[ 
https://issues.apache.org/jira/browse/TIKA-4805?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=18101679#comment-18101679
 ] 

Tilman Hausherr edited comment on TIKA-4805 at 8/4/26 11:34 AM:
----------------------------------------------------------------

https://nvd.nist.gov/vuln/detail/CVE-2026-50193
"This vulnerability is fixed in 2.14.0."

https://mvnrepository.com/artifact/com.fasterxml.jackson.core/jackson-databind
There is no 2.22.4 version.


was (Author: tilman):
https://nvd.nist.gov/vuln/detail/CVE-2026-50193
This vulnerability is fixed in 2.14.0.
https://mvnrepository.com/artifact/com.fasterxml.jackson.core/jackson-databind
There is no 2.22.4 version.

> upgrade jackson-databind to 2.22.4 to fix  CVE-2026-50193
> ---------------------------------------------------------
>
>                 Key: TIKA-4805
>                 URL: https://issues.apache.org/jira/browse/TIKA-4805
>             Project: Tika
>          Issue Type: Improvement
>    Affects Versions: 3.3.2
>            Reporter: Dhoka Pramod
>            Priority: Critical
>
> jackson-databind needs to be updated to 2.22.4 to fix  CVE-2026-50193



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

Reply via email to