.Final, 3.9.1.Final, 4.0.19.Final netty: DoS via memory exhaustion during data aggregation

漏洞详情: https://avd.aquasec.com/nvd/cve-2014-0193

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2014-05-06 14:55 修改: 2026-05-06 22:30

io.netty:netty CVE-2014-0193 中危 3.6.2.Final 3.6.9.Final, 3.7.1.Final, 3.8.2.Final, 3.9.1.Final, 4.0.19.Final netty: DoS via memory exhaustion during data aggregation

漏洞详情: https://avd.aquasec.com/nvd/cve-2014-0193

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2014-05-06 14:55 修改: 2026-05-06 22:30

io.netty:netty CVE-2014-0193 中危 3.6.2.Final 3.6.9.Final, 3.7.1.Final, 3.8.2.Final, 3.9.1.Final, 4.0.19.Final netty: DoS via memory exhaustion during data aggregation

漏洞详情: https://avd.aquasec.com/nvd/cve-2014-0193

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2014-05-06 14:55 修改: 2026-05-06 22:30

io.netty:netty CVE-2014-0193 中危 3.6.2.Final 3.6.9.Final, 3.7.1.Final, 3.8.2.Final, 3.9.1.Final, 4.0.19.Final netty: DoS via memory exhaustion during data aggregation

漏洞详情: https://avd.aquasec.com/nvd/cve-2014-0193

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2014-05-06 14:55 修改: 2026-05-06 22:30

io.netty:netty CVE-2014-0193 中危 3.6.2.Final 3.6.9.Final, 3.7.1.Final, 3.8.2.Final, 3.9.1.Final, 4.0.19.Final netty: DoS via memory exhaustion during data aggregation

漏洞详情: https://avd.aquasec.com/nvd/cve-2014-0193

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2014-05-06 14:55 修改: 2026-05-06 22:30

io.netty:netty CVE-2014-0193 中危 3.6.2.Final 3.6.9.Final, 3.7.1.Final, 3.8.2.Final, 3.9.1.Final, 4.0.19.Final netty: DoS via memory exhaustion during data aggregation

漏洞详情: https://avd.aquasec.com/nvd/cve-2014-0193

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2014-05-06 14:55 修改: 2026-05-06 22:30

io.netty:netty CVE-2019-20445 中危 3.6.2.Final 4.0.0 netty: HttpObjectDecoder.java allows Content-Length header to accompanied by second Content-Length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20445

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty CVE-2019-20445 中危 3.6.2.Final 4.0.0 netty: HttpObjectDecoder.java allows Content-Length header to accompanied by second Content-Length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20445

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty CVE-2019-20445 中危 3.6.2.Final 4.0.0 netty: HttpObjectDecoder.java allows Content-Length header to accompanied by second Content-Length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20445

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty CVE-2019-20445 中危 3.6.2.Final 4.0.0 netty: HttpObjectDecoder.java allows Content-Length header to accompanied by second Content-Length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20445

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

org.apache.hive:hive-exec CVE-2024-29869 中危 2.3.9 4.0.1 Apache Hive Incorrectly Assigns Permissions for a Critical Resource

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-29869

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-01-28 22:15 修改: 2026-06-17 07:23

org.apache.hive:hive-exec CVE-2024-29869 中危 3.1.3 4.0.1 Apache Hive Incorrectly Assigns Permissions for a Critical Resource

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-29869

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-01-28 22:15 修改: 2026-06-17 07:23

org.apache.hive:hive-llap-common CVE-2024-23953 中危 2.3.9 4.0.0 Apache Hive vulnerable to Observable Timing Discrepancy and Authentication Bypass by Spoofing

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23953

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-01-28 09:15 修改: 2026-06-17 07:13

org.apache.hive:hive-llap-common CVE-2024-23953 中危 2.3.9 4.0.0 Apache Hive vulnerable to Observable Timing Discrepancy and Authentication Bypass by Spoofing

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23953

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-01-28 09:15 修改: 2026-06-17 07:13

org.apache.hive:hive-llap-common CVE-2024-23953 中危 2.3.9 4.0.0 Apache Hive vulnerable to Observable Timing Discrepancy and Authentication Bypass by Spoofing

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23953

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-01-28 09:15 修改: 2026-06-17 07:13

org.apache.hive:hive-llap-common CVE-2024-23953 中危 2.3.9 4.0.0 Apache Hive vulnerable to Observable Timing Discrepancy and Authentication Bypass by Spoofing

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23953

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-01-28 09:15 修改: 2026-06-17 07:13

org.apache.hive:hive-llap-common CVE-2024-23953 中危 3.1.3 4.0.0 Apache Hive vulnerable to Observable Timing Discrepancy and Authentication Bypass by Spoofing

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23953

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-01-28 09:15 修改: 2026-06-17 07:13

org.apache.hive:hive-llap-common CVE-2024-23953 中危 3.1.3 4.0.0 Apache Hive vulnerable to Observable Timing Discrepancy and Authentication Bypass by Spoofing

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23953

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-01-28 09:15 修改: 2026-06-17 07:13

org.apache.hive:hive-llap-common CVE-2024-23953 中危 3.1.3 4.0.0 Apache Hive vulnerable to Observable Timing Discrepancy and Authentication Bypass by Spoofing

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23953

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-01-28 09:15 修改: 2026-06-17 07:13

org.apache.hive:hive-llap-common CVE-2024-23953 中危 3.1.3 4.0.0 Apache Hive vulnerable to Observable Timing Discrepancy and Authentication Bypass by Spoofing

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23953

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-01-28 09:15 修改: 2026-06-17 07:13

io.netty:netty CVE-2019-20445 中危 3.6.2.Final 4.0.0 netty: HttpObjectDecoder.java allows Content-Length header to accompanied by second Content-Length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20445

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty CVE-2019-20445 中危 3.6.2.Final 4.0.0 netty: HttpObjectDecoder.java allows Content-Length header to accompanied by second Content-Length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20445

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty CVE-2019-20445 中危 3.6.2.Final 4.0.0 netty: HttpObjectDecoder.java allows Content-Length header to accompanied by second Content-Length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20445

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty CVE-2019-20445 中危 3.6.2.Final 4.0.0 netty: HttpObjectDecoder.java allows Content-Length header to accompanied by second Content-Length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20445

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

org.apache.httpcomponents:httpclient CVE-2014-3577 中危 4.2.5 4.3.5 CXF: SSL hostname verification bypass, incomplete CVE-2012-6153 fix

漏洞详情: https://avd.aquasec.com/nvd/cve-2014-3577

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2014-08-21 14:55 修改: 2026-05-06 22:30

org.apache.httpcomponents:httpclient CVE-2014-3577 中危 4.2.5 4.3.5 CXF: SSL hostname verification bypass, incomplete CVE-2012-6153 fix

漏洞详情: https://avd.aquasec.com/nvd/cve-2014-3577

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2014-08-21 14:55 修改: 2026-05-06 22:30

org.apache.httpcomponents:httpclient CVE-2014-3577 中危 4.2.5 4.3.5 CXF: SSL hostname verification bypass, incomplete CVE-2012-6153 fix

漏洞详情: https://avd.aquasec.com/nvd/cve-2014-3577

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2014-08-21 14:55 修改: 2026-05-06 22:30

org.apache.httpcomponents:httpclient CVE-2014-3577 中危 4.2.5 4.3.5 CXF: SSL hostname verification bypass, incomplete CVE-2012-6153 fix

漏洞详情: https://avd.aquasec.com/nvd/cve-2014-3577

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2014-08-21 14:55 修改: 2026-05-06 22:30

org.apache.httpcomponents:httpclient CVE-2015-5262 中危 4.2.5 4.3.6 httpcomponents-core: missing HTTPS connection timeout

漏洞详情: https://avd.aquasec.com/nvd/cve-2015-5262

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2015-10-27 16:59 修改: 2026-05-06 22:30

org.apache.httpcomponents:httpclient CVE-2015-5262 中危 4.2.5 4.3.6 httpcomponents-core: missing HTTPS connection timeout

漏洞详情: https://avd.aquasec.com/nvd/cve-2015-5262

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2015-10-27 16:59 修改: 2026-05-06 22:30

org.apache.httpcomponents:httpclient CVE-2015-5262 中危 4.2.5 4.3.6 httpcomponents-core: missing HTTPS connection timeout

漏洞详情: https://avd.aquasec.com/nvd/cve-2015-5262

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2015-10-27 16:59 修改: 2026-05-06 22:30

org.apache.httpcomponents:httpclient CVE-2015-5262 中危 4.2.5 4.3.6 httpcomponents-core: missing HTTPS connection timeout

漏洞详情: https://avd.aquasec.com/nvd/cve-2015-5262

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2015-10-27 16:59 修改: 2026-05-06 22:30

org.apache.httpcomponents:httpclient CVE-2020-13956 中危 4.2.5 4.5.13, 5.0.3 apache-httpclient: incorrect handling of malformed authority component in request URIs

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13956

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-02 17:15 修改: 2026-06-17 02:53

org.apache.httpcomponents:httpclient CVE-2020-13956 中危 4.2.5 4.5.13, 5.0.3 apache-httpclient: incorrect handling of malformed authority component in request URIs

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13956

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-02 17:15 修改: 2026-06-17 02:53

org.apache.httpcomponents:httpclient CVE-2020-13956 中危 4.2.5 4.5.13, 5.0.3 apache-httpclient: incorrect handling of malformed authority component in request URIs

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13956

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-02 17:15 修改: 2026-06-17 02:53

org.apache.httpcomponents:httpclient CVE-2020-13956 中危 4.2.5 4.5.13, 5.0.3 apache-httpclient: incorrect handling of malformed authority component in request URIs

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13956

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-02 17:15 修改: 2026-06-17 02:53

org.apache.httpcomponents:httpclient CVE-2020-13956 中危 4.4 4.5.13, 5.0.3 apache-httpclient: incorrect handling of malformed authority component in request URIs

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13956

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-02 17:15 修改: 2026-06-17 02:53

org.apache.httpcomponents:httpclient CVE-2020-13956 中危 4.4 4.5.13, 5.0.3 apache-httpclient: incorrect handling of malformed authority component in request URIs

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13956

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-02 17:15 修改: 2026-06-17 02:53

org.apache.httpcomponents:httpclient CVE-2020-13956 中危 4.5.2 4.5.13, 5.0.3 apache-httpclient: incorrect handling of malformed authority component in request URIs

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13956

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-02 17:15 修改: 2026-06-17 02:53

org.apache.httpcomponents:httpclient CVE-2020-13956 中危 4.5.2 4.5.13, 5.0.3 apache-httpclient: incorrect handling of malformed authority component in request URIs

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13956

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-02 17:15 修改: 2026-06-17 02:53

org.apache.httpcomponents:httpclient CVE-2020-13956 中危 4.5.2 4.5.13, 5.0.3 apache-httpclient: incorrect handling of malformed authority component in request URIs

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13956

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-12-02 17:15 修改: 2026-06-17 02:53

org.apache.httpcomponents:httpclient CVE-2020-13956 中危 4.5.5 4.5.13, 5.0.3 apache-httpclient: incorrect handling of malformed authority component in request URIs

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13956

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-02 17:15 修改: 2026-06-17 02:53

org.apache.httpcomponents:httpclient CVE-2020-13956 中危 4.5.6 4.5.13, 5.0.3 apache-httpclient: incorrect handling of malformed authority component in request URIs

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13956

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-02 17:15 修改: 2026-06-17 02:53

org.apache.httpcomponents:httpclient CVE-2020-13956 中危 4.5.6 4.5.13, 5.0.3 apache-httpclient: incorrect handling of malformed authority component in request URIs

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13956

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-02 17:15 修改: 2026-06-17 02:53

org.apache.httpcomponents:httpclient CVE-2020-13956 中危 4.5.6 4.5.13, 5.0.3 apache-httpclient: incorrect handling of malformed authority component in request URIs

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13956

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-02 17:15 修改: 2026-06-17 02:53

org.apache.httpcomponents:httpclient CVE-2020-13956 中危 4.5.6 4.5.13, 5.0.3 apache-httpclient: incorrect handling of malformed authority component in request URIs

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13956

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-02 17:15 修改: 2026-06-17 02:53

org.apache.httpcomponents:httpclient CVE-2020-13956 中危 4.5.6 4.5.13, 5.0.3 apache-httpclient: incorrect handling of malformed authority component in request URIs

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13956

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2020-12-02 17:15 修改: 2026-06-17 02:53

org.apache.httpcomponents:httpclient CVE-2020-13956 中危 4.5.6 4.5.13, 5.0.3 apache-httpclient: incorrect handling of malformed authority component in request URIs

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13956

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2020-12-02 17:15 修改: 2026-06-17 02:53

io.netty:netty CVE-2021-21290 中危 3.6.2.Final 4.0.0 netty: Information disclosure via the local system temporary directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21290

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-02-08 20:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21290 中危 3.6.2.Final 4.0.0 netty: Information disclosure via the local system temporary directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21290

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-02-08 20:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21290 中危 3.6.2.Final 4.0.0 netty: Information disclosure via the local system temporary directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21290

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-02-08 20:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21290 中危 3.6.2.Final 4.0.0 netty: Information disclosure via the local system temporary directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21290

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-02-08 20:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21290 中危 3.6.2.Final 4.0.0 netty: Information disclosure via the local system temporary directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21290

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-02-08 20:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21290 中危 3.6.2.Final 4.0.0 netty: Information disclosure via the local system temporary directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21290

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-02-08 20:15 修改: 2026-06-17 03:35

org.apache.kafka:kafka-clients CVE-2021-38153 中危 2.4.0 2.6.3, 2.7.2, 2.8.1 Kafka: Timing Attack Vulnerability for Apache Kafka Connect and Clients

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-38153

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-09-22 09:15 修改: 2026-06-17 04:01

org.apache.kafka:kafka-clients CVE-2024-31141 中危 2.4.0 3.7.1 kafka-clients: privilege escalation to filesystem read-access via automatic ConfigProvider

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-31141

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-11-19 09:15 修改: 2026-06-17 07:27

org.apache.kafka:kafka-clients CVE-2026-33558 中危 2.4.0 3.9.2, 4.0.1 Apache Kafka exposes sensitive information in its DEBUG logs

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-33558

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-04-20 14:16 修改: 2026-06-17 10:37

org.apache.logging.log4j:log4j-1.2-api CVE-2026-34479 中危 2.17.1 2.25.4 org.apache.logging.log4j/log4j-1.2-api: Apache Log4j 1-to-Log4j 2 bridge: Log processing denial of service due to improper XML escaping

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-34479

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2026-04-10 16:16 修改: 2026-06-17 10:39

org.apache.logging.log4j:log4j-core CVE-2025-68161 中危 2.17.1 2.25.3 Apache Log4j: Apache Log4j Core: Information disclosure via missing TLS hostname verification

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-68161

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-12-18 21:15 修改: 2026-06-17 09:58

org.apache.logging.log4j:log4j-core CVE-2026-34477 中危 2.17.1 2.25.4 org.apache.logging.log4j/log4j-core: Apache Log4j Core: Man-in-the-middle attack due to incomplete hostname verification

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-34477

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2026-04-10 16:16 修改: 2026-06-17 10:39

org.apache.logging.log4j:log4j-core CVE-2026-34480 中危 2.17.1 2.25.4 org.apache.logging.log4j/log4j-core: Apache Log4j Core: Invalid XML output causes denial of service in logging

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-34480

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2026-04-10 16:16 修改: 2026-06-17 10:39

io.netty:netty CVE-2021-21290 中危 3.6.2.Final 4.0.0 netty: Information disclosure via the local system temporary directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21290

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-02-08 20:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21290 中危 3.6.2.Final 4.0.0 netty: Information disclosure via the local system temporary directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21290

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-02-08 20:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21295 中危 3.6.2.Final 4.0.0 netty: possible request smuggling in HTTP/2 due missing validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21295

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-03-09 19:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21295 中危 3.6.2.Final 4.0.0 netty: possible request smuggling in HTTP/2 due missing validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21295

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-03-09 19:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21295 中危 3.6.2.Final 4.0.0 netty: possible request smuggling in HTTP/2 due missing validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21295

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-03-09 19:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21295 中危 3.6.2.Final 4.0.0 netty: possible request smuggling in HTTP/2 due missing validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21295

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-03-09 19:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21295 中危 3.6.2.Final 4.0.0 netty: possible request smuggling in HTTP/2 due missing validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21295

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-03-09 19:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21295 中危 3.6.2.Final 4.0.0 netty: possible request smuggling in HTTP/2 due missing validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21295

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-03-09 19:15 修改: 2026-06-17 03:35

org.apache.logging.log4j:log4j-core CVE-2021-44832 中危 2.6.2 2.3.2, 2.12.4, 2.17.1 log4j-core: remote code execution via JDBC Appender

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-44832

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-12-28 20:15 修改: 2026-06-17 04:12

org.apache.logging.log4j:log4j-core CVE-2021-44832 中危 2.6.2 2.3.2, 2.12.4, 2.17.1 log4j-core: remote code execution via JDBC Appender

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-44832

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-12-28 20:15 修改: 2026-06-17 04:12

org.apache.logging.log4j:log4j-core CVE-2025-68161 中危 2.6.2 2.25.3 Apache Log4j: Apache Log4j Core: Information disclosure via missing TLS hostname verification

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-68161

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-12-18 21:15 修改: 2026-06-17 09:58

org.apache.logging.log4j:log4j-core CVE-2025-68161 中危 2.6.2 2.25.3 Apache Log4j: Apache Log4j Core: Information disclosure via missing TLS hostname verification

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-68161

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-12-18 21:15 修改: 2026-06-17 09:58

org.apache.logging.log4j:log4j-core CVE-2026-34480 中危 2.6.2 2.25.4 org.apache.logging.log4j/log4j-core: Apache Log4j Core: Invalid XML output causes denial of service in logging

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-34480

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2026-04-10 16:16 修改: 2026-06-17 10:39

org.apache.logging.log4j:log4j-core CVE-2026-34480 中危 2.6.2 2.25.4 org.apache.logging.log4j/log4j-core: Apache Log4j Core: Invalid XML output causes denial of service in logging

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-34480

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2026-04-10 16:16 修改: 2026-06-17 10:39

io.netty:netty CVE-2021-21295 中危 3.6.2.Final 4.0.0 netty: possible request smuggling in HTTP/2 due missing validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21295

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-03-09 19:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21295 中危 3.6.2.Final 4.0.0 netty: possible request smuggling in HTTP/2 due missing validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21295

