diff options
Diffstat (limited to 'release-notes')
-rw-r--r-- | release-notes/VERSION-2.x | 4 |
1 files changed, 2 insertions, 2 deletions
diff --git a/release-notes/VERSION-2.x b/release-notes/VERSION-2.x index 340aa8b27..dff131705 100644 --- a/release-notes/VERSION-2.x +++ b/release-notes/VERSION-2.x @@ -440,9 +440,9 @@ Project: jackson-databind #1872: `NullPointerException` in `SubTypeValidator.validateSubType` when validating Spring interface (reported by Rob W) -#1899: Another two gadgets to exploit default typing issue in jackson-databind +#1899: Another two gadgets to exploit default typing issue (CVE-2018-5968) (reported by OneSourceCat@github) -#1931: Two more `c3p0` gadgets to exploit default typing issue +#1931: Two more `c3p0` gadgets to exploit default typing issue (c3p0, CVE-2018-7489) 2.8.11 (24-Dec-2017) |