XML external entity (XXE) vulnerability in XmlMapper in the Data format extension for Jackson (aka jackson-dataformat-xml) allows attackers to have unspecified impact via unknown vectors.
| Software | From | Fixed in |
|---|---|---|
| fedoraproject / fedora | 24 | 24.x |
| fasterxml / jackson-dataformat-xml | - | 2.7.3.x |
com.fasterxml.jackson.dataformat / jackson-dataformat-xml
|
- | 2.7.4 |