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-03-09 19:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21409 中危 3.6.2.Final 4.0.0 netty: Request smuggling via content-length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21409

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-03-30 15:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21409 中危 3.6.2.Final 4.0.0 netty: Request smuggling via content-length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21409

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-03-30 15:15 修改: 2026-06-17 03:35

org.apache.mesos:mesos CVE-2018-8023 中危 0.21.1 1.4.2, 1.5.2, 1.6.1 mesos: Exposure of HMAC value via timing vulnerability in JWT validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-8023

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-09-21 13:29 修改: 2026-06-17 02:04

io.netty:netty CVE-2021-21409 中危 3.6.2.Final 4.0.0 netty: Request smuggling via content-length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21409

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-03-30 15:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21409 中危 3.6.2.Final 4.0.0 netty: Request smuggling via content-length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21409

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-03-30 15:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21409 中危 3.6.2.Final 4.0.0 netty: Request smuggling via content-length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21409

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-03-30 15:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21409 中危 3.6.2.Final 4.0.0 netty: Request smuggling via content-length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21409

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-03-30 15:15 修改: 2026-06-17 03:35

org.apache.mina:mina-core CVE-2021-41973 中危 2.0.7 2.1.5, 2.0.22 mina-core: infinite loop may lead to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-41973

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2021-11-01 09:15 修改: 2026-06-17 04:09

io.netty:netty CVE-2021-21409 中危 3.6.2.Final 4.0.0 netty: Request smuggling via content-length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21409

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-03-30 15:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-21409 中危 3.6.2.Final 4.0.0 netty: Request smuggling via content-length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21409

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-03-30 15:15 修改: 2026-06-17 03:35

io.netty:netty CVE-2021-43797 中危 3.6.2.Final 4.0.0 netty: control chars in header names may lead to HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-43797

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-12-09 19:15 修改: 2026-06-17 04:11

org.apache.solr:solr-solrj CVE-2023-50298 中危 7.7.0 9.4.1, 8.11.3 solr: possible exposure of ZooKeeper credentials via Streaming Expressions

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-50298

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-02-09 18:15 修改: 2026-06-17 06:39

org.apache.solr:solr-solrj CVE-2023-50298 中危 8.11.2 9.4.1, 8.11.3 solr: possible exposure of ZooKeeper credentials via Streaming Expressions

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-50298

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2024-02-09 18:15 修改: 2026-06-17 06:39

org.apache.solr:solr-solrj CVE-2023-50298 中危 8.11.2 9.4.1, 8.11.3 solr: possible exposure of ZooKeeper credentials via Streaming Expressions

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-50298

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2024-02-09 18:15 修改: 2026-06-17 06:39

io.netty:netty CVE-2021-43797 中危 3.6.2.Final 4.0.0 netty: control chars in header names may lead to HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-43797

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-12-09 19:15 修改: 2026-06-17 04:11

io.netty:netty CVE-2021-43797 中危 3.6.2.Final 4.0.0 netty: control chars in header names may lead to HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-43797

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-12-09 19:15 修改: 2026-06-17 04:11

io.netty:netty CVE-2021-43797 中危 3.6.2.Final 4.0.0 netty: control chars in header names may lead to HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-43797

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-12-09 19:15 修改: 2026-06-17 04:11

io.netty:netty CVE-2021-43797 中危 3.6.2.Final 4.0.0 netty: control chars in header names may lead to HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-43797

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-12-09 19:15 修改: 2026-06-17 04:11

io.netty:netty CVE-2021-43797 中危 3.6.2.Final 4.0.0 netty: control chars in header names may lead to HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-43797

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-12-09 19:15 修改: 2026-06-17 04:11

org.apache.spark:spark-core_2.11 CVE-2017-7678 中危 2.0.0 2.2.0 Moderate severity vulnerability that affects org.apache.spark:spark-core_2.10 and org.apache.spark:spark-core_2.11

漏洞详情: https://avd.aquasec.com/nvd/cve-2017-7678

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2017-07-12 13:29 修改: 2026-06-17 01:24

org.apache.spark:spark-core_2.11 CVE-2018-11770 中危 2.0.0 spark: Missing authentication allows users to run driver programs via the REST API

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11770

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-08-13 16:29 修改: 2026-06-17 01:36

org.apache.spark:spark-core_2.11 CVE-2018-1334 中危 2.0.0 2.1.3, 2.2.2, 2.3.1 Exposure of Sensitive Information to an Unauthorized Actor in Apache Spark

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-1334

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-07-12 13:29 修改: 2026-06-17 01:51

org.apache.spark:spark-core_2.11 CVE-2022-31777 中危 2.0.0 3.2.2 apache-spark: XSS vulnerability in log viewer UI Javascript

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-31777

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-11-01 16:15 修改: 2026-06-17 04:46

io.netty:netty CVE-2021-43797 中危 3.6.2.Final 4.0.0 netty: control chars in header names may lead to HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-43797

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-12-09 19:15 修改: 2026-06-17 04:11

io.netty:netty CVE-2021-43797 中危 3.6.2.Final 4.0.0 netty: control chars in header names may lead to HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-43797

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-12-09 19:15 修改: 2026-06-17 04:11

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.9.4 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

org.apache.spark:spark-core_2.11 CVE-2018-11770 中危 2.3.0 spark: Missing authentication allows users to run driver programs via the REST API

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11770

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-08-13 16:29 修改: 2026-06-17 01:36

org.apache.spark:spark-core_2.11 CVE-2018-1334 中危 2.3.0 2.1.3, 2.2.2, 2.3.1 Exposure of Sensitive Information to an Unauthorized Actor in Apache Spark

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-1334

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-07-12 13:29 修改: 2026-06-17 01:51

org.apache.spark:spark-core_2.11 CVE-2018-8024 中危 2.3.0 2.1.3, 2.2.2, 2.3.1 Exposure of Sensitive Information to an Unauthorized Actor in Apache Spark via crafted URL

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-8024

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-07-12 13:29 修改: 2026-06-17 02:04

org.apache.spark:spark-core_2.11 CVE-2022-31777 中危 2.3.0 3.2.2 apache-spark: XSS vulnerability in log viewer UI Javascript

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-31777

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-11-01 16:15 修改: 2026-06-17 04:46

com.fasterxml.jackson.core:jackson-databind CVE-2019-12384 中危 2.6.7.2 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: failure to block the logback-core class from polymorphic deserialization leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12384

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-06-24 16:15 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12814 中危 2.6.7.2 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server via crafted JSON message.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12814

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-06-19 14:15 修改: 2026-06-17 02:15

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.9.4 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.10.3 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.12.0 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.12.0 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.12.0 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

io.netty:netty-codec CVE-2025-58057 中危 4.0.52.Final 4.1.125.Final netty-codec: netty-codec-compression: Netty's BrotliDecoder is vulnerable to DoS via zip bomb style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-58057

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-09-04 10:42 修改: 2026-06-17 09:43

org.apache.thrift:libthrift CVE-2018-11798 中危 0.9.3 0.12.0 thrift: Improper Access Control grants access to files outside the webservers docroot path

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11798

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-01-07 17:29 修改: 2026-06-17 01:36

org.apache.thrift:libthrift CVE-2018-11798 中危 0.9.3 0.12.0 thrift: Improper Access Control grants access to files outside the webservers docroot path

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-11798

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-01-07 17:29 修改: 2026-06-17 01:36

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.12.0 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

com.google.protobuf:protobuf-java CVE-2022-3171 中危 2.5.0 3.21.7, 3.20.3, 3.19.6, 3.16.3 protobuf-java: timeout in parser leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3171

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-10-12 23:15 修改: 2026-06-17 04:58

com.google.protobuf:protobuf-java CVE-2022-3171 中危 2.5.0 3.21.7, 3.20.3, 3.19.6, 3.16.3 protobuf-java: timeout in parser leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3171

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-10-12 23:15 修改: 2026-06-17 04:58

io.netty:netty-codec CVE-2025-58057 中危 4.1.17.Final 4.1.125.Final netty-codec: netty-codec-compression: Netty's BrotliDecoder is vulnerable to DoS via zip bomb style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-58057

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-09-04 10:42 修改: 2026-06-17 09:43

com.google.protobuf:protobuf-java CVE-2022-3171 中危 2.5.0 3.21.7, 3.20.3, 3.19.6, 3.16.3 protobuf-java: timeout in parser leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3171

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-10-12 23:15 修改: 2026-06-17 04:58

org.apache.zookeeper:zookeeper CVE-2019-0201 中危 3.4.13 3.4.14, 3.5.5 zookeeper: Information disclosure in Apache ZooKeeper

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-0201

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2019-05-23 14:29 修改: 2026-06-17 02:07

org.apache.zookeeper:zookeeper CVE-2019-0201 中危 3.4.13 3.4.14, 3.5.5 zookeeper: Information disclosure in Apache ZooKeeper

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-0201

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2019-05-23 14:29 修改: 2026-06-17 02:07

com.google.protobuf:protobuf-java CVE-2022-3171 中危 2.5.0 3.21.7, 3.20.3, 3.19.6, 3.16.3 protobuf-java: timeout in parser leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3171

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-10-12 23:15 修改: 2026-06-17 04:58

com.google.protobuf:protobuf-java CVE-2022-3171 中危 2.5.0 3.21.7, 3.20.3, 3.19.6, 3.16.3 protobuf-java: timeout in parser leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3171

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-10-12 23:15 修改: 2026-06-17 04:58

io.netty:netty-codec CVE-2025-58057 中危 4.1.42.Final 4.1.125.Final netty-codec: netty-codec-compression: Netty's BrotliDecoder is vulnerable to DoS via zip bomb style attack

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-58057

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-09-04 10:42 修改: 2026-06-17 09:43

com.google.protobuf:protobuf-java CVE-2022-3171 中危 2.5.0 3.21.7, 3.20.3, 3.19.6, 3.16.3 protobuf-java: timeout in parser leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3171

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-10-12 23:15 修改: 2026-06-17 04:58

com.google.protobuf:protobuf-java CVE-2022-3171 中危 2.5.0 3.21.7, 3.20.3, 3.19.6, 3.16.3 protobuf-java: timeout in parser leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3171

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-10-12 23:15 修改: 2026-06-17 04:58

com.google.protobuf:protobuf-java CVE-2022-3171 中危 2.5.0 3.21.7, 3.20.3, 3.19.6, 3.16.3 protobuf-java: timeout in parser leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3171

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-10-12 23:15 修改: 2026-06-17 04:58

com.google.protobuf:protobuf-java CVE-2022-3171 中危 2.5.0 3.21.7, 3.20.3, 3.19.6, 3.16.3 protobuf-java: timeout in parser leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3171

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-10-12 23:15 修改: 2026-06-17 04:58

io.netty:netty-codec-http CVE-2021-21290 中危 4.0.52.Final 4.1.59.Final netty: Information disclosure via the local system temporary directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21290

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-02-08 20:15 修改: 2026-06-17 03:35

io.netty:netty-codec-http CVE-2021-43797 中危 4.0.52.Final 4.1.71.Final netty: control chars in header names may lead to HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-43797

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-12-09 19:15 修改: 2026-06-17 04:11

io.netty:netty-codec-http CVE-2022-24823 中危 4.0.52.Final 4.1.77.Final netty: world readable temporary file containing sensitive data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-24823

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-05-06 12:15 修改: 2026-06-17 04:32

io.netty:netty-codec-http CVE-2024-29025 中危 4.0.52.Final 4.1.108.Final netty-codec-http: Allocation of Resources Without Limits or Throttling

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-29025

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-03-25 20:15 修改: 2026-06-17 07:22

io.netty:netty-codec-http CVE-2025-67735 中危 4.0.52.Final 4.2.8.Final, 4.1.129.Final netty-codec-http: Netty (netty-codec-http): Request Smuggling via CRLF Injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-67735

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-12-16 01:15 修改: 2026-06-17 09:58

io.netty:netty-codec-http CVE-2026-41417 中危 4.0.52.Final 4.1.133.Final, 4.2.13.Final netty: Netty: HTTP request smuggling via URI manipulation and CRLF injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-41417

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2026-05-06 22:16 修改: 2026-06-17 10:46

io.netty:netty-codec-http CVE-2026-42580 中危 4.0.52.Final 4.2.13.Final, 4.1.133.Final netty: Netty: Request smuggling via chunk size parser integer overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42580

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2026-05-13 19:17 修改: 2026-06-17 10:48

io.netty:netty-codec-http CVE-2026-42581 中危 4.0.52.Final 4.2.13.Final, 4.1.133.Final netty: io.netty/netty-codec-http: Netty: HTTP Request Smuggling due to improper handling of conflicting HTTP/1.0 headers

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42581

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2026-05-13 19:17 修改: 2026-06-17 10:48

io.netty:netty-codec-http CVE-2026-42585 中危 4.0.52.Final 4.2.13.Final, 4.1.133.Final netty: io.netty/netty-codec-http: Netty: Request smuggling via malformed Transfer-Encoding parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42585

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2026-05-13 19:17 修改: 2026-06-17 10:48

io.netty:netty-codec-http CVE-2026-50020 中危 4.0.52.Final 4.2.15.Final, 4.1.135.Final netty-codec-http: Netty: Data manipulation via request-boundary confusion in HttpObjectDecoder

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-50020

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2026-06-12 16:16 修改: 2026-06-17 10:57

com.google.protobuf:protobuf-java CVE-2022-3171 中危 2.5.0 3.21.7, 3.20.3, 3.19.6, 3.16.3 protobuf-java: timeout in parser leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3171

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-10-12 23:15 修改: 2026-06-17 04:58

com.google.protobuf:protobuf-java CVE-2022-3171 中危 2.5.0 3.21.7, 3.20.3, 3.19.6, 3.16.3 protobuf-java: timeout in parser leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3171

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-10-12 23:15 修改: 2026-06-17 04:58

com.google.protobuf:protobuf-java CVE-2022-3171 中危 2.5.0 3.21.7, 3.20.3, 3.19.6, 3.16.3 protobuf-java: timeout in parser leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3171

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-10-12 23:15 修改: 2026-06-17 04:58

com.google.protobuf:protobuf-java CVE-2022-3171 中危 2.5.0 3.21.7, 3.20.3, 3.19.6, 3.16.3 protobuf-java: timeout in parser leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3171

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-12 23:15 修改: 2026-06-17 04:58

org.apache.zookeeper:zookeeper CVE-2019-0201 中危 3.4.6 3.4.14, 3.5.5 zookeeper: Information disclosure in Apache ZooKeeper

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-0201

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-05-23 14:29 修改: 2026-06-17 02:07

org.apache.zookeeper:zookeeper CVE-2019-0201 中危 3.4.6 3.4.14, 3.5.5 zookeeper: Information disclosure in Apache ZooKeeper

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-0201

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-05-23 14:29 修改: 2026-06-17 02:07

org.apache.zookeeper:zookeeper CVE-2019-0201 中危 3.4.6 3.4.14, 3.5.5 zookeeper: Information disclosure in Apache ZooKeeper

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-0201

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-05-23 14:29 修改: 2026-06-17 02:07

org.apache.zookeeper:zookeeper CVE-2019-0201 中危 3.4.6 3.4.14, 3.5.5 zookeeper: Information disclosure in Apache ZooKeeper

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-0201

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-05-23 14:29 修改: 2026-06-17 02:07

org.apache.zookeeper:zookeeper CVE-2019-0201 中危 3.4.6 3.4.14, 3.5.5 zookeeper: Information disclosure in Apache ZooKeeper

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-0201

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-05-23 14:29 修改: 2026-06-17 02:07

org.apache.zookeeper:zookeeper CVE-2019-0201 中危 3.4.6 3.4.14, 3.5.5 zookeeper: Information disclosure in Apache ZooKeeper

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-0201

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-05-23 14:29 修改: 2026-06-17 02:07

org.apache.zookeeper:zookeeper CVE-2019-0201 中危 3.4.6 3.4.14, 3.5.5 zookeeper: Information disclosure in Apache ZooKeeper

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-0201

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-05-23 14:29 修改: 2026-06-17 02:07

io.netty:netty-codec-http CVE-2021-21290 中危 4.1.17.Final 4.1.59.Final netty: Information disclosure via the local system temporary directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21290

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-02-08 20:15 修改: 2026-06-17 03:35

io.netty:netty-codec-http CVE-2021-43797 中危 4.1.17.Final 4.1.71.Final netty: control chars in header names may lead to HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-43797

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-12-09 19:15 修改: 2026-06-17 04:11

io.netty:netty-codec-http CVE-2022-24823 中危 4.1.17.Final 4.1.77.Final netty: world readable temporary file containing sensitive data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-24823

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-05-06 12:15 修改: 2026-06-17 04:32

io.netty:netty-codec-http CVE-2024-29025 中危 4.1.17.Final 4.1.108.Final netty-codec-http: Allocation of Resources Without Limits or Throttling

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-29025

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-03-25 20:15 修改: 2026-06-17 07:22

io.netty:netty-codec-http CVE-2025-67735 中危 4.1.17.Final 4.2.8.Final, 4.1.129.Final netty-codec-http: Netty (netty-codec-http): Request Smuggling via CRLF Injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-67735

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-12-16 01:15 修改: 2026-06-17 09:58

org.asynchttpclient:async-http-client CVE-2026-40490 中危 2.0.37 3.0.9, 2.14.5 async-http-client: AsyncHttpClient: Credential leakage via improper handling of authorization headers during redirects

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-40490

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2026-04-18 02:16 修改: 2026-06-17 10:45

org.bouncycastle:bcpkix-jdk15on CVE-2025-8916 中危 1.60 1.79 org.bouncycastle: BouncyCastle denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-8916

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-08-13 10:15 修改: 2026-06-17 10:07

org.bouncycastle:bcpkix-jdk15on CVE-2026-5588 中危 1.60 1.84 bouncycastle: BC-JAVA: PKIX draft CompositeVerifier accepts empty signature sequence as valid

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-5588

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-04-15 10:16 修改: 2026-06-17 10:59

org.bouncycastle:bcprov-jdk15on CVE-2020-15522 中危 1.60 1.66 bouncycastle: Timing issue within the EC math library

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-15522

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-05-20 12:15 修改: 2026-06-17 02:56

org.bouncycastle:bcprov-jdk15on CVE-2020-26939 中危 1.60 1.61 In Legion of the Bouncy Castle BC before 1.61 and BC-FJA before 1.0.1. ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-26939

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-11-02 22:15 修改: 2026-06-17 03:08

org.bouncycastle:bcprov-jdk15on CVE-2023-33201 中危 1.60 bouncycastle: potential blind LDAP injection attack using a self-signed certificate

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-33201

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-07-05 03:15 修改: 2026-06-17 06:01

org.bouncycastle:bcprov-jdk15on CVE-2023-33202 中危 1.60 1.70 bc-java: Out of memory while parsing ASN.1 crafted data in org.bouncycastle.openssl.PEMParser class

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-33202

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-11-23 16:15 修改: 2026-06-17 06:01

org.bouncycastle:bcprov-jdk15on CVE-2024-29857 中危 1.60 1.78 org.bouncycastle: Importing an EC certificate with crafted F2m parameters may lead to Denial of Service

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-29857

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-05-14 15:17 修改: 2026-06-17 07:23

org.bouncycastle:bcprov-jdk15on CVE-2024-30171 中危 1.60 1.78 bc-java: BouncyCastle vulnerable to a timing variant of Bleichenbacher (Marvin Attack)

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-30171

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-05-14 15:21 修改: 2026-06-17 07:26

io.netty:netty-codec-http CVE-2026-41417 中危 4.1.17.Final 4.1.133.Final, 4.2.13.Final netty: Netty: HTTP request smuggling via URI manipulation and CRLF injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-41417

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-05-06 22:16 修改: 2026-06-17 10:46

org.codehaus.groovy:groovy CVE-2020-17521 中危 2.4.4 2.4.21, 2.5.14, 3.0.7 groovy: OS temporary directory leads to information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-17521

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-07 20:15 修改: 2026-06-17 02:59

org.codehaus.groovy:groovy-all CVE-2020-17521 中危 2.4.11 2.4.21, 2.5.14, 3.0.7 groovy: OS temporary directory leads to information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-17521

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-12-07 20:15 修改: 2026-06-17 02:59

io.netty:netty-codec-http CVE-2026-42580 中危 4.1.17.Final 4.2.13.Final, 4.1.133.Final netty: Netty: Request smuggling via chunk size parser integer overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42580

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-05-13 19:17 修改: 2026-06-17 10:48

io.netty:netty-codec-http CVE-2026-42581 中危 4.1.17.Final 4.2.13.Final, 4.1.133.Final netty: io.netty/netty-codec-http: Netty: HTTP Request Smuggling due to improper handling of conflicting HTTP/1.0 headers

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42581

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-05-13 19:17 修改: 2026-06-17 10:48

io.netty:netty-codec-http CVE-2026-42585 中危 4.1.17.Final 4.2.13.Final, 4.1.133.Final netty: io.netty/netty-codec-http: Netty: Request smuggling via malformed Transfer-Encoding parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42585

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-05-13 19:17 修改: 2026-06-17 10:48

io.netty:netty-codec-http CVE-2026-50020 中危 4.1.17.Final 4.2.15.Final, 4.1.135.Final netty-codec-http: Netty: Data manipulation via request-boundary confusion in HttpObjectDecoder

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-50020

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-06-12 16:16 修改: 2026-06-17 10:57

com.google.protobuf:protobuf-java CVE-2022-3171 中危 2.5.0 3.21.7, 3.20.3, 3.19.6, 3.16.3 protobuf-java: timeout in parser leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3171

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-12 23:15 修改: 2026-06-17 04:58

com.google.protobuf:protobuf-java CVE-2022-3171 中危 2.5.0 3.21.7, 3.20.3, 3.19.6, 3.16.3 protobuf-java: timeout in parser leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3171

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-12 23:15 修改: 2026-06-17 04:58

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.10.3 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.10.3 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

io.netty:netty-codec-http CVE-2021-21290 中危 4.1.42.Final 4.1.59.Final netty: Information disclosure via the local system temporary directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21290

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-02-08 20:15 修改: 2026-06-17 03:35

io.netty:netty-codec-http CVE-2021-43797 中危 4.1.42.Final 4.1.71.Final netty: control chars in header names may lead to HTTP request smuggling

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-43797

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-12-09 19:15 修改: 2026-06-17 04:11

io.netty:netty-codec-http CVE-2022-24823 中危 4.1.42.Final 4.1.77.Final netty: world readable temporary file containing sensitive data

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-24823

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-05-06 12:15 修改: 2026-06-17 04:32

io.netty:netty-codec-http CVE-2024-29025 中危 4.1.42.Final 4.1.108.Final netty-codec-http: Allocation of Resources Without Limits or Throttling

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-29025

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-03-25 20:15 修改: 2026-06-17 07:22

io.netty:netty-codec-http CVE-2025-67735 中危 4.1.42.Final 4.2.8.Final, 4.1.129.Final netty-codec-http: Netty (netty-codec-http): Request Smuggling via CRLF Injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-67735

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-12-16 01:15 修改: 2026-06-17 09:58

io.netty:netty-codec-http CVE-2026-41417 中危 4.1.42.Final 4.1.133.Final, 4.2.13.Final netty: Netty: HTTP request smuggling via URI manipulation and CRLF injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-41417

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-05-06 22:16 修改: 2026-06-17 10:46

io.netty:netty-codec-http CVE-2026-42580 中危 4.1.42.Final 4.2.13.Final, 4.1.133.Final netty: Netty: Request smuggling via chunk size parser integer overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42580

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-05-13 19:17 修改: 2026-06-17 10:48

io.netty:netty-codec-http CVE-2026-42581 中危 4.1.42.Final 4.2.13.Final, 4.1.133.Final netty: io.netty/netty-codec-http: Netty: HTTP Request Smuggling due to improper handling of conflicting HTTP/1.0 headers

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42581

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-05-13 19:17 修改: 2026-06-17 10:48

io.netty:netty-codec-http CVE-2026-42585 中危 4.1.42.Final 4.2.13.Final, 4.1.133.Final netty: io.netty/netty-codec-http: Netty: Request smuggling via malformed Transfer-Encoding parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42585

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-05-13 19:17 修改: 2026-06-17 10:48

io.netty:netty-codec-http CVE-2026-50020 中危 4.1.42.Final 4.2.15.Final, 4.1.135.Final netty-codec-http: Netty: Data manipulation via request-boundary confusion in HttpObjectDecoder

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-50020

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-06-12 16:16 修改: 2026-06-17 10:57

com.google.protobuf:protobuf-java CVE-2022-3171 中危 3.0.0-beta-1 3.21.7, 3.20.3, 3.19.6, 3.16.3 protobuf-java: timeout in parser leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3171

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-10-12 23:15 修改: 2026-06-17 04:58

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.13.4 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:c76c46fbc2b97eff26d963af31fe75ddfe6c417472a4541aa7851fbb22f837ab

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.13.4 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:903b3b76e9e99545b0a9850bcf41a292027b9e2141b2a43cb05f972f3aa2628d

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.4.0 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

io.netty:netty-codec-http2 CVE-2021-21295 中危 4.1.42.Final 4.1.60.Final netty: possible request smuggling in HTTP/2 due missing validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21295

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-03-09 19:15 修改: 2026-06-17 03:35

io.netty:netty-codec-http2 CVE-2021-21409 中危 4.1.42.Final 4.1.61.Final netty: Request smuggling via content-length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-21409

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-03-30 15:15 修改: 2026-06-17 03:35

io.netty:netty-codec-http2 CVE-2026-47244 中危 4.1.42.Final 4.2.15.Final, 4.1.135.Final netty-codec-http2: Netty: Denial of Service via uncontrolled HTTP/2 concurrent streams

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-47244

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-06-12 15:16 修改: 2026-06-17 10:54

io.netty:netty-codec-http2 CVE-2026-48043 中危 4.1.42.Final 4.1.135.Final, 4.2.15.Final netty-codec-http2: netty-codec-http2: Denial of Service due to resource leak

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-48043

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-06-12 16:16 修改: 2026-06-17 10:54

io.netty:netty-codec-http2 CVE-2026-50560 中危 4.1.42.Final 4.2.15.Final, 4.1.135.Final netty-codec-http2: Netty: Denial of Service due to HTTP/2 max header size handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-50560

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-06-12 16:16 修改: 2026-06-17 10:57

io.netty:netty-common CVE-2024-47535 中危 4.1.17.Final 4.1.115.Final netty: Denial of Service attack on windows app using Netty

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47535

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-11-12 16:15 修改: 2026-06-17 07:57

io.netty:netty-common CVE-2024-47535 中危 4.1.17.Final 4.1.115.Final netty: Denial of Service attack on windows app using Netty

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47535

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-11-12 16:15 修改: 2026-06-17 07:57

io.netty:netty-common CVE-2024-47535 中危 4.1.17.Final 4.1.115.Final netty: Denial of Service attack on windows app using Netty

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47535

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-11-12 16:15 修改: 2026-06-17 07:57

io.netty:netty-common CVE-2025-25193 中危 4.1.17.Final 4.1.118.Final netty: Denial of Service attack on windows app using Netty

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-25193

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-02-10 22:15 修改: 2026-06-17 09:00

io.netty:netty-common CVE-2025-25193 中危 4.1.17.Final 4.1.118.Final netty: Denial of Service attack on windows app using Netty

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-25193

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-02-10 22:15 修改: 2026-06-17 09:00

io.netty:netty-common CVE-2025-25193 中危 4.1.17.Final 4.1.118.Final netty: Denial of Service attack on windows app using Netty

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-25193

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-02-10 22:15 修改: 2026-06-17 09:00

io.netty:netty-common CVE-2024-47535 中危 4.1.42.Final 4.1.115.Final netty: Denial of Service attack on windows app using Netty

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-47535

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-11-12 16:15 修改: 2026-06-17 07:57

io.netty:netty-common CVE-2025-25193 中危 4.1.42.Final 4.1.118.Final netty: Denial of Service attack on windows app using Netty

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-25193

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-02-10 22:15 修改: 2026-06-17 09:00

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.4.0 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

com.google.protobuf:protobuf-java CVE-2022-3171 中危 3.3.0 3.21.7, 3.20.3, 3.19.6, 3.16.3 protobuf-java: timeout in parser leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3171

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-10-12 23:15 修改: 2026-06-17 04:58

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.4.0 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

io.netty:netty-handler CVE-2019-20445 中危 4.0.52.Final 4.1.45 netty: HttpObjectDecoder.java allows Content-Length header to accompanied by second Content-Length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20445

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty-handler CVE-2023-34462 中危 4.0.52.Final 4.1.94.Final netty: SniHandler 16MB allocation leads to OOM

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34462

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-06-22 23:15 修改: 2026-06-17 06:03

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.4.0 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.4.0 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.4.0 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

com.google.protobuf:protobuf-java CVE-2022-3171 中危 3.3.1 3.21.7, 3.20.3, 3.19.6, 3.16.3 protobuf-java: timeout in parser leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3171

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-10-12 23:15 修改: 2026-06-17 04:58

io.netty:netty-handler CVE-2019-20445 中危 4.1.17.Final 4.1.45 netty: HttpObjectDecoder.java allows Content-Length header to accompanied by second Content-Length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20445

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty-handler CVE-2023-34462 中危 4.1.17.Final 4.1.94.Final netty: SniHandler 16MB allocation leads to OOM

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34462

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-06-22 23:15 修改: 2026-06-17 06:03

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.4.0 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

com.fasterxml.jackson.core:jackson-databind CVE-2019-12384 中危 2.2.3 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: failure to block the logback-core class from polymorphic deserialization leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12384

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-06-24 16:15 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12814 中危 2.2.3 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server via crafted JSON message.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12814

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-06-19 14:15 修改: 2026-06-17 02:15

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.4.0 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

io.netty:netty-handler CVE-2019-20445 中危 4.1.42.Final 4.1.45 netty: HttpObjectDecoder.java allows Content-Length header to accompanied by second Content-Length header

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-20445

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-01-29 21:15 修改: 2026-06-17 02:30

io.netty:netty-handler CVE-2023-34462 中危 4.1.42.Final 4.1.94.Final netty: SniHandler 16MB allocation leads to OOM

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34462

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-06-22 23:15 修改: 2026-06-17 06:03

io.netty:netty-transport-native-epoll CVE-2026-45536 中危 4.0.52.Final 4.2.15.Final, 4.1.135.Final netty-transport-native-epoll: netty-transport-native-kqueue: Netty: Denial of Service due to file descriptor leak in SCM_RIGHTS message handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-45536

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2026-06-12 15:16 修改: 2026-06-17 10:52

junit:junit CVE-2020-15250 中危 4.11 4.13.1 junit4: TemporaryFolder is shared between all users across system which could result in information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-15250

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-10-12 18:15 修改: 2026-06-17 02:56

junit:junit CVE-2020-15250 中危 4.11 4.13.1 junit4: TemporaryFolder is shared between all users across system which could result in information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-15250

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-10-12 18:15 修改: 2026-06-17 02:56

junit:junit CVE-2020-15250 中危 4.11 4.13.1 junit4: TemporaryFolder is shared between all users across system which could result in information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-15250

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-10-12 18:15 修改: 2026-06-17 02:56

junit:junit CVE-2020-15250 中危 4.12 4.13.1 junit4: TemporaryFolder is shared between all users across system which could result in information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-15250

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-10-12 18:15 修改: 2026-06-17 02:56

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.4.0 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.4.0 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.4.0 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.4.0 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

com.google.protobuf:protobuf-java CVE-2022-3171 中危 3.6.1 3.21.7, 3.20.3, 3.19.6, 3.16.3 protobuf-java: timeout in parser leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3171

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-12 23:15 修改: 2026-06-17 04:58

com.google.protobuf:protobuf-java CVE-2022-3171 中危 3.6.1 3.21.7, 3.20.3, 3.19.6, 3.16.3 protobuf-java: timeout in parser leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3171

镜像层: sha256:6539bc3a62bb0856cca28ecf00a6cf8091a1ef29a62ba2853548c6430cb89d77

发布日期: 2022-10-12 23:15 修改: 2026-06-17 04:58

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.4.0 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.4.0 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.4.0 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.4.0 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.4.0 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.4.0 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.4.0 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.4.0 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.4.0 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

org.codehaus.jettison:jettison CVE-2022-40149 中危 1.1 1.5.1 jettison: parser crash by stackoverflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40149

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

org.codehaus.jettison:jettison CVE-2022-40149 中危 1.1 1.5.1 jettison: parser crash by stackoverflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40149

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

org.codehaus.jettison:jettison CVE-2022-40149 中危 1.1 1.5.1 jettison: parser crash by stackoverflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40149

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

org.codehaus.jettison:jettison CVE-2022-40149 中危 1.1 1.5.1 jettison: parser crash by stackoverflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40149

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

org.codehaus.jettison:jettison CVE-2022-40149 中危 1.1 1.5.1 jettison: parser crash by stackoverflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40149

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

org.codehaus.jettison:jettison CVE-2022-40149 中危 1.1 1.5.1 jettison: parser crash by stackoverflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40149

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

org.codehaus.jettison:jettison CVE-2022-40149 中危 1.1 1.5.1 jettison: parser crash by stackoverflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40149

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

org.codehaus.jettison:jettison CVE-2022-40149 中危 1.1 1.5.1 jettison: parser crash by stackoverflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40149

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

org.codehaus.jettison:jettison CVE-2022-40149 中危 1.1 1.5.1 jettison: parser crash by stackoverflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40149

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

org.codehaus.jettison:jettison CVE-2022-40149 中危 1.1 1.5.1 jettison: parser crash by stackoverflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40149

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

org.codehaus.jettison:jettison CVE-2022-40149 中危 1.1 1.5.1 jettison: parser crash by stackoverflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40149

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

org.codehaus.jettison:jettison CVE-2022-40149 中危 1.1 1.5.1 jettison: parser crash by stackoverflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40149

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.4.0 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.4.0 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.4.0 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

org.codehaus.plexus:plexus-utils CVE-2022-4245 中危 3.0.15 3.0.24 codehaus-plexus: XML External Entity (XXE) Injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-4245

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-09-25 20:15 修改: 2026-06-17 05:20

org.eclipse.jetty:jetty-http CVE-2024-6763 中危 7.6.0.v20120127 12.0.12 org.eclipse.jetty:jetty-http: jetty: Jetty URI parsing of invalid authority

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6763

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2024-10-14 16:15 修改: 2026-06-17 08:18

org.eclipse.jetty:jetty-http CVE-2024-6763 中危 7.6.0.v20120127 12.0.12 org.eclipse.jetty:jetty-http: jetty: Jetty URI parsing of invalid authority

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6763

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2024-10-14 16:15 修改: 2026-06-17 08:18

org.eclipse.jetty:jetty-http CVE-2023-40167 中危 9.2.16.v20160414 9.4.52, 10.0.16, 11.0.16, 12.0.1 jetty: Improper validation of HTTP/1 content-length

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-40167

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-09-15 20:15 修改: 2026-06-17 06:16

org.eclipse.jetty:jetty-http CVE-2024-6763 中危 9.2.16.v20160414 12.0.12 org.eclipse.jetty:jetty-http: jetty: Jetty URI parsing of invalid authority

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6763

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2024-10-14 16:15 修改: 2026-06-17 08:18

org.eclipse.jetty:jetty-http CVE-2023-40167 中危 9.2.5.v20141112 9.4.52, 10.0.16, 11.0.16, 12.0.1 jetty: Improper validation of HTTP/1 content-length

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-40167

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-09-15 20:15 修改: 2026-06-17 06:16

org.eclipse.jetty:jetty-http CVE-2024-6763 中危 9.2.5.v20141112 12.0.12 org.eclipse.jetty:jetty-http: jetty: Jetty URI parsing of invalid authority

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6763

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2024-10-14 16:15 修改: 2026-06-17 08:18

org.eclipse.jetty:jetty-http CVE-2023-40167 中危 9.3.20.v20170531 9.4.52, 10.0.16, 11.0.16, 12.0.1 jetty: Improper validation of HTTP/1 content-length

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-40167

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-09-15 20:15 修改: 2026-06-17 06:16

org.eclipse.jetty:jetty-http CVE-2023-40167 中危 9.3.20.v20170531 9.4.52, 10.0.16, 11.0.16, 12.0.1 jetty: Improper validation of HTTP/1 content-length

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-40167

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-09-15 20:15 修改: 2026-06-17 06:16

org.eclipse.jetty:jetty-http CVE-2023-40167 中危 9.3.20.v20170531 9.4.52, 10.0.16, 11.0.16, 12.0.1 jetty: Improper validation of HTTP/1 content-length

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-40167

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-09-15 20:15 修改: 2026-06-17 06:16

org.eclipse.jetty:jetty-http CVE-2023-40167 中危 9.3.20.v20170531 9.4.52, 10.0.16, 11.0.16, 12.0.1 jetty: Improper validation of HTTP/1 content-length

