Skip to content

UID2-8008: preventive upgrade com.fasterxml.jackson.core:jackson-databind to 2.21.6 (CVE-2026-68497) - #676

Open
swibi-ttd wants to merge 1 commit into
mainfrom
swi-cve-2026-68497
Open

swibi-ttd wants to merge 1 commit into
mainfrom
swi-cve-2026-68497

Conversation

@swibi-ttd

Copy link
Copy Markdown
Contributor

Preventive update for CVE-2026-68497 (HIGH, com.fasterxml.jackson.core:jackson-databind): 2.21.4 → 2.21.6.

Verified with trivy fs: CVE-2026-68497 was reported before the change and is gone after it (26 finding(s) before, 19 after).


Opened by uid2-vul-scan-agent (general_use_claude-opus-4-8). The assessment and fix rationale are on the ticket named in the title.

@swibi-ttd swibi-ttd changed the title [TICKET] preventive upgrade com.fasterxml.jackson.core:jackson-databind to 2.21.6 (CVE-2026-68497) UID2-8008: preventive upgrade com.fasterxml.jackson.core:jackson-databind to 2.21.6 (CVE-2026-68497) Oct 1, 2026

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant