Hi,

In our product, kafka v4.3.0 is used. Below  Jackson related vulnerability is 
reported on this kafka version -

CVE-2026-68497
This vulnerability is fixed in jackson databind v2.21.6. I see upcoming  
release kafka v4.4.0 bumped Jackson bind version to v2.21.5
Please confirm which apache kafka upcoming versions will upgrade to Jackson 
bind v2.21.6

Regards
Vivek

Reply via email to