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-40167

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-09-15 20:15 修改: 2026-06-17 06:16

org.eclipse.jetty:jetty-http CVE-2024-6763 中危 9.3.20.v20170531 12.0.12 org.eclipse.jetty:jetty-http: jetty: Jetty URI parsing of invalid authority

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6763

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-10-14 16:15 修改: 2026-06-17 08:18

org.eclipse.jetty:jetty-http CVE-2024-6763 中危 9.3.20.v20170531 12.0.12 org.eclipse.jetty:jetty-http: jetty: Jetty URI parsing of invalid authority

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6763

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-10-14 16:15 修改: 2026-06-17 08:18

org.eclipse.jetty:jetty-http CVE-2024-6763 中危 9.3.20.v20170531 12.0.12 org.eclipse.jetty:jetty-http: jetty: Jetty URI parsing of invalid authority

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6763

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-10-14 16:15 修改: 2026-06-17 08:18

org.eclipse.jetty:jetty-http CVE-2024-6763 中危 9.3.20.v20170531 12.0.12 org.eclipse.jetty:jetty-http: jetty: Jetty URI parsing of invalid authority

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6763

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-10-14 16:15 修改: 2026-06-17 08:18

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.4.0 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

com.fasterxml.jackson.core:jackson-databind CVE-2019-12384 中危 2.4.0 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: failure to block the logback-core class from polymorphic deserialization leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12384

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-06-24 16:15 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12384 中危 2.4.0 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: failure to block the logback-core class from polymorphic deserialization leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12384

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-06-24 16:15 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12384 中危 2.4.0 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: failure to block the logback-core class from polymorphic deserialization leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12384

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-06-24 16:15 修改: 2026-06-17 02:14

org.eclipse.jetty:jetty-http CVE-2023-40167 中危 9.4.20.v20190813 9.4.52, 10.0.16, 11.0.16, 12.0.1 jetty: Improper validation of HTTP/1 content-length

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-40167

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-09-15 20:15 修改: 2026-06-17 06:16

org.eclipse.jetty:jetty-http CVE-2023-40167 中危 9.4.20.v20190813 9.4.52, 10.0.16, 11.0.16, 12.0.1 jetty: Improper validation of HTTP/1 content-length

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-40167

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-09-15 20:15 修改: 2026-06-17 06:16

org.eclipse.jetty:jetty-http CVE-2023-40167 中危 9.4.20.v20190813 9.4.52, 10.0.16, 11.0.16, 12.0.1 jetty: Improper validation of HTTP/1 content-length

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-40167

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-09-15 20:15 修改: 2026-06-17 06:16

org.eclipse.jetty:jetty-http CVE-2023-40167 中危 9.4.20.v20190813 9.4.52, 10.0.16, 11.0.16, 12.0.1 jetty: Improper validation of HTTP/1 content-length

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-40167

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-09-15 20:15 修改: 2026-06-17 06:16

org.eclipse.jetty:jetty-http CVE-2024-6763 中危 9.4.20.v20190813 12.0.12 org.eclipse.jetty:jetty-http: jetty: Jetty URI parsing of invalid authority

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6763

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-10-14 16:15 修改: 2026-06-17 08:18

org.eclipse.jetty:jetty-http CVE-2024-6763 中危 9.4.20.v20190813 12.0.12 org.eclipse.jetty:jetty-http: jetty: Jetty URI parsing of invalid authority

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6763

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-10-14 16:15 修改: 2026-06-17 08:18

org.eclipse.jetty:jetty-http CVE-2024-6763 中危 9.4.20.v20190813 12.0.12 org.eclipse.jetty:jetty-http: jetty: Jetty URI parsing of invalid authority

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6763

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-10-14 16:15 修改: 2026-06-17 08:18

org.eclipse.jetty:jetty-http CVE-2024-6763 中危 9.4.20.v20190813 12.0.12 org.eclipse.jetty:jetty-http: jetty: Jetty URI parsing of invalid authority

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-6763

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-10-14 16:15 修改: 2026-06-17 08:18

com.google.protobuf:protobuf-java CVE-2022-3171 中危 3.7.1 3.21.7, 3.20.3, 3.19.6, 3.16.3 protobuf-java: timeout in parser leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3171

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-12 23:15 修改: 2026-06-17 04:58

com.google.protobuf:protobuf-java CVE-2022-3171 中危 3.7.1 3.21.7, 3.20.3, 3.19.6, 3.16.3 protobuf-java: timeout in parser leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3171

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-12 23:15 修改: 2026-06-17 04:58

com.google.protobuf:protobuf-java CVE-2022-3171 中危 3.7.1 3.21.7, 3.20.3, 3.19.6, 3.16.3 protobuf-java: timeout in parser leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3171

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-12 23:15 修改: 2026-06-17 04:58

com.google.protobuf:protobuf-java CVE-2022-3171 中危 3.7.1 3.21.7, 3.20.3, 3.19.6, 3.16.3 protobuf-java: timeout in parser leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-3171

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-10-12 23:15 修改: 2026-06-17 04:58

com.fasterxml.jackson.core:jackson-databind CVE-2019-12384 中危 2.4.0 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: failure to block the logback-core class from polymorphic deserialization leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12384

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-06-24 16:15 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12384 中危 2.4.0 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: failure to block the logback-core class from polymorphic deserialization leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12384

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-06-24 16:15 修改: 2026-06-17 02:14

com.jcraft:jsch CVE-2016-5725 中危 0.1.42 0.1.54 jsch: ChannelSftp path traversal vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2016-5725

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-01-19 22:59 修改: 2026-06-17 00:49

com.jcraft:jsch CVE-2016-5725 中危 0.1.42 0.1.54 jsch: ChannelSftp path traversal vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2016-5725

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-01-19 22:59 修改: 2026-06-17 00:49

com.jcraft:jsch CVE-2016-5725 中危 0.1.42 0.1.54 jsch: ChannelSftp path traversal vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2016-5725

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-01-19 22:59 修改: 2026-06-17 00:49

com.jcraft:jsch CVE-2016-5725 中危 0.1.42 0.1.54 jsch: ChannelSftp path traversal vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2016-5725

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2017-01-19 22:59 修改: 2026-06-17 00:49

com.fasterxml.jackson.core:jackson-databind CVE-2019-12384 中危 2.6.5 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: failure to block the logback-core class from polymorphic deserialization leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12384

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-06-24 16:15 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12384 中危 2.6.5 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: failure to block the logback-core class from polymorphic deserialization leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12384

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-06-24 16:15 修改: 2026-06-17 02:14

org.eclipse.jetty:jetty-server CVE-2011-4461 中危 7.6.0.v20120127 8.1.0.RC4 jetty: hash table collisions CPU usage DoS (oCERT-2011-003)

漏洞详情: https://avd.aquasec.com/nvd/cve-2011-4461

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2011-12-30 01:55 修改: 2026-04-29 01:13

org.eclipse.jetty:jetty-server CVE-2011-4461 中危 7.6.0.v20120127 8.1.0.RC4 jetty: hash table collisions CPU usage DoS (oCERT-2011-003)

漏洞详情: https://avd.aquasec.com/nvd/cve-2011-4461

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2011-12-30 01:55 修改: 2026-04-29 01:13

org.eclipse.jetty:jetty-server CVE-2019-10241 中危 7.6.0.v20120127 9.2.27.v20190403, 9.3.26.v20190403, 9.4.16.v20190411 jetty: using specially formatted URL against DefaultServlet or ResourceHandler leads to XSS conditions

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10241

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-04-22 20:29 修改: 2026-06-17 02:10

org.eclipse.jetty:jetty-server CVE-2019-10241 中危 7.6.0.v20120127 9.2.27.v20190403, 9.3.26.v20190403, 9.4.16.v20190411 jetty: using specially formatted URL against DefaultServlet or ResourceHandler leads to XSS conditions

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10241

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-04-22 20:29 修改: 2026-06-17 02:10

org.eclipse.jetty:jetty-server CVE-2019-10247 中危 7.6.0.v20120127 9.2.28.v20190418, 9.3.27.v20190418, 9.4.17.v20190418 jetty: error path information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10247

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-04-22 20:29 修改: 2026-06-17 02:10

org.eclipse.jetty:jetty-server CVE-2019-10247 中危 7.6.0.v20120127 9.2.28.v20190418, 9.3.27.v20190418, 9.4.17.v20190418 jetty: error path information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10247

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-04-22 20:29 修改: 2026-06-17 02:10

org.eclipse.jetty:jetty-server CVE-2023-26048 中危 7.6.0.v20120127 9.4.51.v20230217, 10.0.14, 11.0.14 jetty-server: OutOfMemoryError for large multipart without filename read via request.getParameter()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26048

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-04-18 21:15 修改: 2026-06-17 05:42

org.eclipse.jetty:jetty-server CVE-2023-26048 中危 7.6.0.v20120127 9.4.51.v20230217, 10.0.14, 11.0.14 jetty-server: OutOfMemoryError for large multipart without filename read via request.getParameter()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26048

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-04-18 21:15 修改: 2026-06-17 05:42

com.nimbusds:nimbus-jose-jwt CVE-2025-53864 中危 4.41.1 10.0.2, 9.37.4 com.nimbusds/nimbus-jose-jwt: Uncontrolled recursion in Connect2id Nimbus JOSE + JWT

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-53864

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-07-11 03:16 修改: 2026-06-17 09:39

com.fasterxml.jackson.core:jackson-databind CVE-2019-12384 中危 2.6.5 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: failure to block the logback-core class from polymorphic deserialization leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12384

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-06-24 16:15 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12814 中危 2.6.5 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server via crafted JSON message.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12814

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-06-19 14:15 修改: 2026-06-17 02:15

com.fasterxml.jackson.core:jackson-databind CVE-2019-12814 中危 2.6.5 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server via crafted JSON message.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12814

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-06-19 14:15 修改: 2026-06-17 02:15

com.fasterxml.jackson.core:jackson-databind CVE-2019-12814 中危 2.6.5 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server via crafted JSON message.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12814

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-06-19 14:15 修改: 2026-06-17 02:15

org.eclipse.jetty:jetty-server CVE-2018-12536 中危 9.2.16.v20160414 9.4.11.v20180605, 9.3.24.v20180605 jetty: full server path revealed when using the default Error Handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12536

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-06-27 17:29 修改: 2026-06-17 01:37

org.eclipse.jetty:jetty-server CVE-2019-10241 中危 9.2.16.v20160414 9.2.27.v20190403, 9.3.26.v20190403, 9.4.16.v20190411 jetty: using specially formatted URL against DefaultServlet or ResourceHandler leads to XSS conditions

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10241

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-04-22 20:29 修改: 2026-06-17 02:10

org.eclipse.jetty:jetty-server CVE-2019-10246 中危 9.2.16.v20160414 9.2.28.v20190418, 9.3.27.v20190418, 9.4.17.v20190418 jetty: Directory Listing on Windows reveals Resource Base path

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10246

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-04-22 20:29 修改: 2026-06-17 02:10

org.eclipse.jetty:jetty-server CVE-2019-10247 中危 9.2.16.v20160414 9.2.28.v20190418, 9.3.27.v20190418, 9.4.17.v20190418 jetty: error path information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10247

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-04-22 20:29 修改: 2026-06-17 02:10

org.eclipse.jetty:jetty-server CVE-2023-26048 中危 9.2.16.v20160414 9.4.51.v20230217, 10.0.14, 11.0.14 jetty-server: OutOfMemoryError for large multipart without filename read via request.getParameter()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26048

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-04-18 21:15 修改: 2026-06-17 05:42

com.nimbusds:nimbus-jose-jwt CVE-2025-53864 中危 7.9 10.0.2, 9.37.4 com.nimbusds/nimbus-jose-jwt: Uncontrolled recursion in Connect2id Nimbus JOSE + JWT

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-53864

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-07-11 03:16 修改: 2026-06-17 09:39

com.nimbusds:nimbus-jose-jwt CVE-2025-53864 中危 7.9 10.0.2, 9.37.4 com.nimbusds/nimbus-jose-jwt: Uncontrolled recursion in Connect2id Nimbus JOSE + JWT

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-53864

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-07-11 03:16 修改: 2026-06-17 09:39

com.nimbusds:nimbus-jose-jwt CVE-2025-53864 中危 7.9 10.0.2, 9.37.4 com.nimbusds/nimbus-jose-jwt: Uncontrolled recursion in Connect2id Nimbus JOSE + JWT

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-53864

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-07-11 03:16 修改: 2026-06-17 09:39

com.nimbusds:nimbus-jose-jwt CVE-2025-53864 中危 7.9 10.0.2, 9.37.4 com.nimbusds/nimbus-jose-jwt: Uncontrolled recursion in Connect2id Nimbus JOSE + JWT

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-53864

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-07-11 03:16 修改: 2026-06-17 09:39

com.puppycrawl.tools:checkstyle CVE-2019-10782 中危 6.1.1 8.29 checkstyle: XML External Entity Injection due to an incomplete fix for CVE-2019-9658

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10782

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2020-01-30 23:15 修改: 2026-06-17 02:11

com.puppycrawl.tools:checkstyle CVE-2019-9658 中危 6.1.1 8.18 Checkstyle before 8.18 loads external DTDs by default.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-9658

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2019-03-11 05:29 修改: 2026-06-17 02:44

org.eclipse.jetty:jetty-server CVE-2018-12536 中危 9.2.5.v20141112 9.4.11.v20180605, 9.3.24.v20180605 jetty: full server path revealed when using the default Error Handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12536

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-06-27 17:29 修改: 2026-06-17 01:37

org.eclipse.jetty:jetty-server CVE-2019-10241 中危 9.2.5.v20141112 9.2.27.v20190403, 9.3.26.v20190403, 9.4.16.v20190411 jetty: using specially formatted URL against DefaultServlet or ResourceHandler leads to XSS conditions

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10241

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-04-22 20:29 修改: 2026-06-17 02:10

org.eclipse.jetty:jetty-server CVE-2019-10246 中危 9.2.5.v20141112 9.2.28.v20190418, 9.3.27.v20190418, 9.4.17.v20190418 jetty: Directory Listing on Windows reveals Resource Base path

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10246

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-04-22 20:29 修改: 2026-06-17 02:10

org.eclipse.jetty:jetty-server CVE-2019-10247 中危 9.2.5.v20141112 9.2.28.v20190418, 9.3.27.v20190418, 9.4.17.v20190418 jetty: error path information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10247

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-04-22 20:29 修改: 2026-06-17 02:10

org.eclipse.jetty:jetty-server CVE-2023-26048 中危 9.2.5.v20141112 9.4.51.v20230217, 10.0.14, 11.0.14 jetty-server: OutOfMemoryError for large multipart without filename read via request.getParameter()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26048

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-04-18 21:15 修改: 2026-06-17 05:42

com.squareup.okio:okio CVE-2023-3635 中危 1.6.0 3.4.0, 1.17.6 okio: GzipSource class improper exception handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3635

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-07-12 19:15 修改: 2026-06-17 06:14

com.squareup.okio:okio CVE-2023-3635 中危 1.6.0 3.4.0, 1.17.6 okio: GzipSource class improper exception handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3635

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-07-12 19:15 修改: 2026-06-17 06:14

com.squareup.okio:okio CVE-2023-3635 中危 1.6.0 3.4.0, 1.17.6 okio: GzipSource class improper exception handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3635

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-07-12 19:15 修改: 2026-06-17 06:14

com.squareup.okio:okio CVE-2023-3635 中危 1.6.0 3.4.0, 1.17.6 okio: GzipSource class improper exception handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-3635

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-07-12 19:15 修改: 2026-06-17 06:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12384 中危 2.4.0 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: failure to block the logback-core class from polymorphic deserialization leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12384

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-06-24 16:15 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12384 中危 2.4.0 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: failure to block the logback-core class from polymorphic deserialization leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12384

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-06-24 16:15 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12384 中危 2.4.0 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: failure to block the logback-core class from polymorphic deserialization leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12384

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-06-24 16:15 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12384 中危 2.4.0 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: failure to block the logback-core class from polymorphic deserialization leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12384

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-06-24 16:15 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12384 中危 2.4.0 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: failure to block the logback-core class from polymorphic deserialization leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12384

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-06-24 16:15 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12384 中危 2.4.0 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: failure to block the logback-core class from polymorphic deserialization leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12384

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-06-24 16:15 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12384 中危 2.4.0 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: failure to block the logback-core class from polymorphic deserialization leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12384

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2019-06-24 16:15 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12384 中危 2.4.0 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: failure to block the logback-core class from polymorphic deserialization leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12384

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2019-06-24 16:15 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12814 中危 2.4.0 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server via crafted JSON message.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12814

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2019-06-19 14:15 修改: 2026-06-17 02:15

com.fasterxml.jackson.core:jackson-databind CVE-2019-12814 中危 2.4.0 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server via crafted JSON message.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12814

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-06-19 14:15 修改: 2026-06-17 02:15

com.fasterxml.jackson.core:jackson-databind CVE-2019-12814 中危 2.4.0 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server via crafted JSON message.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12814

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-06-19 14:15 修改: 2026-06-17 02:15

com.fasterxml.jackson.core:jackson-databind CVE-2019-12814 中危 2.4.0 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server via crafted JSON message.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12814

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-06-19 14:15 修改: 2026-06-17 02:15

com.fasterxml.jackson.core:jackson-databind CVE-2019-12814 中危 2.4.0 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server via crafted JSON message.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12814

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-06-19 14:15 修改: 2026-06-17 02:15

com.fasterxml.jackson.core:jackson-databind CVE-2019-12814 中危 2.4.0 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server via crafted JSON message.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12814

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-06-19 14:15 修改: 2026-06-17 02:15

com.fasterxml.jackson.core:jackson-databind CVE-2019-12384 中危 2.9.4 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: failure to block the logback-core class from polymorphic deserialization leading to remote code execution

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12384

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-06-24 16:15 修改: 2026-06-17 02:14

com.fasterxml.jackson.core:jackson-databind CVE-2019-12814 中危 2.9.4 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server via crafted JSON message.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12814

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-06-19 14:15 修改: 2026-06-17 02:15

org.eclipse.jetty:jetty-server CVE-2018-12536 中危 9.3.20.v20170531 9.4.11.v20180605, 9.3.24.v20180605 jetty: full server path revealed when using the default Error Handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12536

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-06-27 17:29 修改: 2026-06-17 01:37

org.eclipse.jetty:jetty-server CVE-2018-12536 中危 9.3.20.v20170531 9.4.11.v20180605, 9.3.24.v20180605 jetty: full server path revealed when using the default Error Handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12536

