CVE-2020-14195 | FasterXML jackson-databind up to 2.9.10.4 org.jsecurity.realm.jndi.JndiRealmFactory Serialized deserialization (WID-SEC-2024-0794)
A vulnerability has been found in FasterXML jackson-databind up to 2.9.10.4 and classified as critical. The affected element is an unknown function of the component org.jsecurity.realm.jndi.JndiRealmFactory. Performing a manipulation results in deserialization (Serialized).
This vulnerability is cataloged as CVE-2020-14195. It is possible to initiate the attack remotely. There is no exploit available.
The affected component should be upgraded.