CVE-2026-91777

CVE-2026-91777 published: Forward-reference completion for @JsonIdentityInfo object IDs in FasterXML jackson-databind performs a linear scan of the pending-reference accumulator for every resolved ID. The affected paths are CollectionDeserializer.CollectionReferringAccumulator.resol...

View full NVD advisory → ← Back to CVE watch