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-06-27 17:29 修改: 2026-06-17 01:37

org.eclipse.jetty:jetty-server CVE-2018-12536 中危 9.3.20.v20170531 9.4.11.v20180605, 9.3.24.v20180605 jetty: full server path revealed when using the default Error Handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12536

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-06-27 17:29 修改: 2026-06-17 01:37

org.eclipse.jetty:jetty-server CVE-2018-12536 中危 9.3.20.v20170531 9.4.11.v20180605, 9.3.24.v20180605 jetty: full server path revealed when using the default Error Handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-12536

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-06-27 17:29 修改: 2026-06-17 01:37

org.eclipse.jetty:jetty-server CVE-2019-10241 中危 9.3.20.v20170531 9.2.27.v20190403, 9.3.26.v20190403, 9.4.16.v20190411 jetty: using specially formatted URL against DefaultServlet or ResourceHandler leads to XSS conditions

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10241

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-04-22 20:29 修改: 2026-06-17 02:10

org.eclipse.jetty:jetty-server CVE-2019-10241 中危 9.3.20.v20170531 9.2.27.v20190403, 9.3.26.v20190403, 9.4.16.v20190411 jetty: using specially formatted URL against DefaultServlet or ResourceHandler leads to XSS conditions

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10241

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-04-22 20:29 修改: 2026-06-17 02:10

org.eclipse.jetty:jetty-server CVE-2019-10241 中危 9.3.20.v20170531 9.2.27.v20190403, 9.3.26.v20190403, 9.4.16.v20190411 jetty: using specially formatted URL against DefaultServlet or ResourceHandler leads to XSS conditions

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10241

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-04-22 20:29 修改: 2026-06-17 02:10

org.eclipse.jetty:jetty-server CVE-2019-10241 中危 9.3.20.v20170531 9.2.27.v20190403, 9.3.26.v20190403, 9.4.16.v20190411 jetty: using specially formatted URL against DefaultServlet or ResourceHandler leads to XSS conditions

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10241

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-04-22 20:29 修改: 2026-06-17 02:10

org.eclipse.jetty:jetty-server CVE-2019-10246 中危 9.3.20.v20170531 9.2.28.v20190418, 9.3.27.v20190418, 9.4.17.v20190418 jetty: Directory Listing on Windows reveals Resource Base path

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10246

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-04-22 20:29 修改: 2026-06-17 02:10

org.eclipse.jetty:jetty-server CVE-2019-10246 中危 9.3.20.v20170531 9.2.28.v20190418, 9.3.27.v20190418, 9.4.17.v20190418 jetty: Directory Listing on Windows reveals Resource Base path

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10246

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-04-22 20:29 修改: 2026-06-17 02:10

org.eclipse.jetty:jetty-server CVE-2019-10246 中危 9.3.20.v20170531 9.2.28.v20190418, 9.3.27.v20190418, 9.4.17.v20190418 jetty: Directory Listing on Windows reveals Resource Base path

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10246

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-04-22 20:29 修改: 2026-06-17 02:10

org.eclipse.jetty:jetty-server CVE-2019-10246 中危 9.3.20.v20170531 9.2.28.v20190418, 9.3.27.v20190418, 9.4.17.v20190418 jetty: Directory Listing on Windows reveals Resource Base path

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10246

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-04-22 20:29 修改: 2026-06-17 02:10

org.eclipse.jetty:jetty-server CVE-2019-10247 中危 9.3.20.v20170531 9.2.28.v20190418, 9.3.27.v20190418, 9.4.17.v20190418 jetty: error path information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10247

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-04-22 20:29 修改: 2026-06-17 02:10

org.eclipse.jetty:jetty-server CVE-2019-10247 中危 9.3.20.v20170531 9.2.28.v20190418, 9.3.27.v20190418, 9.4.17.v20190418 jetty: error path information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10247

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-04-22 20:29 修改: 2026-06-17 02:10

org.eclipse.jetty:jetty-server CVE-2019-10247 中危 9.3.20.v20170531 9.2.28.v20190418, 9.3.27.v20190418, 9.4.17.v20190418 jetty: error path information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10247

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-04-22 20:29 修改: 2026-06-17 02:10

org.eclipse.jetty:jetty-server CVE-2019-10247 中危 9.3.20.v20170531 9.2.28.v20190418, 9.3.27.v20190418, 9.4.17.v20190418 jetty: error path information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-10247

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2019-04-22 20:29 修改: 2026-06-17 02:10

org.eclipse.jetty:jetty-server CVE-2023-26048 中危 9.3.20.v20170531 9.4.51.v20230217, 10.0.14, 11.0.14 jetty-server: OutOfMemoryError for large multipart without filename read via request.getParameter()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26048

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-04-18 21:15 修改: 2026-06-17 05:42

org.eclipse.jetty:jetty-server CVE-2023-26048 中危 9.3.20.v20170531 9.4.51.v20230217, 10.0.14, 11.0.14 jetty-server: OutOfMemoryError for large multipart without filename read via request.getParameter()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26048

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-04-18 21:15 修改: 2026-06-17 05:42

org.eclipse.jetty:jetty-server CVE-2023-26048 中危 9.3.20.v20170531 9.4.51.v20230217, 10.0.14, 11.0.14 jetty-server: OutOfMemoryError for large multipart without filename read via request.getParameter()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26048

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-04-18 21:15 修改: 2026-06-17 05:42

org.eclipse.jetty:jetty-server CVE-2023-26048 中危 9.3.20.v20170531 9.4.51.v20230217, 10.0.14, 11.0.14 jetty-server: OutOfMemoryError for large multipart without filename read via request.getParameter()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26048

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-04-18 21:15 修改: 2026-06-17 05:42

org.eclipse.jetty:jetty-server CVE-2024-8184 中危 9.3.20.v20170531 12.0.9, 10.0.24, 11.0.24, 9.4.56 org.eclipse.jetty:jetty-server: jetty: Jetty ThreadLimitHandler.getRemote() vulnerable to remote DoS attacks

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-8184

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-10-14 16:15 修改: 2026-06-17 08:22

org.eclipse.jetty:jetty-server CVE-2024-8184 中危 9.3.20.v20170531 12.0.9, 10.0.24, 11.0.24, 9.4.56 org.eclipse.jetty:jetty-server: jetty: Jetty ThreadLimitHandler.getRemote() vulnerable to remote DoS attacks

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-8184

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-10-14 16:15 修改: 2026-06-17 08:22

org.eclipse.jetty:jetty-server CVE-2024-8184 中危 9.3.20.v20170531 12.0.9, 10.0.24, 11.0.24, 9.4.56 org.eclipse.jetty:jetty-server: jetty: Jetty ThreadLimitHandler.getRemote() vulnerable to remote DoS attacks

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-8184

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-10-14 16:15 修改: 2026-06-17 08:22

org.eclipse.jetty:jetty-server CVE-2024-8184 中危 9.3.20.v20170531 12.0.9, 10.0.24, 11.0.24, 9.4.56 org.eclipse.jetty:jetty-server: jetty: Jetty ThreadLimitHandler.getRemote() vulnerable to remote DoS attacks

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-8184

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-10-14 16:15 修改: 2026-06-17 08:22

com.fasterxml.woodstox:woodstox-core CVE-2022-40152 中危 5.0.3 6.4.0, 5.4.0 woodstox-core: woodstox to serialise XML data was vulnerable to Denial of Service attacks

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40152

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

com.fasterxml.woodstox:woodstox-core CVE-2022-40152 中危 5.0.3 6.4.0, 5.4.0 woodstox-core: woodstox to serialise XML data was vulnerable to Denial of Service attacks

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40152

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

com.fasterxml.woodstox:woodstox-core CVE-2022-40152 中危 5.0.3 6.4.0, 5.4.0 woodstox-core: woodstox to serialise XML data was vulnerable to Denial of Service attacks

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40152

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

com.fasterxml.woodstox:woodstox-core CVE-2022-40152 中危 5.0.3 6.4.0, 5.4.0 woodstox-core: woodstox to serialise XML data was vulnerable to Denial of Service attacks

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40152

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

commons-httpclient:commons-httpclient CVE-2012-5783 中危 3.1 4.0 jakarta-commons-httpclient: missing connection hostname check against X.509 certificate name

漏洞详情: https://avd.aquasec.com/nvd/cve-2012-5783

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2012-11-04 22:55 修改: 2026-04-29 01:13

commons-httpclient:commons-httpclient CVE-2012-5783 中危 3.1 4.0 jakarta-commons-httpclient: missing connection hostname check against X.509 certificate name

漏洞详情: https://avd.aquasec.com/nvd/cve-2012-5783

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2012-11-04 22:55 修改: 2026-04-29 01:13

commons-httpclient:commons-httpclient CVE-2012-5783 中危 3.1 4.0 jakarta-commons-httpclient: missing connection hostname check against X.509 certificate name

漏洞详情: https://avd.aquasec.com/nvd/cve-2012-5783

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2012-11-04 22:55 修改: 2026-04-29 01:13

com.fasterxml.woodstox:woodstox-core CVE-2022-40152 中危 5.0.3 6.4.0, 5.4.0 woodstox-core: woodstox to serialise XML data was vulnerable to Denial of Service attacks

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40152

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

org.eclipse.jetty:jetty-server CVE-2020-27218 中危 9.4.20.v20190813 9.4.35.v20201120 jetty: buffer not correctly recycled in Gzip Request inflation

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-27218

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-11-28 01:15 修改: 2026-06-17 03:08

org.eclipse.jetty:jetty-server CVE-2020-27218 中危 9.4.20.v20190813 9.4.35.v20201120 jetty: buffer not correctly recycled in Gzip Request inflation

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-27218

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-11-28 01:15 修改: 2026-06-17 03:08

org.eclipse.jetty:jetty-server CVE-2020-27218 中危 9.4.20.v20190813 9.4.35.v20201120 jetty: buffer not correctly recycled in Gzip Request inflation

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-27218

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-11-28 01:15 修改: 2026-06-17 03:08

org.eclipse.jetty:jetty-server CVE-2020-27218 中危 9.4.20.v20190813 9.4.35.v20201120 jetty: buffer not correctly recycled in Gzip Request inflation

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-27218

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-11-28 01:15 修改: 2026-06-17 03:08

org.eclipse.jetty:jetty-server CVE-2020-27223 中危 9.4.20.v20190813 9.4.37, 10.0.1, 11.0.1 jetty: request containing multiple Accept headers with a large number of "quality" parameters may lead to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-27223

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-02-26 22:15 修改: 2026-06-17 03:08

org.eclipse.jetty:jetty-server CVE-2020-27223 中危 9.4.20.v20190813 9.4.37, 10.0.1, 11.0.1 jetty: request containing multiple Accept headers with a large number of "quality" parameters may lead to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-27223

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-02-26 22:15 修改: 2026-06-17 03:08

org.eclipse.jetty:jetty-server CVE-2020-27223 中危 9.4.20.v20190813 9.4.37, 10.0.1, 11.0.1 jetty: request containing multiple Accept headers with a large number of "quality" parameters may lead to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-27223

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-02-26 22:15 修改: 2026-06-17 03:08

org.eclipse.jetty:jetty-server CVE-2020-27223 中危 9.4.20.v20190813 9.4.37, 10.0.1, 11.0.1 jetty: request containing multiple Accept headers with a large number of "quality" parameters may lead to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-27223

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-02-26 22:15 修改: 2026-06-17 03:08

org.eclipse.jetty:jetty-server CVE-2023-26048 中危 9.4.20.v20190813 9.4.51.v20230217, 10.0.14, 11.0.14 jetty-server: OutOfMemoryError for large multipart without filename read via request.getParameter()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26048

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-04-18 21:15 修改: 2026-06-17 05:42

org.eclipse.jetty:jetty-server CVE-2023-26048 中危 9.4.20.v20190813 9.4.51.v20230217, 10.0.14, 11.0.14 jetty-server: OutOfMemoryError for large multipart without filename read via request.getParameter()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26048

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-04-18 21:15 修改: 2026-06-17 05:42

org.eclipse.jetty:jetty-server CVE-2023-26048 中危 9.4.20.v20190813 9.4.51.v20230217, 10.0.14, 11.0.14 jetty-server: OutOfMemoryError for large multipart without filename read via request.getParameter()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26048

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-04-18 21:15 修改: 2026-06-17 05:42

org.eclipse.jetty:jetty-server CVE-2023-26048 中危 9.4.20.v20190813 9.4.51.v20230217, 10.0.14, 11.0.14 jetty-server: OutOfMemoryError for large multipart without filename read via request.getParameter()

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26048

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-04-18 21:15 修改: 2026-06-17 05:42

org.eclipse.jetty:jetty-server CVE-2024-8184 中危 9.4.20.v20190813 12.0.9, 10.0.24, 11.0.24, 9.4.56 org.eclipse.jetty:jetty-server: jetty: Jetty ThreadLimitHandler.getRemote() vulnerable to remote DoS attacks

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-8184

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-10-14 16:15 修改: 2026-06-17 08:22

org.eclipse.jetty:jetty-server CVE-2024-8184 中危 9.4.20.v20190813 12.0.9, 10.0.24, 11.0.24, 9.4.56 org.eclipse.jetty:jetty-server: jetty: Jetty ThreadLimitHandler.getRemote() vulnerable to remote DoS attacks

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-8184

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-10-14 16:15 修改: 2026-06-17 08:22

org.eclipse.jetty:jetty-server CVE-2024-8184 中危 9.4.20.v20190813 12.0.9, 10.0.24, 11.0.24, 9.4.56 org.eclipse.jetty:jetty-server: jetty: Jetty ThreadLimitHandler.getRemote() vulnerable to remote DoS attacks

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-8184

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-10-14 16:15 修改: 2026-06-17 08:22

org.eclipse.jetty:jetty-server CVE-2024-8184 中危 9.4.20.v20190813 12.0.9, 10.0.24, 11.0.24, 9.4.56 org.eclipse.jetty:jetty-server: jetty: Jetty ThreadLimitHandler.getRemote() vulnerable to remote DoS attacks

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-8184

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-10-14 16:15 修改: 2026-06-17 08:22

org.eclipse.jetty:jetty-servlets CVE-2021-28169 中危 7.6.0.v20120127 9.4.41, 10.0.3, 11.0.3 jetty: requests to the ConcatServlet and WelcomeFilter are able to access protected resources within the WEB-INF directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-28169

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-06-09 02:15 修改: 2026-06-17 03:45

org.eclipse.jetty:jetty-servlets CVE-2021-28169 中危 7.6.0.v20120127 9.4.41, 10.0.3, 11.0.3 jetty: requests to the ConcatServlet and WelcomeFilter are able to access protected resources within the WEB-INF directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-28169

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-06-09 02:15 修改: 2026-06-17 03:45

org.eclipse.jetty:jetty-servlets CVE-2021-28169 中危 9.2.16.v20160414 9.4.41, 10.0.3, 11.0.3 jetty: requests to the ConcatServlet and WelcomeFilter are able to access protected resources within the WEB-INF directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-28169

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-06-09 02:15 修改: 2026-06-17 03:45

org.eclipse.jetty:jetty-servlets CVE-2024-9823 中危 9.2.16.v20160414 9.4.54, 10.0.18, 11.0.18 org.eclipse.jetty:jetty-servlets: jetty: Jetty DOS vulnerability on DosFilter

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-9823

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2024-10-14 15:15 修改: 2026-06-17 08:25

org.eclipse.jetty:jetty-servlets CVE-2021-28169 中危 9.2.5.v20141112 9.4.41, 10.0.3, 11.0.3 jetty: requests to the ConcatServlet and WelcomeFilter are able to access protected resources within the WEB-INF directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-28169

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-06-09 02:15 修改: 2026-06-17 03:45

org.eclipse.jetty:jetty-servlets CVE-2024-9823 中危 9.2.5.v20141112 9.4.54, 10.0.18, 11.0.18 org.eclipse.jetty:jetty-servlets: jetty: Jetty DOS vulnerability on DosFilter

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-9823

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2024-10-14 15:15 修改: 2026-06-17 08:25

org.eclipse.jetty:jetty-servlets CVE-2021-28169 中危 9.3.20.v20170531 9.4.41, 10.0.3, 11.0.3 jetty: requests to the ConcatServlet and WelcomeFilter are able to access protected resources within the WEB-INF directory

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-28169

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-06-09 02:15 修改: 2026-06-17 03:45

org.eclipse.jetty:jetty-servlets CVE-2024-9823 中危 9.3.20.v20170531 9.4.54, 10.0.18, 11.0.18 org.eclipse.jetty:jetty-servlets: jetty: Jetty DOS vulnerability on DosFilter

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-9823

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2024-10-14 15:15 修改: 2026-06-17 08:25

com.fasterxml.woodstox:woodstox-core CVE-2022-40152 中危 5.0.3 6.4.0, 5.4.0 woodstox-core: woodstox to serialise XML data was vulnerable to Denial of Service attacks

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40152

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

com.fasterxml.woodstox:woodstox-core CVE-2022-40152 中危 5.0.3 6.4.0, 5.4.0 woodstox-core: woodstox to serialise XML data was vulnerable to Denial of Service attacks

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-40152

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2022-09-16 10:15 修改: 2026-06-17 05:01

com.fasterxml.jackson.core:jackson-databind CVE-2019-12814 中危 2.4.0 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server via crafted JSON message.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12814

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2019-06-19 14:15 修改: 2026-06-17 02:15

com.fasterxml.jackson.core:jackson-databind CVE-2019-12814 中危 2.4.0 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server via crafted JSON message.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12814

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-06-19 14:15 修改: 2026-06-17 02:15

com.fasterxml.jackson.core:jackson-databind CVE-2019-12814 中危 2.4.0 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server via crafted JSON message.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12814

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-06-19 14:15 修改: 2026-06-17 02:15

com.fasterxml.jackson.core:jackson-databind CVE-2019-12814 中危 2.4.0 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server via crafted JSON message.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12814

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-06-19 14:15 修改: 2026-06-17 02:15

mysql:mysql-connector-java CVE-2019-2692 中危 8.0.15 8.0.16 mysql-connector-java: privilege escalation in MySQL connector

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-2692

镜像层: sha256:6539bc3a62bb0856cca28ecf00a6cf8091a1ef29a62ba2853548c6430cb89d77

发布日期: 2019-04-23 19:32 修改: 2026-06-17 02:34

mysql:mysql-connector-java CVE-2021-2471 中危 8.0.15 8.0.27 mysql-connector-java: unauthorized access to critical

