Maven package
org.jboss.resteasy/resteasy-yaml-provider
pkg:maven/org.jboss.resteasy/resteasy-yaml-provider
Vulnerabilities (1)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2018-1051 | Hig | 8.1 | < 3.0.26.Final | 3.0.26.Final | Jan 25, 2018 | It was found that the fix for CVE-2016-9606 in versions 3.0.22 and 3.1.2 was incomplete and Yaml unmarshalling in Resteasy is still possible via `Yaml.load()` in YamlProvider. |
- affected < 3.0.26.Finalfixed 3.0.26.Final
It was found that the fix for CVE-2016-9606 in versions 3.0.22 and 3.1.2 was incomplete and Yaml unmarshalling in Resteasy is still possible via `Yaml.load()` in YamlProvider.