Brandon Williams created CASSANDRA-17556:
--------------------------------------------

             Summary: jackson-databind 2.13.2 is vulnerable to CVE-2020-36518
                 Key: CASSANDRA-17556
                 URL: https://issues.apache.org/jira/browse/CASSANDRA-17556
             Project: Cassandra
          Issue Type: Bug
            Reporter: Brandon Williams


Seems like it's technically possible to cause a DoS with nested json.



--
This message was sent by Atlassian Jira
(v8.20.1#820001)

---------------------------------------------------------------------
To unsubscribe, e-mail: commits-unsubscr...@cassandra.apache.org
For additional commands, e-mail: commits-h...@cassandra.apache.org

Reply via email to