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-2471

镜像层: sha256:6539bc3a62bb0856cca28ecf00a6cf8091a1ef29a62ba2853548c6430cb89d77

发布日期: 2021-10-20 11:16 修改: 2026-06-17 03:49

mysql:mysql-connector-java CVE-2022-21363 中危 8.0.15 8.0.28 mysql-connector-java: Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Connectors

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-21363

镜像层: sha256:6539bc3a62bb0856cca28ecf00a6cf8091a1ef29a62ba2853548c6430cb89d77

发布日期: 2022-01-19 12:15 修改: 2026-06-17 04:26

org.elasticsearch.client:elasticsearch-rest-client CVE-2021-22145 中危 7.10.2 7.13.4 elasticsearch: memory disclosure in error reporting

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22145

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2021-07-21 15:15 修改: 2026-06-17 03:36

org.elasticsearch.client:elasticsearch-rest-client CVE-2021-22145 中危 7.10.2 7.13.4 elasticsearch: memory disclosure in error reporting

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22145

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2021-07-21 15:15 修改: 2026-06-17 03:36

com.fasterxml.jackson.core:jackson-databind CVE-2019-12814 中危 2.4.0 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server via crafted JSON message.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12814

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2019-06-19 14:15 修改: 2026-06-17 02:15

com.fasterxml.jackson.core:jackson-databind CVE-2019-12814 中危 2.4.0 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server via crafted JSON message.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12814

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2019-06-19 14:15 修改: 2026-06-17 02:15

org.elasticsearch:elasticsearch CVE-2021-22134 中危 7.10.2 7.11.0 elasticsearch: requests do not properly apply security permissions when executing a query against a recently updated document

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22134

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2021-03-08 21:15 修改: 2026-06-17 03:36

org.elasticsearch:elasticsearch CVE-2021-22134 中危 7.10.2 7.11.0 elasticsearch: requests do not properly apply security permissions when executing a query against a recently updated document

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22134

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2021-03-08 21:15 修改: 2026-06-17 03:36

org.elasticsearch:elasticsearch CVE-2021-22135 中危 7.10.2 7.11.2, 6.8.15 elasticsearch: Document disclosure flaw in the Elasticsearch suggester

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22135

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2021-05-13 18:15 修改: 2026-06-17 03:36

org.elasticsearch:elasticsearch CVE-2021-22135 中危 7.10.2 7.11.2, 6.8.15 elasticsearch: Document disclosure flaw in the Elasticsearch suggester

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22135

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2021-05-13 18:15 修改: 2026-06-17 03:36

org.elasticsearch:elasticsearch CVE-2021-22144 中危 7.10.2 6.8.17, 7.13.3 elasticsearch: uncontrolled recursion in Grok parser

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22144

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2021-07-26 12:15 修改: 2026-06-17 03:36

org.elasticsearch:elasticsearch CVE-2021-22144 中危 7.10.2 6.8.17, 7.13.3 elasticsearch: uncontrolled recursion in Grok parser

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-22144

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2021-07-26 12:15 修改: 2026-06-17 03:36

org.elasticsearch:elasticsearch CVE-2023-31417 中危 7.10.2 7.17.13, 8.9.2 elasticsearch: Sensitive information in audit logs

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-31417

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2023-10-26 18:15 修改: 2026-06-17 05:56

org.elasticsearch:elasticsearch CVE-2023-31417 中危 7.10.2 7.17.13, 8.9.2 elasticsearch: Sensitive information in audit logs

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-31417

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2023-10-26 18:15 修改: 2026-06-17 05:56

org.elasticsearch:elasticsearch CVE-2023-31419 中危 7.10.2 7.17.13, 8.9.1 elasticsearch: StackOverflow vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-31419

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2023-10-26 18:15 修改: 2026-06-17 05:56

org.elasticsearch:elasticsearch CVE-2023-31419 中危 7.10.2 7.17.13, 8.9.1 elasticsearch: StackOverflow vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-31419

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2023-10-26 18:15 修改: 2026-06-17 05:56

org.elasticsearch:elasticsearch CVE-2023-46673 中危 7.10.2 7.17.14, 8.10.3 elasticsearch: Improper Handling of Exceptional Conditions

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-46673

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2023-11-22 10:15 修改: 2026-06-17 06:31

org.elasticsearch:elasticsearch CVE-2023-46673 中危 7.10.2 7.17.14, 8.10.3 elasticsearch: Improper Handling of Exceptional Conditions

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-46673

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2023-11-22 10:15 修改: 2026-06-17 06:31

org.elasticsearch:elasticsearch CVE-2023-49921 中危 7.10.2 7.17.16, 8.11.2 elasticsearch: Insertion of Sensitive Information into Log File

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-49921

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2024-07-26 05:15 修改: 2026-06-17 06:36

org.elasticsearch:elasticsearch CVE-2023-49921 中危 7.10.2 7.17.16, 8.11.2 elasticsearch: Insertion of Sensitive Information into Log File

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-49921

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2024-07-26 05:15 修改: 2026-06-17 06:36

org.elasticsearch:elasticsearch CVE-2024-23444 中危 7.10.2 8.13.0, 7.17.23 Elasticsearch stores private key on disk unencrypted

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23444

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2024-07-31 18:15 修改: 2026-06-17 07:12

org.elasticsearch:elasticsearch CVE-2024-23444 中危 7.10.2 8.13.0, 7.17.23 Elasticsearch stores private key on disk unencrypted

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23444

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2024-07-31 18:15 修改: 2026-06-17 07:12

org.elasticsearch:elasticsearch CVE-2024-23450 中危 7.10.2 7.17.19, 8.13.0 elasticsearch: Possible denial of service when processing documents in a deeply nested pipeline

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23450

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2024-03-27 17:15 修改: 2026-06-17 07:12

org.elasticsearch:elasticsearch CVE-2024-23450 中危 7.10.2 7.17.19, 8.13.0 elasticsearch: Possible denial of service when processing documents in a deeply nested pipeline

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23450

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2024-03-27 17:15 修改: 2026-06-17 07:12

org.elasticsearch:elasticsearch CVE-2024-43709 中危 7.10.2 7.17.21, 8.13.3 elasticsearch: Elasticsearch allocation of resources without limits or throttling leads to crash

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-43709

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2025-01-21 11:15 修改: 2026-06-17 07:51

org.elasticsearch:elasticsearch CVE-2024-43709 中危 7.10.2 7.17.21, 8.13.3 elasticsearch: Elasticsearch allocation of resources without limits or throttling leads to crash

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-43709

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2025-01-21 11:15 修改: 2026-06-17 07:51

org.elasticsearch:elasticsearch CVE-2024-52979 中危 7.10.2 7.17.25, 8.16.0 elasticsearch: Elasticsearch Uncontrolled Resource Consumption vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-52979

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2025-05-01 14:15 修改: 2026-06-17 08:07

org.elasticsearch:elasticsearch CVE-2024-52979 中危 7.10.2 7.17.25, 8.16.0 elasticsearch: Elasticsearch Uncontrolled Resource Consumption vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-52979

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2025-05-01 14:15 修改: 2026-06-17 08:07

org.elasticsearch:elasticsearch CVE-2025-37727 中危 7.10.2 8.18.8, 8.19.5, 9.0.8, 9.1.5 org.elasticsearch/elasticsearch-core: Elasticsearch Insertion of sensitive information in log file

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-37727

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2025-10-10 10:15 修改: 2026-06-17 09:15

org.elasticsearch:elasticsearch CVE-2025-37727 中危 7.10.2 8.18.8, 8.19.5, 9.0.8, 9.1.5 org.elasticsearch/elasticsearch-core: Elasticsearch Insertion of sensitive information in log file

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-37727

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2025-10-10 10:15 修改: 2026-06-17 09:15

org.elasticsearch:elasticsearch CVE-2025-37731 中危 7.10.2 8.19.8, 9.1.8, 9.2.2 elasticsearch: Elasticsearch: User impersonation due to improper authentication in Public Key Infrastructure (PKI) realm

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-37731

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2025-12-15 11:15 修改: 2026-06-17 09:15

org.elasticsearch:elasticsearch CVE-2025-37731 中危 7.10.2 8.19.8, 9.1.8, 9.2.2 elasticsearch: Elasticsearch: User impersonation due to improper authentication in Public Key Infrastructure (PKI) realm

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-37731

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2025-12-15 11:15 修改: 2026-06-17 09:15

org.glassfish:javax.el CVE-2021-28170 中危 3.0.0 jakarta-el: ELParserTokenManager enables invalid EL expressions to be evaluate

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-28170

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-05-26 22:15 修改: 2026-06-17 03:45

org.hibernate:hibernate-validator CVE-2020-10693 中危 5.1.3.Final 6.1.5.Final, 6.0.20.Final hibernate-validator: Improper input validation in the interpolation of constraint error messages

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-10693

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-05-06 14:15 修改: 2026-06-17 02:48

org.hibernate:hibernate-validator CVE-2023-1932 中危 5.1.3.Final 6.2.0.Final hibernate-validator: rendering of invalid html with SafeHTML leads to HTML injection and XSS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-1932

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2024-11-07 10:15 修改: 2026-06-17 05:29

org.hibernate:hibernate-validator CVE-2025-35036 中危 5.1.3.Final 6.2.0.CR1, 7.0.0.CR1 hibernate-validator: Hibernate Validator Expression Language Injection

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-35036

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-06-03 20:15 修改: 2026-06-17 09:14

commons-io:commons-io CVE-2021-29425 中危 2.4 2.7 apache-commons-io: Limited path traversal in Apache Commons IO 2.2 to 2.6

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-29425

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-04-13 07:15 修改: 2026-06-17 03:47

commons-io:commons-io CVE-2021-29425 中危 2.4 2.7 apache-commons-io: Limited path traversal in Apache Commons IO 2.2 to 2.6

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-29425

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-04-13 07:15 修改: 2026-06-17 03:47

commons-io:commons-io CVE-2021-29425 中危 2.4 2.7 apache-commons-io: Limited path traversal in Apache Commons IO 2.2 to 2.6

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-29425

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-04-13 07:15 修改: 2026-06-17 03:47

commons-io:commons-io CVE-2021-29425 中危 2.4 2.7 apache-commons-io: Limited path traversal in Apache Commons IO 2.2 to 2.6

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-29425

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-04-13 07:15 修改: 2026-06-17 03:47

commons-io:commons-io CVE-2021-29425 中危 2.4 2.7 apache-commons-io: Limited path traversal in Apache Commons IO 2.2 to 2.6

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-29425

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-04-13 07:15 修改: 2026-06-17 03:47

net.minidev:json-smart CVE-2021-27568 中危 2.3 1.3.2, 2.4.1, 2.3.1 json-smart: uncaught exception may lead to crash or information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-27568

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-02-23 02:15 修改: 2026-06-17 03:45

net.minidev:json-smart CVE-2021-27568 中危 2.3 1.3.2, 2.4.1, 2.3.1 json-smart: uncaught exception may lead to crash or information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-27568

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-02-23 02:15 修改: 2026-06-17 03:45

net.minidev:json-smart CVE-2021-27568 中危 2.3 1.3.2, 2.4.1, 2.3.1 json-smart: uncaught exception may lead to crash or information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-27568

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-02-23 02:15 修改: 2026-06-17 03:45

net.minidev:json-smart CVE-2021-27568 中危 2.3 1.3.2, 2.4.1, 2.3.1 json-smart: uncaught exception may lead to crash or information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-27568

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-02-23 02:15 修改: 2026-06-17 03:45

net.minidev:json-smart CVE-2021-27568 中危 2.3 1.3.2, 2.4.1, 2.3.1 json-smart: uncaught exception may lead to crash or information disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-27568

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-02-23 02:15 修改: 2026-06-17 03:45

commons-io:commons-io CVE-2021-29425 中危 2.4 2.7 apache-commons-io: Limited path traversal in Apache Commons IO 2.2 to 2.6

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-29425

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-04-13 07:15 修改: 2026-06-17 03:47

commons-io:commons-io CVE-2021-29425 中危 2.4 2.7 apache-commons-io: Limited path traversal in Apache Commons IO 2.2 to 2.6

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-29425

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-04-13 07:15 修改: 2026-06-17 03:47

org.apache.ant:ant CVE-2020-1945 中危 1.9.1 1.9.15, 1.10.8 ant: insecure temporary file vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-1945

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-05-14 16:15 修改: 2026-06-17 03:02

org.apache.ant:ant CVE-2020-1945 中危 1.9.1 1.9.15, 1.10.8 ant: insecure temporary file vulnerability

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-1945

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-05-14 16:15 修改: 2026-06-17 03:02

org.apache.ant:ant CVE-2021-36373 中危 1.9.1 1.9.16, 1.10.11 ant: excessive memory allocation when reading a specially crafted TAR archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-36373

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-07-14 07:15 修改: 2026-06-17 03:58

org.apache.ant:ant CVE-2021-36373 中危 1.9.1 1.9.16, 1.10.11 ant: excessive memory allocation when reading a specially crafted TAR archive

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-36373

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-07-14 07:15 修改: 2026-06-17 03:58

org.apache.ant:ant CVE-2021-36374 中危 1.9.1 1.9.16, 1.10.11 ant: excessive memory allocation when reading a specially crafted ZIP archive or a derived formats

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-36374

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-07-14 07:15 修改: 2026-06-17 03:58

org.apache.ant:ant CVE-2021-36374 中危 1.9.1 1.9.16, 1.10.11 ant: excessive memory allocation when reading a specially crafted ZIP archive or a derived formats

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-36374

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-07-14 07:15 修改: 2026-06-17 03:58

commons-io:commons-io CVE-2021-29425 中危 2.4 2.7 apache-commons-io: Limited path traversal in Apache Commons IO 2.2 to 2.6

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-29425

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2021-04-13 07:15 修改: 2026-06-17 03:47

commons-io:commons-io CVE-2021-29425 中危 2.4 2.7 apache-commons-io: Limited path traversal in Apache Commons IO 2.2 to 2.6

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-29425

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2021-04-13 07:15 修改: 2026-06-17 03:47

com.fasterxml.jackson.core:jackson-databind CVE-2019-12814 中危 2.4.0 2.9.9.1, 2.8.11.4, 2.7.9.6, 2.6.7.3 jackson-databind: polymorphic typing issue allows attacker to read arbitrary local files on the server via crafted JSON message.

漏洞详情: https://avd.aquasec.com/nvd/cve-2019-12814

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2019-06-19 14:15 修改: 2026-06-17 02:15

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.4.0 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

com.fasterxml.jackson.core:jackson-core GHSA-72hv-8253-57qq 中危 2.10.3 2.21.1, 2.18.6 jackson-core: Number Length Constraint Bypass in Async Parser Leads to Potential DoS Condition

漏洞详情: https://github.com/advisories/GHSA-72hv-8253-57qq

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-02-28 02:01 修改: 2026-04-07 16:30

com.fasterxml.jackson.core:jackson-core CVE-2025-49128 中危 2.2.3 2.13.0 com.fasterxml.jackson.core/jackson-core: Jackson-core Memory Disclosure via Source Snippet in JsonLocation

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-49128

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-06-06 22:15 修改: 2026-06-17 09:30

com.google.guava:guava CVE-2018-10237 中危 11.0.2 24.1.1-android guava: Unbounded memory allocation in AtomicDoubleArray and CompoundOrdering classes allow remote attackers to cause a denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-10237

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-04-26 21:29 修改: 2026-06-17 01:33

com.google.guava:guava CVE-2018-10237 中危 11.0.2 24.1.1-android guava: Unbounded memory allocation in AtomicDoubleArray and CompoundOrdering classes allow remote attackers to cause a denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-10237

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2018-04-26 21:29 修改: 2026-06-17 01:33

commons-io:commons-io CVE-2021-29425 中危 2.5 2.7 apache-commons-io: Limited path traversal in Apache Commons IO 2.2 to 2.6

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-29425

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-04-13 07:15 修改: 2026-06-17 03:47

commons-io:commons-io CVE-2021-29425 中危 2.5 2.7 apache-commons-io: Limited path traversal in Apache Commons IO 2.2 to 2.6

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-29425

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-04-13 07:15 修改: 2026-06-17 03:47

commons-io:commons-io CVE-2021-29425 中危 2.5 2.7 apache-commons-io: Limited path traversal in Apache Commons IO 2.2 to 2.6

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-29425

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-04-13 07:15 修改: 2026-06-17 03:47

commons-io:commons-io CVE-2021-29425 中危 2.5 2.7 apache-commons-io: Limited path traversal in Apache Commons IO 2.2 to 2.6

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-29425

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-04-13 07:15 修改: 2026-06-17 03:47

commons-io:commons-io CVE-2021-29425 中危 2.5 2.7 apache-commons-io: Limited path traversal in Apache Commons IO 2.2 to 2.6

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-29425

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2021-04-13 07:15 修改: 2026-06-17 03:47

org.xerial.snappy:snappy-java CVE-2023-34453 中危 1.0.4.1 1.1.10.1 snappy-java: Integer overflow in shuffle leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34453

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-06-15 17:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-34453 中危 1.0.4.1 1.1.10.1 snappy-java: Integer overflow in shuffle leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34453

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-06-15 17:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-34453 中危 1.0.4.1 1.1.10.1 snappy-java: Integer overflow in shuffle leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34453

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-06-15 17:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-34453 中危 1.0.4.1 1.1.10.1 snappy-java: Integer overflow in shuffle leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34453

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-06-15 17:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-34453 中危 1.0.4.1 1.1.10.1 snappy-java: Integer overflow in shuffle leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34453

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-06-15 17:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-34454 中危 1.0.4.1 1.1.10.1 snappy-java: Integer overflow in compress leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34454

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-06-15 17:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-34454 中危 1.0.4.1 1.1.10.1 snappy-java: Integer overflow in compress leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34454

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-06-15 17:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-34454 中危 1.0.4.1 1.1.10.1 snappy-java: Integer overflow in compress leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34454

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-06-15 17:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-34454 中危 1.0.4.1 1.1.10.1 snappy-java: Integer overflow in compress leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34454

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-06-15 17:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-34454 中危 1.0.4.1 1.1.10.1 snappy-java: Integer overflow in compress leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34454

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2023-06-15 17:15 修改: 2026-06-17 06:03

commons-io:commons-io CVE-2021-29425 中危 2.5 2.7 apache-commons-io: Limited path traversal in Apache Commons IO 2.2 to 2.6

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-29425

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2021-04-13 07:15 修改: 2026-06-17 03:47

com.google.guava:guava CVE-2018-10237 中危 11.0.2 24.1.1-android guava: Unbounded memory allocation in AtomicDoubleArray and CompoundOrdering classes allow remote attackers to cause a denial of service

