We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
I'm contacting you regarding the CVE-2020-36518 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-36518. As openapi-generator-cli is using jackson-databind 2.13.1 which is vulnerable to this issue, are you tacking into account an upgrade of jackson-databind please?
openapi-generator-cli 6.0.1
Upgrade jackson-databind as the issue is fixed in 2.13.2.2 by this commit, and in 2.12.6.1 by this commit.
The text was updated successfully, but these errors were encountered:
Successfully merging a pull request may close this issue.
Bug Report Checklist
Description
I'm contacting you regarding the CVE-2020-36518 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-36518.
As openapi-generator-cli is using jackson-databind 2.13.1 which is vulnerable to this issue, are you tacking into account an upgrade of jackson-databind please?
openapi-generator version
openapi-generator-cli 6.0.1
Suggest a fix
Upgrade jackson-databind as the issue is fixed in 2.13.2.2 by this commit, and in 2.12.6.1 by this commit.
The text was updated successfully, but these errors were encountered: