CVE-2026-77310 | FasterXML jackson-databind up to 3.2.0 InetAddress Deserialization FromStringDeserializer.Std._deserialize server-side request forgery

SecurityVulns

A vulnerability was found in FasterXML jackson-databind up to 2.18.8/2.21.4/2.22.0/3.1.4/3.2.0. It has been declared as problematic. Impacted is the function FromStringDeserializer.Std._deserialize of the component InetAddress Deserialization. The manipulation results in server-side request forgery.

This vulnerability is identified as CVE-2026-77310. The attack can be executed remotely. There is not any exploit available.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More