com.fasterxml.jackson.core:jackson-core
Maven2 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting com.fasterxml.jackson.core:jackson-corepage 1 of 1
- CVE-2025-49128MEDIUMCVSS 4.0EG 4.0✓ Fixed in 2.13.02025-06-06
vulnerable: 2.0.0 ... 2.9.9 (124 versions)
Jackson-core contains core low-level incremental ("streaming") parser and generator abstractions used by Jackson Data Processor. Starting in version 2.0.0 and prior to version 2.13.0, a flaw in jackson-core's `JsonLocation._appendSourceDes…
- CVE-2025-52999HIGHCVSS 8.7EG 0.0✓ Fixed in 2.15.02025-06-25
vulnerable: 2.0.0 ... 2.9.9 (143 versions)
jackson-core contains core low-level incremental ("streaming") parser and generator abstractions used by Jackson Data Processor. In versions prior to 2.15.0, if a user parses an input file and it has deeply nested data, Jackson could end u…
Check whether com.fasterxml.jackson.core:jackson-core is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for com.fasterxml.jackson.core:jackson-core CVEs against the assets you own.
Start Free Scan →