CVE-2026-91777 | FasterXML jackson-databind Forward Reference Completion resource consumption (EUVD-2026-85003)

SecurityVulns

A vulnerability classified as problematic was found in FasterXML jackson-databind. The impacted element is the function CollectionDeserializer.CollectionReferringAccumulator.resolveForwardReference of the component Forward Reference Completion. Such manipulation leads to resource consumption.

This vulnerability is referenced as CVE-2026-91777. It is possible to launch the attack remotely. No exploit is available.VulDB Recent EntriesRead More