ActiveMQ 5.15.3 packages the Jackson-databind library 2.6.7. The Jackson-databind library is vulnerable for CVE-2018-7489. Want to know if this vulnerability applies for ActiveMQ 5.15.3 as it uses the library. If yes, will there be an update to the ActiveMQ Library.
-- Sent from: http://activemq.2283324.n4.nabble.com/ActiveMQ-User-f2341805.html