漏洞详情: https://avd.aquasec.com/nvd/cve-2018-10237

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2018-04-26 21:29 修改: 2026-06-17 01:33

commons-io:commons-io CVE-2021-29425 中危 2.6 2.7 apache-commons-io: Limited path traversal in Apache Commons IO 2.2 to 2.6

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-29425

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-04-13 07:15 修改: 2026-06-17 03:47

commons-lang:commons-lang CVE-2025-48924 中危 2.6 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

commons-lang:commons-lang CVE-2025-48924 中危 2.6 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

commons-lang:commons-lang CVE-2025-48924 中危 2.6 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

commons-lang:commons-lang CVE-2025-48924 中危 2.6 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

commons-lang:commons-lang CVE-2025-48924 中危 2.6 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

org.xerial.snappy:snappy-java CVE-2023-34453 中危 1.0.5 1.1.10.1 snappy-java: Integer overflow in shuffle leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34453

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-06-15 17:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-34453 中危 1.0.5 1.1.10.1 snappy-java: Integer overflow in shuffle leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34453

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-06-15 17:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-34453 中危 1.0.5 1.1.10.1 snappy-java: Integer overflow in shuffle leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34453

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-06-15 17:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-34453 中危 1.0.5 1.1.10.1 snappy-java: Integer overflow in shuffle leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34453

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-06-15 17:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-34454 中危 1.0.5 1.1.10.1 snappy-java: Integer overflow in compress leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34454

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-06-15 17:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-34454 中危 1.0.5 1.1.10.1 snappy-java: Integer overflow in compress leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34454

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-06-15 17:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-34454 中危 1.0.5 1.1.10.1 snappy-java: Integer overflow in compress leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34454

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-06-15 17:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-34454 中危 1.0.5 1.1.10.1 snappy-java: Integer overflow in compress leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34454

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-06-15 17:15 修改: 2026-06-17 06:03

commons-lang:commons-lang CVE-2025-48924 中危 2.6 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

commons-lang:commons-lang CVE-2025-48924 中危 2.6 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

org.xerial.snappy:snappy-java CVE-2023-34453 中危 1.1.1.3 1.1.10.1 snappy-java: Integer overflow in shuffle leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34453

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-06-15 17:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-34454 中危 1.1.1.3 1.1.10.1 snappy-java: Integer overflow in compress leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34454

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-06-15 17:15 修改: 2026-06-17 06:03

commons-lang:commons-lang CVE-2025-48924 中危 2.6 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

commons-lang:commons-lang CVE-2025-48924 中危 2.6 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

org.xerial.snappy:snappy-java CVE-2023-34453 中危 1.1.4 1.1.10.1 snappy-java: Integer overflow in shuffle leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34453

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-06-15 17:15 修改: 2026-06-17 06:03

org.xerial.snappy:snappy-java CVE-2023-34454 中危 1.1.4 1.1.10.1 snappy-java: Integer overflow in compress leads to DoS

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-34454

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-06-15 17:15 修改: 2026-06-17 06:03

commons-lang:commons-lang CVE-2025-48924 中危 2.6 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

commons-lang:commons-lang CVE-2025-48924 中危 2.6 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

commons-lang:commons-lang CVE-2025-48924 中危 2.6 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

commons-lang:commons-lang CVE-2025-48924 中危 2.6 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

org.apache.calcite:calcite-core CVE-2020-13955 中危 1.10.0 1.26.0 Missing Authentication for Critical Function in Apache Calcite

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13955

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-10-09 13:15 修改: 2026-06-17 02:53

org.apache.calcite:calcite-core CVE-2020-13955 中危 1.10.0 1.26.0 Missing Authentication for Critical Function in Apache Calcite

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13955

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-10-09 13:15 修改: 2026-06-17 02:53

org.yaml:snakeyaml CVE-2022-38749 中危 1.16 1.31 snakeyaml: Uncaught exception in org.yaml.snakeyaml.composer.Composer.composeSequenceNode

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-38749

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-09-05 10:15 修改: 2026-06-17 04:57

org.yaml:snakeyaml CVE-2022-38749 中危 1.16 1.31 snakeyaml: Uncaught exception in org.yaml.snakeyaml.composer.Composer.composeSequenceNode

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-38749

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-09-05 10:15 修改: 2026-06-17 04:57

org.yaml:snakeyaml CVE-2022-38750 中危 1.16 1.31 snakeyaml: Uncaught exception in org.yaml.snakeyaml.constructor.BaseConstructor.constructObject

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-38750

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-09-05 10:15 修改: 2026-06-17 04:57

org.yaml:snakeyaml CVE-2022-38750 中危 1.16 1.31 snakeyaml: Uncaught exception in org.yaml.snakeyaml.constructor.BaseConstructor.constructObject

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-38750

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-09-05 10:15 修改: 2026-06-17 04:57

org.yaml:snakeyaml CVE-2022-38751 中危 1.16 1.31 snakeyaml: Uncaught exception in java.base/java.util.regex.Pattern$Ques.match

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-38751

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-09-05 10:15 修改: 2026-06-17 04:57

org.yaml:snakeyaml CVE-2022-38751 中危 1.16 1.31 snakeyaml: Uncaught exception in java.base/java.util.regex.Pattern$Ques.match

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-38751

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-09-05 10:15 修改: 2026-06-17 04:57

org.yaml:snakeyaml CVE-2022-38752 中危 1.16 1.32 snakeyaml: Uncaught exception in java.base/java.util.ArrayList.hashCode

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-38752

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-09-05 10:15 修改: 2026-06-17 04:57

org.yaml:snakeyaml CVE-2022-38752 中危 1.16 1.32 snakeyaml: Uncaught exception in java.base/java.util.ArrayList.hashCode

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-38752

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-09-05 10:15 修改: 2026-06-17 04:57

org.yaml:snakeyaml CVE-2022-41854 中危 1.16 1.32 dev-java/snakeyaml: DoS via stack overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-41854

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-11-11 13:15 修改: 2026-06-17 05:03

org.yaml:snakeyaml CVE-2022-41854 中危 1.16 1.32 dev-java/snakeyaml: DoS via stack overflow

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-41854

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-11-11 13:15 修改: 2026-06-17 05:03

commons-lang:commons-lang CVE-2025-48924 中危 2.6 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

commons-lang:commons-lang CVE-2025-48924 中危 2.6 commons-lang/commons-lang: org.apache.commons/commons-lang3: Uncontrolled Recursion vulnerability in Apache Commons Lang

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-48924

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2025-07-11 15:15 修改: 2026-06-17 09:30

org.apache.calcite:calcite-core CVE-2020-13955 中危 1.16.0 1.26.0 Missing Authentication for Critical Function in Apache Calcite

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13955

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-10-09 13:15 修改: 2026-06-17 02:53

org.apache.calcite:calcite-core CVE-2020-13955 中危 1.16.0 1.26.0 Missing Authentication for Critical Function in Apache Calcite

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13955

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-10-09 13:15 修改: 2026-06-17 02:53

org.apache.calcite:calcite-druid CVE-2020-13955 中危 1.10.0 1.26.0 Missing Authentication for Critical Function in Apache Calcite

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13955

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-10-09 13:15 修改: 2026-06-17 02:53

org.apache.calcite:calcite-druid CVE-2020-13955 中危 1.10.0 1.26.0 Missing Authentication for Critical Function in Apache Calcite

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13955

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-10-09 13:15 修改: 2026-06-17 02:53

org.apache.calcite:calcite-druid CVE-2020-13955 中危 1.16.0 1.26.0 Missing Authentication for Critical Function in Apache Calcite

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-13955

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-10-09 13:15 修改: 2026-06-17 02:53

xerces:xercesImpl CVE-2009-2625 中危 2.9.1 2.10.0 JDK: XML parsing Denial-Of-Service (6845701)

漏洞详情: https://avd.aquasec.com/nvd/cve-2009-2625

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2009-08-06 15:30 修改: 2026-04-23 00:35

xerces:xercesImpl CVE-2009-2625 中危 2.9.1 2.10.0 JDK: XML parsing Denial-Of-Service (6845701)

漏洞详情: https://avd.aquasec.com/nvd/cve-2009-2625

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2009-08-06 15:30 修改: 2026-04-23 00:35

xerces:xercesImpl CVE-2009-2625 中危 2.9.1 2.10.0 JDK: XML parsing Denial-Of-Service (6845701)

漏洞详情: https://avd.aquasec.com/nvd/cve-2009-2625

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2009-08-06 15:30 修改: 2026-04-23 00:35

xerces:xercesImpl CVE-2020-14338 中危 2.9.1 2.12.0.sp3 wildfly: XML validation manipulation due to incomplete application of use-grammar-pool-only in xercesImpl

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-14338

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-09-17 15:15 修改: 2026-06-17 02:54

xerces:xercesImpl CVE-2020-14338 中危 2.9.1 2.12.0.sp3 wildfly: XML validation manipulation due to incomplete application of use-grammar-pool-only in xercesImpl

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-14338

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-09-17 15:15 修改: 2026-06-17 02:54

xerces:xercesImpl CVE-2020-14338 中危 2.9.1 2.12.0.sp3 wildfly: XML validation manipulation due to incomplete application of use-grammar-pool-only in xercesImpl

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-14338

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-09-17 15:15 修改: 2026-06-17 02:54

xerces:xercesImpl CVE-2022-23437 中危 2.9.1 2.12.2 xerces-j2: infinite loop when handling specially crafted XML document payloads

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23437

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-01-24 15:15 修改: 2026-06-17 04:30

xerces:xercesImpl CVE-2022-23437 中危 2.9.1 2.12.2 xerces-j2: infinite loop when handling specially crafted XML document payloads

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23437

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-24 15:15 修改: 2026-06-17 04:30

xerces:xercesImpl CVE-2022-23437 中危 2.9.1 2.12.2 xerces-j2: infinite loop when handling specially crafted XML document payloads

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-23437

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2022-01-24 15:15 修改: 2026-06-17 04:30

org.apache.hadoop:hadoop-common CVE-2024-23454 低危 3.3.0 3.4.0 Apache Hadoop: Temporary File Local Information Disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23454

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2024-09-25 08:15 修改: 2026-06-17 07:12

org.apache.hadoop:hadoop-common CVE-2024-23454 低危 3.3.0 3.4.0 Apache Hadoop: Temporary File Local Information Disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23454

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2024-09-25 08:15 修改: 2026-06-17 07:12

com.google.guava:guava CVE-2020-8908 低危 11.0.2 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

com.google.guava:guava CVE-2020-8908 低危 11.0.2 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

org.eclipse.jetty:jetty-server CVE-2021-34428 低危 9.3.20.v20170531 9.4.41, 10.0.3, 11.0.3 jetty: SessionListener can prevent a session from being invalidated breaking logout

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-34428

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-06-22 15:15 修改: 2026-06-17 03:55

org.eclipse.jetty:jetty-server CVE-2021-34428 低危 9.3.20.v20170531 9.4.41, 10.0.3, 11.0.3 jetty: SessionListener can prevent a session from being invalidated breaking logout

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-34428

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-06-22 15:15 修改: 2026-06-17 03:55

org.eclipse.jetty:jetty-server CVE-2021-34428 低危 9.3.20.v20170531 9.4.41, 10.0.3, 11.0.3 jetty: SessionListener can prevent a session from being invalidated breaking logout

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-34428

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-06-22 15:15 修改: 2026-06-17 03:55

org.eclipse.jetty:jetty-server CVE-2021-34428 低危 9.3.20.v20170531 9.4.41, 10.0.3, 11.0.3 jetty: SessionListener can prevent a session from being invalidated breaking logout

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-34428

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2021-06-22 15:15 修改: 2026-06-17 03:55

org.eclipse.jetty:jetty-server CVE-2023-26049 低危 9.3.20.v20170531 9.4.51.v20230217, 10.0.14, 11.0.14, 12.0.0.beta0 jetty-server: Cookie parsing of quoted values can exfiltrate values from other cookies

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26049

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-04-18 21:15 修改: 2026-06-17 05:42

org.eclipse.jetty:jetty-server CVE-2023-26049 低危 9.3.20.v20170531 9.4.51.v20230217, 10.0.14, 11.0.14, 12.0.0.beta0 jetty-server: Cookie parsing of quoted values can exfiltrate values from other cookies

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26049

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-04-18 21:15 修改: 2026-06-17 05:42

org.eclipse.jetty:jetty-server CVE-2023-26049 低危 9.3.20.v20170531 9.4.51.v20230217, 10.0.14, 11.0.14, 12.0.0.beta0 jetty-server: Cookie parsing of quoted values can exfiltrate values from other cookies

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26049

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-04-18 21:15 修改: 2026-06-17 05:42

org.eclipse.jetty:jetty-server CVE-2023-26049 低危 9.3.20.v20170531 9.4.51.v20230217, 10.0.14, 11.0.14, 12.0.0.beta0 jetty-server: Cookie parsing of quoted values can exfiltrate values from other cookies

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26049

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-04-18 21:15 修改: 2026-06-17 05:42

com.google.guava:guava CVE-2020-8908 低危 11.0.2 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

org.eclipse.jetty:jetty-server CVE-2021-34428 低危 7.6.0.v20120127 9.4.41, 10.0.3, 11.0.3 jetty: SessionListener can prevent a session from being invalidated breaking logout

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-34428

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-06-22 15:15 修改: 2026-06-17 03:55

org.eclipse.jetty:jetty-server CVE-2021-34428 低危 7.6.0.v20120127 9.4.41, 10.0.3, 11.0.3 jetty: SessionListener can prevent a session from being invalidated breaking logout

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-34428

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-06-22 15:15 修改: 2026-06-17 03:55

org.eclipse.jetty:jetty-server CVE-2023-26049 低危 7.6.0.v20120127 9.4.51.v20230217, 10.0.14, 11.0.14, 12.0.0.beta0 jetty-server: Cookie parsing of quoted values can exfiltrate values from other cookies

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26049

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-04-18 21:15 修改: 2026-06-17 05:42

org.eclipse.jetty:jetty-server CVE-2023-26049 低危 7.6.0.v20120127 9.4.51.v20230217, 10.0.14, 11.0.14, 12.0.0.beta0 jetty-server: Cookie parsing of quoted values can exfiltrate values from other cookies

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26049

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-04-18 21:15 修改: 2026-06-17 05:42

com.google.guava:guava CVE-2020-8908 低危 11.0.2 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

org.mozilla:rhino CVE-2025-66453 低危 1.7R5 1.7.14.1, 1.7.15.1, 1.8.1 Rhino is an open-source implementation of JavaScript written entirely ...

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-66453

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-12-03 20:16 修改: 2026-06-17 09:56

com.google.guava:guava CVE-2020-8908 低危 19.0 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

io.netty:netty-handler-proxy CVE-2026-42578 低危 4.1.42.Final 4.1.133.Final, 4.2.13.Final netty: io.netty/netty-handler-proxy: Netty: HTTP Header Injection via HttpProxyHandler Disabled Validation

漏洞详情: https://avd.aquasec.com/nvd/cve-2026-42578

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-05-13 19:17 修改: 2026-06-17 10:48

io.netty:netty-codec-http CVE-2025-58056 低危 4.1.42.Final 4.1.125.Final, 4.2.5.Final netty-codec-http: Netty is vulnerable to request smuggling due to incorrect parsing of chunk extensions

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-58056

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-09-03 21:15 修改: 2026-06-17 09:43

com.google.guava:guava CVE-2020-8908 低危 19.0 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

com.google.guava:guava CVE-2020-8908 低危 14.0.1 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

org.eclipse.jetty:jetty-http CVE-2022-2047 低危 7.6.0.v20120127 9.4.47, 10.0.10, 11.0.10 jetty-http: improver hostname input handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2047

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-07-07 21:15 修改: 2026-06-17 04:41

org.eclipse.jetty:jetty-http CVE-2022-2047 低危 7.6.0.v20120127 9.4.47, 10.0.10, 11.0.10 jetty-http: improver hostname input handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2047

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-07-07 21:15 修改: 2026-06-17 04:41

com.google.guava:guava CVE-2020-8908 低危 14.0.1 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

com.google.guava:guava CVE-2020-8908 低危 20.0 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

org.eclipse.jetty:jetty-server CVE-2021-34428 低危 9.2.16.v20160414 9.4.41, 10.0.3, 11.0.3 jetty: SessionListener can prevent a session from being invalidated breaking logout

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-34428

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-06-22 15:15 修改: 2026-06-17 03:55

org.eclipse.jetty:jetty-server CVE-2023-26049 低危 9.2.16.v20160414 9.4.51.v20230217, 10.0.14, 11.0.14, 12.0.0.beta0 jetty-server: Cookie parsing of quoted values can exfiltrate values from other cookies

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26049

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-04-18 21:15 修改: 2026-06-17 05:42

org.eclipse.jetty:jetty-http CVE-2022-2047 低危 9.2.16.v20160414 9.4.47, 10.0.10, 11.0.10 jetty-http: improver hostname input handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2047

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-07-07 21:15 修改: 2026-06-17 04:41

io.netty:netty-codec-http CVE-2025-58056 低危 4.0.52.Final 4.1.125.Final, 4.2.5.Final netty-codec-http: Netty is vulnerable to request smuggling due to incorrect parsing of chunk extensions

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-58056

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2025-09-03 21:15 修改: 2026-06-17 09:43

org.apache.hadoop:hadoop-common CVE-2024-23454 低危 2.7.3 3.4.0 Apache Hadoop: Temporary File Local Information Disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23454

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-09-25 08:15 修改: 2026-06-17 07:12

org.eclipse.jetty:jetty-http CVE-2022-2047 低危 9.2.5.v20141112 9.4.47, 10.0.10, 11.0.10 jetty-http: improver hostname input handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2047

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2022-07-07 21:15 修改: 2026-06-17 04:41

org.apache.hadoop:hadoop-common CVE-2024-23454 低危 2.7.3 3.4.0 Apache Hadoop: Temporary File Local Information Disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23454

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-09-25 08:15 修改: 2026-06-17 07:12

org.apache.hadoop:hadoop-common CVE-2024-23454 低危 2.7.3 3.4.0 Apache Hadoop: Temporary File Local Information Disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23454

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-09-25 08:15 修改: 2026-06-17 07:12

org.apache.hadoop:hadoop-common CVE-2024-23454 低危 2.7.3 3.4.0 Apache Hadoop: Temporary File Local Information Disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23454

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2024-09-25 08:15 修改: 2026-06-17 07:12

org.eclipse.jetty:jetty-server CVE-2021-34428 低危 9.4.20.v20190813 9.4.41, 10.0.3, 11.0.3 jetty: SessionListener can prevent a session from being invalidated breaking logout

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-34428

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-06-22 15:15 修改: 2026-06-17 03:55

org.eclipse.jetty:jetty-server CVE-2021-34428 低危 9.4.20.v20190813 9.4.41, 10.0.3, 11.0.3 jetty: SessionListener can prevent a session from being invalidated breaking logout

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-34428

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-06-22 15:15 修改: 2026-06-17 03:55

org.eclipse.jetty:jetty-server CVE-2021-34428 低危 9.4.20.v20190813 9.4.41, 10.0.3, 11.0.3 jetty: SessionListener can prevent a session from being invalidated breaking logout

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-34428

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-06-22 15:15 修改: 2026-06-17 03:55

org.eclipse.jetty:jetty-server CVE-2021-34428 低危 9.4.20.v20190813 9.4.41, 10.0.3, 11.0.3 jetty: SessionListener can prevent a session from being invalidated breaking logout

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-34428

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2021-06-22 15:15 修改: 2026-06-17 03:55

org.eclipse.jetty:jetty-server CVE-2023-26049 低危 9.4.20.v20190813 9.4.51.v20230217, 10.0.14, 11.0.14, 12.0.0.beta0 jetty-server: Cookie parsing of quoted values can exfiltrate values from other cookies

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26049

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-04-18 21:15 修改: 2026-06-17 05:42

org.eclipse.jetty:jetty-server CVE-2023-26049 低危 9.4.20.v20190813 9.4.51.v20230217, 10.0.14, 11.0.14, 12.0.0.beta0 jetty-server: Cookie parsing of quoted values can exfiltrate values from other cookies

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26049

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-04-18 21:15 修改: 2026-06-17 05:42

org.eclipse.jetty:jetty-server CVE-2023-26049 低危 9.4.20.v20190813 9.4.51.v20230217, 10.0.14, 11.0.14, 12.0.0.beta0 jetty-server: Cookie parsing of quoted values can exfiltrate values from other cookies

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26049

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-04-18 21:15 修改: 2026-06-17 05:42

org.eclipse.jetty:jetty-server CVE-2023-26049 低危 9.4.20.v20190813 9.4.51.v20230217, 10.0.14, 11.0.14, 12.0.0.beta0 jetty-server: Cookie parsing of quoted values can exfiltrate values from other cookies

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26049

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-04-18 21:15 修改: 2026-06-17 05:42

com.google.guava:guava CVE-2020-8908 低危 14.0.1 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

com.google.guava:guava CVE-2020-8908 低危 14.0.1 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

com.google.guava:guava CVE-2020-8908 低危 22.0 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

com.google.guava:guava CVE-2020-8908 低危 11.0.2 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

org.eclipse.jetty:jetty-servlets CVE-2023-36479 低危 9.2.16.v20160414 9.4.52, 10.0.16, 11.0.16 jetty: Improper addition of quotation marks to user inputs in CgiServlet

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-36479

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-09-15 19:15 修改: 2026-06-17 06:06

org.eclipse.jetty:jetty-server CVE-2021-34428 低危 9.2.5.v20141112 9.4.41, 10.0.3, 11.0.3 jetty: SessionListener can prevent a session from being invalidated breaking logout

漏洞详情: https://avd.aquasec.com/nvd/cve-2021-34428

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2021-06-22 15:15 修改: 2026-06-17 03:55

org.eclipse.jetty:jetty-server CVE-2023-26049 低危 9.2.5.v20141112 9.4.51.v20230217, 10.0.14, 11.0.14, 12.0.0.beta0 jetty-server: Cookie parsing of quoted values can exfiltrate values from other cookies

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-26049

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-04-18 21:15 修改: 2026-06-17 05:42

org.eclipse.jetty:jetty-servlets CVE-2023-36479 低危 9.2.5.v20141112 9.4.52, 10.0.16, 11.0.16 jetty: Improper addition of quotation marks to user inputs in CgiServlet

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-36479

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-09-15 19:15 修改: 2026-06-17 06:06

com.google.guava:guava CVE-2020-8908 低危 11.0.2 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

org.eclipse.jetty:jetty-http CVE-2022-2047 低危 9.3.20.v20170531 9.4.47, 10.0.10, 11.0.10 jetty-http: improver hostname input handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2047

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-07-07 21:15 修改: 2026-06-17 04:41

org.eclipse.jetty:jetty-servlets CVE-2023-36479 低危 9.3.20.v20170531 9.4.52, 10.0.16, 11.0.16 jetty: Improper addition of quotation marks to user inputs in CgiServlet

漏洞详情: https://avd.aquasec.com/nvd/cve-2023-36479

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-09-15 19:15 修改: 2026-06-17 06:06

org.eclipse.jetty:jetty-http CVE-2022-2047 低危 9.3.20.v20170531 9.4.47, 10.0.10, 11.0.10 jetty-http: improver hostname input handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2047

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-07-07 21:15 修改: 2026-06-17 04:41

org.eclipse.jetty:jetty-http CVE-2022-2047 低危 9.3.20.v20170531 9.4.47, 10.0.10, 11.0.10 jetty-http: improver hostname input handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2047

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-07-07 21:15 修改: 2026-06-17 04:41

org.eclipse.jetty:jetty-http CVE-2022-2047 低危 9.3.20.v20170531 9.4.47, 10.0.10, 11.0.10 jetty-http: improver hostname input handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2047

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2022-07-07 21:15 修改: 2026-06-17 04:41

com.google.guava:guava CVE-2020-8908 低危 11.0.2 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

com.google.guava:guava CVE-2020-8908 低危 11.0.2 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

org.apache.logging.log4j:log4j-core CVE-2020-9488 低危 2.6.2 2.13.2, 2.12.3, 2.3.2 log4j: improper validation of certificate with host mismatch in SMTP appender

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9488

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-04-27 16:15 修改: 2026-06-17 03:28

org.apache.logging.log4j:log4j-core CVE-2020-9488 低危 2.6.2 2.13.2, 2.12.3, 2.3.2 log4j: improper validation of certificate with host mismatch in SMTP appender

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-9488

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-04-27 16:15 修改: 2026-06-17 03:28

com.google.guava:guava CVE-2020-8908 低危 16.0.1 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

com.google.guava:guava CVE-2020-8908 低危 16.0.1 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

org.eclipse.jetty:jetty-xml GHSA-58qw-p7qm-5rvh 低危 7.6.0.v20120127 10.0.16, 11.0.16, 12.0.0, 9.4.52.v20230823 Eclipse Jetty XmlParser allows arbitrary DOCTYPE declarations

漏洞详情: https://github.com/advisories/GHSA-58qw-p7qm-5rvh

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-07-10 21:52 修改: 2026-02-10 20:06

org.eclipse.jetty:jetty-xml GHSA-58qw-p7qm-5rvh 低危 7.6.0.v20120127 10.0.16, 11.0.16, 12.0.0, 9.4.52.v20230823 Eclipse Jetty XmlParser allows arbitrary DOCTYPE declarations

漏洞详情: https://github.com/advisories/GHSA-58qw-p7qm-5rvh

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2023-07-10 21:52 修改: 2026-02-10 20:06

org.eclipse.jetty:jetty-xml GHSA-58qw-p7qm-5rvh 低危 9.3.20.v20170531 10.0.16, 11.0.16, 12.0.0, 9.4.52.v20230823 Eclipse Jetty XmlParser allows arbitrary DOCTYPE declarations

漏洞详情: https://github.com/advisories/GHSA-58qw-p7qm-5rvh

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-07-10 21:52 修改: 2026-02-10 20:06

org.eclipse.jetty:jetty-xml GHSA-58qw-p7qm-5rvh 低危 9.3.20.v20170531 10.0.16, 11.0.16, 12.0.0, 9.4.52.v20230823 Eclipse Jetty XmlParser allows arbitrary DOCTYPE declarations

漏洞详情: https://github.com/advisories/GHSA-58qw-p7qm-5rvh

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-07-10 21:52 修改: 2026-02-10 20:06

org.eclipse.jetty:jetty-xml GHSA-58qw-p7qm-5rvh 低危 9.3.20.v20170531 10.0.16, 11.0.16, 12.0.0, 9.4.52.v20230823 Eclipse Jetty XmlParser allows arbitrary DOCTYPE declarations

漏洞详情: https://github.com/advisories/GHSA-58qw-p7qm-5rvh

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2023-07-10 21:52 修改: 2026-02-10 20:06

org.eclipse.jetty:jetty-xml GHSA-58qw-p7qm-5rvh 低危 9.4.20.v20190813 10.0.16, 11.0.16, 12.0.0, 9.4.52.v20230823 Eclipse Jetty XmlParser allows arbitrary DOCTYPE declarations

漏洞详情: https://github.com/advisories/GHSA-58qw-p7qm-5rvh

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-07-10 21:52 修改: 2026-02-10 20:06

org.eclipse.jetty:jetty-xml GHSA-58qw-p7qm-5rvh 低危 9.4.20.v20190813 10.0.16, 11.0.16, 12.0.0, 9.4.52.v20230823 Eclipse Jetty XmlParser allows arbitrary DOCTYPE declarations

漏洞详情: https://github.com/advisories/GHSA-58qw-p7qm-5rvh

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-07-10 21:52 修改: 2026-02-10 20:06

org.eclipse.jetty:jetty-xml GHSA-58qw-p7qm-5rvh 低危 9.4.20.v20190813 10.0.16, 11.0.16, 12.0.0, 9.4.52.v20230823 Eclipse Jetty XmlParser allows arbitrary DOCTYPE declarations

漏洞详情: https://github.com/advisories/GHSA-58qw-p7qm-5rvh

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-07-10 21:52 修改: 2026-02-10 20:06

org.eclipse.jetty:jetty-xml GHSA-58qw-p7qm-5rvh 低危 9.4.20.v20190813 10.0.16, 11.0.16, 12.0.0, 9.4.52.v20230823 Eclipse Jetty XmlParser allows arbitrary DOCTYPE declarations

漏洞详情: https://github.com/advisories/GHSA-58qw-p7qm-5rvh

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2023-07-10 21:52 修改: 2026-02-10 20:06

com.google.guava:guava CVE-2020-8908 低危 27.0-jre 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

com.google.guava:guava CVE-2020-8908 低危 27.0-jre 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

commons-configuration:commons-configuration CVE-2025-46392 低危 1.6 apache-commons-configuration: Apache Commons Configuration: Uncontrolled Resource Consumption when loading untrusted configurations in 1.x

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-46392

镜像层: sha256:edadb90762d67c4804f97132a7b10f0565e860e471f4d46c287dfe0a81685831

发布日期: 2025-05-09 10:15 修改: 2026-06-17 09:26

commons-configuration:commons-configuration CVE-2025-46392 低危 1.6 apache-commons-configuration: Apache Commons Configuration: Uncontrolled Resource Consumption when loading untrusted configurations in 1.x

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-46392

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-05-09 10:15 修改: 2026-06-17 09:26

commons-configuration:commons-configuration CVE-2025-46392 低危 1.6 apache-commons-configuration: Apache Commons Configuration: Uncontrolled Resource Consumption when loading untrusted configurations in 1.x

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-46392

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-05-09 10:15 修改: 2026-06-17 09:26

io.netty:netty-codec-http CVE-2025-58056 低危 4.1.17.Final 4.1.125.Final, 4.2.5.Final netty-codec-http: Netty is vulnerable to request smuggling due to incorrect parsing of chunk extensions

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-58056

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2025-09-03 21:15 修改: 2026-06-17 09:43

org.eclipse.jetty:jetty-http CVE-2022-2047 低危 9.4.20.v20190813 9.4.47, 10.0.10, 11.0.10 jetty-http: improver hostname input handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2047

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-07-07 21:15 修改: 2026-06-17 04:41

org.eclipse.jetty:jetty-http CVE-2022-2047 低危 9.4.20.v20190813 9.4.47, 10.0.10, 11.0.10 jetty-http: improver hostname input handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2047

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-07-07 21:15 修改: 2026-06-17 04:41

org.eclipse.jetty:jetty-http CVE-2022-2047 低危 9.4.20.v20190813 9.4.47, 10.0.10, 11.0.10 jetty-http: improver hostname input handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2047

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-07-07 21:15 修改: 2026-06-17 04:41

org.eclipse.jetty:jetty-http CVE-2022-2047 低危 9.4.20.v20190813 9.4.47, 10.0.10, 11.0.10 jetty-http: improver hostname input handling

漏洞详情: https://avd.aquasec.com/nvd/cve-2022-2047

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2022-07-07 21:15 修改: 2026-06-17 04:41

org.eclipse.jetty:jetty-http CVE-2025-11143 低危 9.4.20.v20190813 12.0.31, 12.1.5 org.eclipse.jetty/jetty-http: org.eclipse.jetty: Security bypass due to differential URI parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-11143

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-03-05 10:15 修改: 2026-06-17 08:29

org.eclipse.jetty:jetty-http CVE-2025-11143 低危 9.4.20.v20190813 12.0.31, 12.1.5 org.eclipse.jetty/jetty-http: org.eclipse.jetty: Security bypass due to differential URI parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-11143

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-03-05 10:15 修改: 2026-06-17 08:29

org.eclipse.jetty:jetty-http CVE-2025-11143 低危 9.4.20.v20190813 12.0.31, 12.1.5 org.eclipse.jetty/jetty-http: org.eclipse.jetty: Security bypass due to differential URI parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-11143

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-03-05 10:15 修改: 2026-06-17 08:29

org.eclipse.jetty:jetty-http CVE-2025-11143 低危 9.4.20.v20190813 12.0.31, 12.1.5 org.eclipse.jetty/jetty-http: org.eclipse.jetty: Security bypass due to differential URI parsing

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-11143

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2026-03-05 10:15 修改: 2026-06-17 08:29

commons-configuration:commons-configuration CVE-2025-46392 低危 1.6 apache-commons-configuration: Apache Commons Configuration: Uncontrolled Resource Consumption when loading untrusted configurations in 1.x

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-46392

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-05-09 10:15 修改: 2026-06-17 09:26

commons-configuration:commons-configuration CVE-2025-46392 低危 1.6 apache-commons-configuration: Apache Commons Configuration: Uncontrolled Resource Consumption when loading untrusted configurations in 1.x

漏洞详情: https://avd.aquasec.com/nvd/cve-2025-46392

镜像层: sha256:3222d1bbb364d3a7d6e3c0a2b2f87788b69ca2ff0b47e0c35ab67766b2e61a04

发布日期: 2025-05-09 10:15 修改: 2026-06-17 09:26

com.google.guava:guava CVE-2020-8908 低危 27.0-jre 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

com.google.guava:guava CVE-2020-8908 低危 27.0-jre 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

com.google.guava:guava CVE-2020-8908 低危 27.0-jre 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:921a869afd5985f4538606519a5a4685cac2c77f14f6c736e98e657291d9aeb6

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

com.google.guava:guava CVE-2020-8908 低危 27.0-jre 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:c9b7b4e49100dc629b26d6153f27e2eb4339a9f0646f5afc9e02717f2e6454e1

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

com.google.guava:guava CVE-2020-8908 低危 11.0.2 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

com.google.guava:guava CVE-2020-8908 低危 11.0.2 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:e9ef4bd977d2321e8f60195d3dbe5ea3e5d17315c5e96a70689374b4a2e601e3

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

com.google.guava:guava CVE-2020-8908 低危 18.0 32.0.0-android guava: local information disclosure via temporary directory created with unsafe permissions

漏洞详情: https://avd.aquasec.com/nvd/cve-2020-8908

镜像层: sha256:3c4eb1af36c4a0b51f4936c005c85cbf3ce99fef885a09104031c9336e4d0d66

发布日期: 2020-12-10 23:15 修改: 2026-06-17 03:27

org.apache.hadoop:hadoop-common CVE-2024-23454 低危 3.3.0 3.4.0 Apache Hadoop: Temporary File Local Information Disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23454

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-09-25 08:15 修改: 2026-06-17 07:12

org.apache.hadoop:hadoop-common CVE-2024-23454 低危 3.3.0 3.4.0 Apache Hadoop: Temporary File Local Information Disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23454

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-09-25 08:15 修改: 2026-06-17 07:12

org.apache.hadoop:hadoop-common CVE-2024-23454 低危 3.3.0 3.4.0 Apache Hadoop: Temporary File Local Information Disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23454

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-09-25 08:15 修改: 2026-06-17 07:12

org.apache.hadoop:hadoop-common CVE-2024-23454 低危 3.3.0 3.4.0 Apache Hadoop: Temporary File Local Information Disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23454

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-09-25 08:15 修改: 2026-06-17 07:12

org.apache.hadoop:hadoop-common CVE-2024-23454 低危 3.3.0 3.4.0 Apache Hadoop: Temporary File Local Information Disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23454

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-09-25 08:15 修改: 2026-06-17 07:12

org.apache.hadoop:hadoop-common CVE-2024-23454 低危 3.3.0 3.4.0 Apache Hadoop: Temporary File Local Information Disclosure

漏洞详情: https://avd.aquasec.com/nvd/cve-2024-23454

镜像层: sha256:71e566d0174fa673240fcbc13147161ec568a3fbd24eb581d5024a078906c014

发布日期: 2024-09-25 08:15 修改: 2026-06-17 07:12

/etc/ssh/ssh_host_dsa_key ()
低危漏洞:0 中危漏洞:0 高危漏洞:0 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
/etc/ssh/ssh_host_ecdsa_key ()
低危漏洞:0 中危漏洞:0 高危漏洞:0 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
/etc/ssh/ssh_host_ed25519_key ()
低危漏洞:0 中危漏洞:0 高危漏洞:0 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
/etc/ssh/ssh_host_rsa_key ()
低危漏洞:0 中危漏洞:0 高危漏洞:0 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
/root/.ssh/id_rsa ()
低危漏洞:0 中危漏洞:0 高危漏洞:0 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
/var/lib/mysql/ca-key.pem ()
低危漏洞:0 中危漏洞:0 高危漏洞:0 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
/var/lib/mysql/client-key.pem ()
低危漏洞:0 中危漏洞:0 高危漏洞:0 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
/var/lib/mysql/private_key.pem ()
低危漏洞:0 中危漏洞:0 高危漏洞:0 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
/var/lib/mysql/server-key.pem ()
低危漏洞:0 中危漏洞:0 高危漏洞:0 严重漏洞:0
软件包 漏洞 安全状态 安装版本 修复版本 漏洞信息
检测到您正在使用广告拦截插件,本站为公益站点,依赖广告维持运转 🙏 查看如何关闭 ×